Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Supply Chain Risk Management Lead

RadNet, Inc.

Everforth ECS is seeking a Supply Chain Risk Management Lead to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax . Please Note: This position is contingent upon contract award. The War Data Platform (WDP) is a key initiative within the U.S. Department of War's (DoW) AI‑First strategy introduced in early 2026. The WDP focuses on operational warfighting data and aims to accelerate the deployment of artificial intelligence (AI) on the battlefield. The WDP extends to Unclassified, Secret, and Top Secret environments, and supports collaboration between Combatant Commands, Joint Staff directorates, Senior Executive Service leaders, and operational analysts.

  • The Supply Chain Risk Management (SCRM) Lead SME serves as the senior enterprise authority for software and vendor supply chain risk governance across the WDP Core Integration program, directing the full lifecycle of third-party risk identification, assessment, mitigation, and reporting across NIPRNet, SIPRNet, and JWICS environments in compliance with DoW SCRM policy, Risk Management Framework requirements, and federal cybersecurity mandates. In this role, the specialist integrates automated supply chain risk tooling, Software Bill of Materials governance, vendor security assessment programs, and threat intelligence monitoring to reduce WDP exposure to supply chain-based attacks and sustain authoritative, audit-ready risk transparency for Authorizing Officials, program leadership, and Government oversight personnel.
  • Leads enterprise Supply Chain Risk Management activities supporting Department of War information systems across unclassified and classified environments.
  • Designs and executes supply chain risk governance frameworks addressing third-party vendors, commercial software, open-source components, and external service providers throughout the system lifecycle.
  • Directs vendor security assessments evaluating cybersecurity posture, access controls, data handling practices, and compliance with federal and DoW requirements.
  • Oversees software supply chain reviews including component provenance analysis, dependency mapping, and Software Bill of Materials validation to identify exposure to compromised or high-risk suppliers.
  • Coordinates closely with contracting officers, acquisition teams, legal advisors, and system owners to integrate security requirements into procurement actions, vendor onboarding, and contract modifications.
  • Maintains risk registers documenting third-party threats, mitigation strategies, residual risk, and acceptance decisions supporting Risk Management Framework activities.
  • Provides advisory support to Authorizing Officials, Senior Information Security Officers, and program leadership on supply chain risk posture and emerging threat vectors.
  • Monitors threat intelligence, Government advisories, and industry reporting related to supply chain compromise to inform proactive mitigation actions.
  • Produces supply chain risk assessments, vendor security reports, and executive briefings supporting authorization decisions and continuous monitoring.
  • Drives consistent risk transparency, lifecycle accountability, and mission resilience by reducing exposure to supply chain-based attacks and strengthening trust in system dependencies.
  • Performs other duties as assigned.
Required Skills • Current Secret security clearance with the ability to obtain and maintain a Top Secret (TS) security clearance with Sensitive Compartmented Information (SCI).
  • 15 or more years of progressive experience in cybersecurity, with demonstrated specialization in Supply Chain Risk Management, vendor risk governance, or software assurance programs supporting large-scale federal or defense information systems.
  • Active DoW/DoD IAM Level I baseline certification, satisfied by one of the following: CompTIA Security+ CE, ISC² CAP, ISC² SSCP, or GIAC GSLC.
  • Demonstrated experience designing and operating enterprise SCRM governance frameworks that address third-party software components — including COTS, GOTS, and open-source AI technologies — through automated vulnerability detection and scanning, component provenance analysis, and transitive dependency mapping across the full system development lifecycle.
  • Proven ability to create, maintain, and govern Software Bill of Materials documentation for complex software platforms, including management of SBOM artifacts across 150 or more systems with recurring authorization obligations and integration into automated ingest-time scanning pipelines.
  • Experience coordinating SCRM activities with contracting officers, acquisition teams, legal advisors, and system owners to embed supply chain security requirements into procurement actions, vendor onboarding agreements, and contract modification packages in compliance with DFARS View phone number on click.appcast.io, NIST SP 800-171, and applicable DoW acquisition policy.
  • Demonstrated experience supporting Risk Management Framework authorization activities, including generation and maintenance of supply chain risk artifacts in eMASS or Xacta, management of Plan of Action and Milestone remediation activities, and preparation of Body of Evidence packages supporting formal Government risk adjudication and audit defense.
  • Proven ability to develop and present supply chain risk assessments, vendor security evaluation reports, and executive briefings to Authorizing Officials, Senior Information Security Officers, and program leadership audiences in support of authorization decisions and continuous monitoring obligations.
  • Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution.
  • Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management).
Desired Skills • Active Top Secret (TS) security clearance with Sensitive Compartmented Information (SCI) eligibility.
  • Active Certified Information Systems Security Professional (CISSP) certification or equivalent advanced cybersecurity credential, consistent with DoW key personnel cybersecurity qualification standards and demonstrating expanded qualifications beyond the IAM Level I baseline requirement.
  • Demonstrated experience implementing automated Supply Chain Risk Management tooling within a DevSecOps delivery pipeline, including ingest-time software and container scanning, malicious code detection, multi-source product research aggregation, and automated compliance report generation integrated with CI/CD pipeline governance across NIPRNet, SIPRNet, and JWICS.
  • Familiarity with the DoW transition from the seven-step Risk Management Framework to the five-phase Cybersecurity Risk Management Continuum, including demonstrated ability to adapt SCRM governance frameworks, vendor assessment criteria, and authorization artifact workflows to support active, automated defense postures aligned to evolving DoW cybersecurity mandates.
  • Experience supporting Zero Trust Architecture implementation as it relates to supply chain risk reduction, including demonstrated ability to apply micro-segmentation, Attribute-Based Access Control, and least-privilege access enforcement to minimize lateral movement risk from compromised third-party components across multi-enclave enterprise environments.
  • Background supporting SCRM governance for AI/ML platform programs, including experience evaluating supply chain risk exposure associated with open-source AI models, third-party data pipelines, and commercial AI tooling integrated into classified cloud-native environments, with demonstrated ability to produce risk-informed acquisition recommendations for program leadership and Government Authorizing Officials.
ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. Everforth ECS is the federal segment of Everforth , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies. Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow. We value: Attracting and developing top talent and high-performing teams Fostering a culture that is engaging, accountable, and mission-driven Meet the challenge. Make a difference with Everforth ECS! undefined Our Company Our Culture Employer Privacy Policy ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. Everforth ECS is the federal segment of Everforth , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies. Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow. Meet the challenge. Make a difference with Everforth ECS! EEO is the Law ADP Privacy Statement Artificial Intelligence Google Privacy Policy Google Terms of Service #J-18808-Ljbffr RadNet, Inc.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Supply Chain Risk Management Lead in Fairfax, VA vacancy
  • $130k - $150k

    Supply Chain Lead - Clearance Required Job Locations US-Remote Job ID 2026-13940...  ...support this work. Reporting to the PMO Manager, this role is embedded within the Program...  ...and providing the cost, schedule, and risk visibility required to support... 
    Suggested
    Full time
    Contract work
    Work at office
    Local area
    Remote work

    LMI Consulting, LLC

    McLean, VA
    4 days ago
  •  ...Devsecops/Supply Chain Lead Sme Everforth ECS is seeking a DevSecOps/Supply Chain Lead SME to...  ...establishing and enforcing supply chain risk governance across Kubernetes, VMware,...  ...experience in DevSecOps, supply chain risk management, or cybersecurity engineering roles... 
    Suggested
    Contract work

    ECS

    Fairfax, VA
    1 day ago
  • RadNet, Inc. is hiring a Supply Chain Risk Management Lead in Fairfax, Virginia, to oversee the Supply Chain Risk Management for the War Data Platform. This role requires a strong background in cybersecurity and leadership in risk governance frameworks and vendor assessments... 
    Suggested

    RadNet, Inc.

    Fairfax, VA
    4 days ago
  • $129k - $171k

     ...safeguards Anduril's workforce and supply chain by proactively identifying risk, mitigating threats and delivering...  ...skills. The Embedded CI Program Lead is responsible for executing a variety...  ...of analysis, investigation, risk management and a demonstrated ability to... 
    Suggested
    Full time
    Work experience placement
    Immediate start

    Anduril Industries

    Reston, VA
    4 days ago
  • $167k - $251k

     ...center of Freddie Mac's enterprise financial risk oversight, shaping how the company anticipates, measures, and manages Single-Family credit risk across the economic...  ...and data-driven oversight while developing and leading talent in a fast-paced, mission-critical environment... 
    Suggested
    Full time
    Local area

    Freddie Mac

    McLean, VA
    2 days ago
  •  ...Product Manager Sme Everforth ECS is seeking a product manager sme to work in the national capital region covering the pentagon, falls...  ...infrastructure to deliver continuous monitoring aligned with risk management framework objectives and dow guidance. • Designs and... 
    Contract work

    ECS

    Fairfax, VA
    3 days ago
  •  ...SOC Vulnerability Management AESS Lead - Senior ECS is seeking a SOC Vulnerability Management AESS Lead - Senior to support the Army National...  ...audit readiness, cybersecurity governance, and enterprise risk management objectives. Support Task 3 deliverables by contributing... 
    Contract work

    ECS

    Fairfax, VA
    16 hours ago
  •  ...Product Manager Sme Everforth ECS is seeking a product manager sme to work in the national...  ...analysts. The cloud security lead sme is a senior subject matter expert responsible...  ...authoritative voice on zero trust compliance, risk management framework execution, and cloud... 
    Contract work

    ECS

    Fairfax, VA
    2 days ago
  • $148.3k - $255.65k

    Artificial Intelligence Lead Job Locations US-Remote Job ID 2026-13715 #...  ...production environments ~ Implement and manage MLOps practices, including model...  ...~ Incorporate guidance from the NIST AI Risk Management Framework (AI RMF) and related... 
    Full time
    Contract work
    Local area
    Remote work

    LMI Consulting, LLC

    McLean, VA
    1 day ago
  • A dynamic government contractor is seeking a Project Manager for a remote opportunity. This role focuses on supporting cybersecurity compliance...  ...principles and have a proven track record in executing Risk Management Framework processes. Applicants should have a Bachelor... 
    For contractors
    Work at office
    Remote work

    ENTERPRISE SOLUTIONS & MANAGEMENT

    Vienna, VA
    11 days ago
  •  ...Enterprise Ai Lead We are looking for an Enterprise AI Lead to design, build, and scale...  ...access layers, orchestration, prompt management, and evaluation capabilities • Develop...  ...standards • Establish model assurance and risk management practices, including... 
    Shift work

    LMI

    McLean, VA
    16 hours ago
  •  ...SOC Vulnerability Management ACAS Lead - Senior ECS is seeking a SOC Vulnerability Management ACAS Lead - Senior to support the Army National...  ...with SOC, compliance, RMF, and engineering teams to identify risk, prioritize remediation, and strengthen enterprise... 
    Contract work

    ECS

    Fairfax, VA
    16 hours ago
  • $134.37k - $232.4k

    IT Security Lead Job Locations US-Remote Job ID 2026-13714 # of Openings...  ...documentation, and supporting artifacts ~ Manage Plans of Action and Milestones (POA&Ms)...  ..., and vulnerabilities Risk Management & Audit Readiness ~ Conduct... 
    Full time
    Contract work
    Local area
    Remote work

    LMI Consulting, LLC

    McLean, VA
    1 day ago
  •  ...Cybersecurity Lead Job Locations US-VA-McLean ID 2026-10876 # of Openings 1 Category...  ...for a Cybersecurity Lead to guide cybersecurity compliance and risk management efforts for Army network modernization initiatives. You'll ensure... 
    Worldwide

    By Light Professional IT Services

    McLean, VA
    2 days ago
  • $112.8k - $257k

     ...Number: R0239366 Enterprise Architect, Lead The Opportunity: Designs enterprise...  ...applications, cloud computing, cybersecurity, data management, integration platforms, and emerging...  .... government cyber compliance, including Risk Management Framework (RMF), Security... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    3 days ago
  • $99k - $225k

     ...Risk & Integrity Insights Specialist, Lead The Opportunity: We are expanding and evolving our risk and integrity intelligence capabilities...  ...central part in advancing how risk is understood and managed, enhancing and connecting existing capabilities to deliver... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work
    Shift work

    Booz Allen Hamilton

    McLean, VA
    2 days ago
  • $91k - $147.2k

     ...MTST Global Finance Reporting Lead - Endomech and Energy to be...  ...initiatives on the end-to-end management across all Endomechancial and...  ...metrics, stranded costs, Supply Chain metrics, and other cost efficiencies...  ...and Analysis, Financial Risk Management (FRM), Financial Statement... 
    Full time
    Temporary work
    Local area
    Remote work
    Worldwide

    Johnson & Johnson

    Annandale, VA
    1 day ago
  • $180k - $210k

     ...Supply Chain Risk Management (SCRM) Lead Falls Church, Virginia. Full-time. Important Notice: This position is contingent upon contract award. Summary: SCRM Leads develop and implement supply chain risk management programs assessing and mitigating risks... 
    Full time
    Contract work
    Work at office
    Remote work

    ZTI Solutions, LLC

    Falls Church, VA
    more than 2 months ago
  •  ...tangible impact! We are seeking a highly experienced Supply Chain Risk Management (SCRM) professional with an active TS/SCI clearance to provide...  ...and information. Support program offices and technical leads in identification and development of SCRM documentation... 
    Temporary work
    Work experience placement

    STEMboard

    Springfield, VA
    21 days ago
  • $115.7k - $150.5k

     ...career opportunity for a dynamic, results-oriented Lead Supplier Program Manager (SPM) to join the Supply Chain team. As an SPM, you will manage all aspects of a...  ...to supplier on-time delivery and associated risks. Develop, track, and update material forecasts... 
    Temporary work
    For contractors
    Work experience placement
    Casual work
    Local area

    Saab

    McLean, VA
    16 hours ago
  •  ...Analyst/Senior Construction Claims Analyst/Lead Construction Claims Analyst (Full-Time)...  ...following: Microsoft Project, Phoenix Project Manager, or similar. Responsibilities...  ...management, cost estimating, value engineering, risk management, constructibility review, and/or... 
    Full time
    Contract work
    For contractors
    Work at office
    Night shift

    MBP

    Vienna, VA
    23 hours ago
  •  ...Time Nationwide IT Services is seeking a Lead Technical Architect for a potential role...  .... You’ll work closely with the Project Manager, Government stakeholders, developers, cybersecurity...  ...planning, architecture documentation, risk management, and deliverables Support... 
    Full time
    Remote work

    Nationwide IT Services

    Fairfax, VA
    16 hours ago
  • $131.75k - $178.25k

     ...Operational Efficiency Skills: Project Management,Stakeholder Management,System...  ...Description: The Deployment Workstream Lead - Product Management Analyst is accountable...  ...resource plans. Manage dependencies, risks, and critical path activities for a successful... 
    Temporary work
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Fairfax, VA
    2 days ago
  • $197.3k - $225.1k

     ...Lead Cyber Product Owner (API Security) Capital One is seeking a Lead Cyber Product Owner...  ...cross-functional teams to deliver well managed and sustainable features that bring that vision...  ...also incorporating cyber and operational risk reduction outcomes and activities Act... 
    Full time
    Part time
    H1b
    Local area

    Capital One

    McLean, VA
    2 days ago
  • $16.05 - $20.1 per hour

     ...2026-241687 JOB OVERVIEW The Lead Server is responsible for providing...  ...directional flow, organization and supplies placement. Risk Management and General Safety Partners with...  ...Full-Time Location : Address 1515 Chain Bridge Rd Location : City McLean... 
    Full time
    Work at office
    Local area
    Shift work

    Sunrise Senior Living

    McLean, VA
    5 days ago
  • $127.1k - $172k

     ...solutions that scale globally. Managing numerous complex systems and...  ...of variables impacting the supply chain - and we're looking for talented...  ...with competing priorities Lead the effective and efficient...  ...track and mitigate issues and risks at multiple levels Create,... 
    Flexible hours

    Amazon

    Chantilly, Loudoun County, VA
    4 days ago
  • $176k - $282k

     ...Tower Simulation Systems Lead Job Locations US-VA...  ...Position Category Project Management Clearance Public...  ...acquisition and integration, supply chain management, testing,...  ...program-level plans, schedules, risks, and performance metrics to ensure... 
    Contract work
    Remote work
    Shift work

    Peraton

    Herndon, VA
    1 day ago
  •  ...WHAT WE'RE LOOKING FOR : Total Systems Technologies Corporation is seeking an experienced ISSO Lead with expertise in applying the Risk Management Framework (RMF) and NIST 800-series standards to protect multi-tenant cloud and hybrid-enterprise environments... 
    Contract work
    Temporary work
    Local area
    Remote work
    Flexible hours

    TSTC

    Reston, VA
    1 day ago
  •  ...Policy & Governance Lead ProSidian is a Management And Operations Consulting Services firm that focuses on providing value to clients through tailored...  .... ProSidian provides enterprise services/solutions for Risk Management | Compliance | Business Process | IT... 
    Full time
    Contract work
    H1b
    Work at office

    ProSidian Consulting

    Alexandria, VA
    16 hours ago
  •  ...highly skilled and experienced Government Earned Value Management System Leader to join our dynamic team and lead the successful integration, setup, and management...  ...skills, if necessary Monitor project risks and implement risk mitigation strategies within the... 
    Full time
    Contract work
    Work at office
    Remote work
    3 days per week

    Iridium Satellite

    McLean, VA
    3 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Supply Chain Risk Management Lead. Be the first to apply!