
Supply Chain Risk Management Specialist
Posted 21 hours ago

Posted 21 hours ago
This is a fully remote position, open to applicants in United States.
β’ Perform vendor risk assessments and technical security evaluations at an enterprise level for software suppliers, cloud services, AI tools, telecommunications, and OT/ICS environments.
β’ Execute both technical and non-technical risk scoring and generate detailed Vendor Risk Reports.
β’ Offer subject matter expertise in Supply Chain Risk Management (SCRM) throughout the entire procurement lifecycle, including acquisition planning and source selection processes.
β’ Compose Acquisition Security Reviews and evaluation matrices for the FAA Acquisition Management System pipeline.
β’ Draft security language for contracts, technical security requirements, and recommendations for risk acceptance.
β’ Convert complex risk assessment data into Executive Decision Packages intended for FAA senior leadership.
β’ Contribute to the development of FAA SCRM policies, governance documentation, and Standard Operating Procedures (SOPs).
β’ Create performance metrics and program reports for executive leadership.
β’ Sustain relationships with the FAA CIO, CISA, FBI, DHS, and the Intelligence Community.
β’ Organize and lead SCRM training and awareness initiatives.
β’ U.S. Citizenship is mandatory.
β’ An active Top Secret/SCI clearance is required.
β’ A Bachelorβs degree in Supply Chain Risk Management, Intelligence Studies, National Security, Logistics, Data Science, Cybersecurity, Information Technology, Computer Science/Engineering, or a similar field.
β’ Equivalent professional experience or specialized training may be considered as a substitute.
β’ Over 8 years of professional experience as an Intelligence Analyst (All-Source, Cyber, Counterintelligence, or OSINT) or in third-party risk management (TPRM), Cyber Supply Chain Risk Management (C-SCRM), technical risk assessments, cybersecurity risk management, or infrastructure defense.
β’ Strong familiarity with NIST SP 800-161 and NIST SP 800-53 standards.
β’ Practical experience in assessing the security posture, software supply chains, and configurations of at least three specific technology profiles.
β’ Demonstrated ability to translate intricate technical vulnerabilities, software flaws, and architectural risks into clear, well-organized, non-technical written reports and executive summaries.
β’ Completion of formal military or federal intelligence training courses focusing on threat network analysis or open-source collection is preferred.
β’ Possession of CISSP, CRISC, CISA, or specialized federal SCRM/Counterintelligence training certifications is preferred.
β’ Proficiency in advanced OSINT search techniques, corporate filing retrieval systems, or international trade/shipping databases is preferred.
β’ Proven experience in reviewing federal procurement mechanisms, source selection processes, or drafting contract security language is preferred.
β’ Comprehensive health, dental, and vision insurance.
β’ Generous retirement savings plan with employer contributions.
β’ Flexible work schedules and remote work options.
β’ Opportunities for professional development and training.
β’ Paid time off and holidays.
ConnectWise
CHS Inc.
HD Supply
MultiplyMii
Get handpicked remote jobs straight to your inbox weekly.