Supply Chain Risk Management Audit Analyst
ECS
Overview Everforth ECS is seeking a Supply Chain Risk Management Audit Analyst to work in the National Capital Region covering the Pentagon, Falls Church, and Fairfax. Please note: This position is contingent upon contract award. The War Data Platform (WDP) is a key initiative within the U.S. Department of War's (DoW) AI-First strategy introduced in early 2026. The WDP separates business and financial data from operational warfighting data, aiming to accelerate the deployment of artificial intelligence (AI) on the battlefield. The WDP extends to Unclassified, Secret, and Top Secret environments, and supports collaboration between Combatant Commands, Joint Staff directorates, Senior Executive Service leaders, and operational analysts. The Supply Chain Risk Management Audit Analyst supports WDP's enterprise SCRM program by conducting structured, evidence-based security assessments of third-party vendor documentation and audit artifacts across classified and unclassified environments. This role directly strengthens WDP's mission assurance posture by evaluating vendor compliance, surfacing supply chain risk conditions, and maintaining audit-ready evidence packages that support RMF authorization decisions and government oversight requirements across the full WDP software and services portfolio. Responsibilities Performs detailed supply chain security review activities supporting DoW information systems across unclassified and classified environments. Conducts structured analysis of third-party vendor security documentation, evaluating cybersecurity controls, governance practices, and risk management approaches against DoW and federal requirements. Reviews independent audit artifacts including SOC reports, ISO certifications, penetration test summaries, and vendor attestations to assess adequacy of security safeguards and control implementation. Validates vendor responses to security questionnaires, due diligence requests, and contractual security clauses, identifying gaps, inconsistencies, and residual risk conditions. Coordinates with Supply Chain Risk Management leadership, contracting personnel, system owners, and cybersecurity teams to document findings and support remediation planning. Tracks vendor security deficiencies, corrective actions, and closure status within risk registers, assessment repositories, and continuous monitoring dashboards. Prepares assessment summaries, deficiency reports, and supporting documentation for Risk Management Framework activities, authorization decisions, and leadership briefings. Maintains organized evidence packages within SharePoint and approved document management systems to support audits and inspections. Monitors emerging supply chain threats, government advisories, and policy updates to inform assessment criteria and review focus areas. Contributes to improved third-party risk visibility, stronger vendor accountability, and sustained mission assurance while reinforcing program values of diligence, transparency, consistency, and disciplined risk oversight. Performs other duties as assigned. Required Skills Current Secret security clearance. A minimum of 3 years of experience in supply chain risk management, third-party security assessment, cybersecurity compliance, or a closely related discipline within a federal, defense, or government contracting environment, with demonstrated ability to evaluate vendor security documentation and produce audit-ready assessment artifacts in support of RMF authorization activities. Active IAM Level I certification, satisfied by one of the following: CompTIA Security+ CE, ISC² CAP, ISC² SSCP, or GIAC GSLC. Strong problem-solving and decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate solution. Highly developed interpersonal and oral/written communication skills, with the ability to effectively and professionally interact with a diverse set of stakeholders (from peers to end-users to executive management). Desired Skills Active Top Secret (TS) security clearance with Sensitive Compartmented Information (SCI) eligibility. Familiarity with Software Bill of Materials (SBOM) development, maintenance, and analysis, including experience tracking transitive software dependencies across the full system development lifecycle in support of enterprise SCRM governance requirements. Hands-on experience using eMASS or comparable RMF authorization management platforms to document supply chain risk findings, maintain Plans of Action and Milestones, and support continuous monitoring and authorization portfolio management activities. Experience reviewing and interpreting third-party independent audit artifacts — including SOC 2 Type II reports, ISO 27001 certifications, and penetration test summaries — within the context of DoW or federal security compliance frameworks, including NIST SP 800-161 and DoDI 5200.44. Familiarity with Attribute-Based Access Control (ABAC), Zero Trust architecture principles, and AI/ML software supply chain risk considerations, with the ability to apply these concepts to vendor assessments involving commercial, government, and open-source technology components integrated into mission-critical data and AI platforms. ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. Everforth ECS is the federal segment of Everforth , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies. Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow. We Value Attracting and developing top talent and high-performing teams Fostering a culture that is engaging, accountable, and mission-driven #J-18808-Ljbffr ECS
$62.64k - $89.49k
...military and federal agency partners. HII - Mission Technologies is currently seeking an Intermediate-level Supply Chain Risk Management (SCRM) Audit Analyst to work out of Fairfax, VA in support of the DoD/DoW Advana War Data Platform designed to aggregate operational...SuggestedFull timeContract workWork at officeLocal area$131.3k - $237.35k
# Cyber-Supply Chain Risk Management (C-SCRM) SME AnalystLeidosFull TimestaffAlexandria, Virginia, USPosted 4 days ago## Role OverviewLeidos is hiring... ...-level Cyber-Supply Chain Risk Management (C-SCRM) SME Analyst. This is a full-time role in Alexandria. posted 4 days ago...SuggestedFull timeWork at officeLocal areaImmediate start$95k - $100k
...Nakupuna Companies seeks an Analyst III: Public Financial Management Advisor. The Office of Program Transition and Supply Chain (PTSC) leads the Department... ...analysis, compliance, risk management, internal controls, oversight, and auditing for public health expenditures...SuggestedContract workWork at officeRemote work$50 - $60 per hour
...Supply Chain Risk Management (SCRM) Analyst Contract 9/80 Schedule Hybrid/ONSITE 40 hours weekly Must be a US Citizen with Active Secret Clearance and ability to be cleared at TS level Position is located in any of the following sites: Cambridge, MA Reston, VA Hill AFB...SuggestedHourly payContract work$65k - $80k
...Job Description Job Description Financial Management Analyst – Risk Management & Internal Controls (RMIC) Location: Falls Church... ...regulatory guidance and directives. ~ Financial Reporting & Audit Support Functions Extract, analyze, and distribute...SuggestedContract work$70k - $87k
...Description Chevo is hiring an experienced Management Analyst to join our ICE-Student & Exchange Visitor Program (SEVP) Fee... ...evaluate program efficiency and effectiveness. Support risk management activities, including identifying and mitigating fraud...Full timeWork experience placementLocal area$103.54k - $147.92k
...Mission Technologies is currently seeking a Junior Vulernability Management Analyst to work out of Fairfax, VA i in support of the DoD/DoW Advana... ...of senior analysts. • Maintains detailed records supporting Risk Management Framework activities, including vulnerability...Full timeContract workFor contractorsWork at officeLocal areaWorldwide- Job Announcement The purpose of this position is to provide independent oversight of internal affairs investigations and the Fairfax County Police Department (FCPD) policies and practices, with a specific focus on use of force. Also ensures accountability...Work experience placementWork at officeLocal areaImmediate startTrial period
$103.54k - $147.92k
...Responsibilities Supports enterprise vulnerability management operations for Department of Defense mission... ...and compensating controls under guidance of senior analysts. Maintains detailed records supporting Risk Management Framework activities, including vulnerability...Full timeFor contractorsWork at officeLocal area- ...of HII, is looking for a skilled professional in vulnerability management in Fairfax, Virginia. The successful candidate will support Department... ...in vulnerability assessments, and maintain compliance with risk management activities. Qualifications include relevant...
$104.8k - $192.2k
...) of Ernst & Young provides a full range of consulting and audit services to help our Federal, State, Local and Education clients... ...the future with confidence. The opportunity The Risk and Change Management Senior Consultant is responsible for providing expert risk...For contractorsSummer holidayWork at officeLocal areaFlexible hoursShift workWeekend work- ## Defense & Security, Internal Controls, Audit Remediation, Readiness, and Risk Management ConsultantApplylocations: US - VA, McLean: US - VA, Arlingtontime type: Full timeposted on: Posted Yesterdayjob requisition id: 40394**Job Family:**Finance & Accounting Consulting...Temporary workFlexible hours
- ...nCompany Description ProSidian is a Management And Operations Consulting... ...services/solutions for Risk Management | Compliance | Business... ...Management & Compliance Analyst | Data Management & Business... ...ensure compliance | support audits. Further, they Maintain records...Full timeContract workTemporary workFor contractorsH1bWork at officeFlexible hours
- ...Job Family : Management Consulting Travel Required : Up to 25% Clearance Required... ...translate policy into executable, audit defensible operations. Guidehouse invests... ...Prior experience in areas of risk management, internal controls, financial...Temporary workWork experience placementWork at officeLocal areaFlexible hoursShift work
- ...Senior Consultant in Guidehouse's Financial Management (FM) practice supporting Department of... ...enhance operational efficiency, enable auditability, and modernize financial processes in... ...financial management, process analysis, risk management, and performance measurement...Temporary workWork at officeFlexible hours
- ...Senior Business Operations & Financial Management Analyst LOCATION: Chantilly, VA JOB... ...program financial performance and identify risks, shortfalls, or execution issues.... ...accountability. Maintain accurate documentation and audit-ready financial records. #CJFull timeWork at office
$177.7k - $202.8k
Card Risk Senior Manager - Platform Development Capital One is pushing the boundaries of fintech,... ...line risk organizations, and Internal Audit on key technology risks and actions needed... ...evaluation of data provided by team analysts Drive and deliver results and improvements...Full timePart timeLocal area$150k - $175k
...1, initially providing acquisition and supply chain management services to the US Coast Guard. Our service... ..., and OSD. Develop and maintain audit trails of the changes in budget positions... ..., and advice regarding financial risks and opportunities. Support the Program...For contractorsWork at officeLocal areaRemote work$98k - $163k
...Trust**What You Will Do:**The Financial Management Consultant will help our clients to identify... ...designed to address internal control and audit deficiencies and strengthen financial... ...range of financial statement audit and audit risk management and remediation support that...Temporary workRemote workFlexible hours- ...firm of Command Holdings, is seeking a Management Analyst to support the Cybersecurity and Infrastructure... ...shall assist and provide research, risk management, and cyber-physical security... ...activity, implementing render safe and chain of custody guidance, reporting UAS incidents...Full timeContract workFor contractorsWork at officeLocal areaVisa sponsorshipWork visaFlexible hours
$94.25k
...Business Intelligence (BI) Analyst Job Locations US Job ID 2026-2193 # of Openings 1 Category... ...translating complex data into actionable insights that drive Navy supply chain and logistics performance. Responsibilities Application...Contract workWork experience placementFlexible hours- ...: Non-exempt REPORTS TO: Program Manager, Third Party Risk Management JOB DESCRIPTION Summary... ..., the Third-Party Vendor Risk Analyst supports the execution of the Bank's Third... ...materials for internal governance forums, audits, and regulatory examinations. ~...Contract workWork at officeLocal areaRemote work
- People, Technology & Processes, LLC is seeking an Asset Management Assistant (SURGE) in Arlington, Virginia. The role involves managing asset... ...data integrity, and supporting compliance with government audits. The ideal candidate will possess strong analytical and organizational...
- ...growth, delivering best-in-class total cost and supply chain resiliency through cutting-edge predictive capabilities, risk analysis and a focus on sustainability and... ...to unleash your talent! As a Supply Management Analyst in the Inbound Supply Management team at Micron...Local areaImmediate start
- ...growth. It delivers excellent total cost and supply chain resiliency. This is achieved through modern predictive capabilities, risk analysis, and a focus on sustainability... .... Position Overview: As a Supply Management Analyst in the Inbound Supply Management team at...Local areaImmediate start
- ...artifacts, coordinates authorization activities, supports audits, and provides risk and compliance advisory services to government stakeholders... ...supporting audits, evidence collection, and POA&M management. Ability to translate technical security requirements into...Temporary workFlexible hours
- ...process. Logistics and Asset Management Analyst (DoD Clearance Required)... ...daily receipt of equipment and supplies within the JSP Platform... ...internal safety and environmental audits, and tracking corrective... ...degree in Logistics, Supply Chain Management, Business, Management...Full timeContract workWork at officeLocal area
- Overview Join to apply for the Enterprise Risk Management Analyst Journeyman role at Spectrum Comm Inc Pentagon, Arlington, VA Spectrum is currently seeking a Management Analyst to support our customer site and support the Department of Navy’s Business Operations Service...Full time
- ...Position: Financial Business Analyst (Capital Markets) Location: McLean, Virginia... ...with teams across Finance, Accounting, Risk Management, Technology, and external partners to support... ..., and internal controls. Support audit requests and regulatory reporting initiatives...Full timeContract work
- ...Senior Budget & Management Analyst Job Locations 1 month ago(4/24/2026 1:00 PM) Job... ...customers, we help save lives; reduce risks to society; and maintain the global infrastructure... ..., and evaluation of impact analyses, audits, compliance inspections, and readiness...For contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Supply Chain Risk Management Audit Analyst. Be the first to apply!
- it risk analyst Fairfax, VA
- risk officer Fairfax, VA
- risk analyst Fairfax, VA
- risk consultant Fairfax, VA
- knowledge management analyst Fairfax, VA
- workforce management analyst Fairfax, VA
- fiserv business analyst Fairfax, VA
- business analyst healthcare Fairfax, VA
- business analyst contract Fairfax, VA
- senior business analyst contract Fairfax, VA



