FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Supply Chain Risk Management Specialist
Leidos. Conduct enterprise-level vendor risk assessments and technical security reviews for software suppliers, cloud providers, AI tools, telecommunications, and OT/ICS environments .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Expertise in conducting enterprise-level vendor risk assessments and technical security reviews, with a strong focus on Cyber Supply Chain Risk Management (C-SCRM) and the ability to translate complex technical data into clear reports for executive leadership. Proven experience in drafting contract security language and maintaining relationships with key federal agencies.
Highest-signal resume keywords
Vendor Risk AssessmentCyber Supply Chain Risk Management (C-SCRM)NIST SP 800-161NIST SP 800-53Top Secret/SCI Clearance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Technical Risk AssessmentRisk ScoringSecurity Posture EvaluationSoftware Supply Chain EvaluationContract Security Language DraftingExecutive Decision Package PreparationPerformance Metrics FormulationSCRM Policy DevelopmentOSINT Search TechniquesThreat Network Analysis
Soft Skills
Relationship ManagementCommunicationTraining CoordinationAnalytical ThinkingReport Writing
Tools & Technologies
Corporate Filing Retrieval SystemsInternational Trade DatabasesFederal Procurement Mechanisms
Certifications & Qualifications
CISSPCRISCCISAFederal SCRM TrainingCounterintelligence Training
Industry Keywords
Supply Chain Risk ManagementIntelligence AnalysisCybersecurityTechnical Security ReviewsFederal Acquisition Management
Tech Stack
Tools & technologiesCloudCyber Security
About the role
Key responsibilities & impact- Conduct enterprise-level vendor risk assessments and technical security reviews for software suppliers, cloud providers, AI tools, telecommunications, and OT/ICS environments
- Conduct technical and non-technical risk scoring and compile comprehensive Vendor Risk Reports
- Provide SCRM subject matter expertise throughout the procurement lifecycle, including acquisition planning and source selections
- Author Acquisition Security Reviews and evaluation matrices for the FAA Acquisition Management System pipeline
- Draft contract security language, technical security requirements, and risk acceptance recommendations
- Translate complex risk assessment data into Executive Decision Packages for FAA senior leadership
- Contribute to FAA SCRM policies, governance documentation, and SOPs
- Formulate performance metrics and program reports for executive leadership
- Maintain relationships with FAA CIO, CISA, FBI, DHS, and the Intelligence Community
- Coordinate and facilitate SCRM training and awareness campaigns
Requirements
What you’ll need- U.S. Citizenship required
- Active Top Secret/SCI clearance is required
- Bachelor’s degree in Supply Chain Risk Management, Intelligence Studies, National Security, Logistics, Data Science, Cybersecurity, Information Technology, Computer Science/Engineering, or a related discipline
- Equivalent professional experience or specialized training may be substituted
- 8+ years of professional experience as an Intelligence Analyst (All-Source, Cyber, Counterintelligence, or OSINT) or in third-party risk management (TPRM), Cyber Supply Chain Risk Management (C-SCRM), technical risk assessments, cybersecurity risk management, or infrastructure defense
- Strong working knowledge of NIST SP 800-161 and NIST SP 800-53
- Hands-on experience evaluating the security posture, software supply chains, and configurations of at least three specified technology profiles
- Proven capability to translate complex technical vulnerabilities, software flaws, and architectural risks into clear, well-structured, non-technical written reports and executive summaries
- Completion of formal military or federal intelligence training courses focusing on threat network analysis or open-source collection (preferred)
- CISSP, CRISC, CISA, or specialized federal SCRM/Counterintelligence training certifications (preferred)
- Proficiency with advanced OSINT search techniques, corporate filing retrieval systems, or international trade/shipping databases (preferred)
- Demonstrated experience reviewing federal procurement mechanisms, source selection processes, or drafting contract security language (preferred)