Senior Supply Chain Risk Management Analyst
Maximus2 months ago
Memphis, TN, United States
Remote
Full-time
Junior Level (1-3 years)
Job Description
Overview:
We are seeking a highly skilled Senior Supply Chain Risk Management Analyst to join our team. As a Senior Supply Chain Risk Management Analyst, you will be responsible for performing complex risk analyses and risk assessments, establishing and satisfying Information Assurance (IA) and security requirements, and supporting customers in the development and implementation of doctrine and policies.
Responsibilities:
- Perform complex risk analyses and risk assessments
- Establish and satisfy Information Assurance (IA) and security requirements based upon the analysis of user, policy, regulatory, and resource demands
- Support customers in the development and implementation of doctrine and policies
- Advise information system owners on client/project security policies and requirements for systems
- Keep abreast of emerging security technologies and make appropriate recommendations regarding the enhancement of the security posture of systems and their implementation
- Interpret and operationalize federal and DoD supply chain requirements by mapping applicable FAR/DFARS clauses and customer SCRM expectations into enterprise policies, procedures, and control guidance for shared services and third-party providers
- Conduct and document supplier/third-party SCRM due diligence for federal and DoD pursuits and programs
- Assess, track, and report SCRM control effectiveness using NIST guidance
- Support contract lifecycle governance by advising procurement and program teams on SCRM-related contract language, required representations, and evidence packages
Qualifications:
- Bachelor's Degree: in a related field (supply chain, business, information systems, cybersecurity, risk management, or equivalent)
- Experience: 7+ years of experience in supply chain risk management, third-party/vendor risk management, federal compliance, or related risk/governance functions within a regulated environment
- Citizenship: U.S Citizen with ability to obtain a US government security clearance
- Compliance Experience: Experience supporting federal and/or DoD contract compliance activities
- Knowledge: Strong knowledge of federal acquisition and cybersecurity supply chain requirements, including applicable FAR/DFARS clauses and prohibited/covered telecommunications considerations
- GRC/TPRM Experience: Experience using GRC/TPRM tooling to manage supplier inventories, risk assessments, evidence collection, issues/remediation, and reporting
Benefits:
Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. The salary range for this position is $90,780 - $122,820 per year, depending on factors such as job location, education, training, experience, and internal value analysis.
Required Skills
Cybersecurity
GRC Tools
Supply Chain Management
Third-Party Risk Management
Federal Compliance
Risk Analysis
Information Assurance