Sobre este puesto de Cybersecurity Supply Chain Risk Analyst en 9th Way Insignia
9th Way Insignia is a service-disabled, veteran-owned small business bringing transformative technology to our government customers so they can achieve their missions. Our specialties include cybersecurity, cloud modernization, software development, data analytics, enterprise architecture, enterprise IT, analytics, process automation, and artificial intelligence. Learn more about 9th Way Insignia at https://9thwayinsignia.com/.
Application password: Niner
Project Introduction
The Department of Veterans Affairs Cybersecurity Operations and Services Enterprise (COSE) program delivers the enterprise cybersecurity operations, engineering, architecture, risk, and compliance support that safeguards VA systems, data, and mission delivery. The team helps strengthen the cyber resilience of the digital services relied on by Veterans, their families, and the VA workforce.
9th Way Insignia is seeking a Cybersecurity Supply Chain Risk Analyst to support this program. This position is contingent upon contract award.
Professional Level
E3 – Engineer
Responsibilities
- Assess cybersecurity supply-chain risks associated with vendors, products, services, software, and third-party dependencies.
- Document supply-chain security requirements, risk findings, mitigations, and acceptance decisions.
- Review supplier security evidence, software and hardware provenance information, vulnerability notices, and remediation plans.
- Coordinate with acquisition, engineering, security, legal, and program stakeholders on third-party risk decisions.
- Support continuous monitoring of supplier risks, emerging threats, and corrective-action status.
Requirements
- Bachelor's degree in cybersecurity, information systems, supply-chain management, business, engineering, or a related field, or equivalent relevant experience.
- Five or more years of cybersecurity, third-party risk, supply-chain risk, GRC, security assessment, or related experience.
- Experience conducting vendor or product security assessments and documenting risks, controls, and remediation actions.
- Working knowledge of cybersecurity supply-chain risk management practices, NIST guidance, software supply-chain risks, and third-party security controls.
- Strong risk-analysis, documentation, stakeholder-engagement, and judgment skills.
9th Way Insignia’s range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Clearance/Background Investigation
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.
Benefits
Eligible employees will have access to our comprehensive benefits package which includes Medical, Dental, Vision, Voluntary Life Insurance, 401(k), Basic Life A&D, STD, LTD, PTO, Telehealth, paid holidays, FSA, HSA. Additional resources include our Employee Assistance Program (EAP) and Traveling Assistance.
Legal
We’re an equal employment opportunity employer that empowers our people to fearlessly drive change – no matter their race, color, religion, sex (including pregnancy, childbirth, lactation, or related medical conditions), national origin, age, marital status, sexual orientation, gender identity, disability, veteran status, military or uniformed service member status, genetic information, or any other status protected by applicable federal, state, or local law.
Equal Employment Opportunity Notice
Applicants have the right to be free from unlawful workplace discrimination. Please review the EEOC’s Know Your Rights: Workplace Discrimination is Illegal notice. Accessible formats and translations are also available from the EEOC.
Application Accommodations
If you require a reasonable accommodation to complete this application or participate in the hiring process, please contact [email protected]. Requests will be considered individually.