Southwest Research Institute · 15 hours ago
ASSOCIATE SPECIALIST - SPECIALIST - Supply Chain Cybersecurity Specialist
Southwest Research Institute is focused on ensuring that procurement processes align with federal cybersecurity requirements. The Supply Chain Cybersecurity Specialist will manage cybersecurity risk within the supply chain, ensuring compliance with government regulations and providing training to staff.
Innovation ManagementMarket ResearchMechanical EngineeringNon ProfitProduct Research
Responsibilities
Perform supply chain cybersecurity risk management and ensure supply chain compliance with government cybersecurity requirements
Monitor cybersecurity surveys, review files produced for audit, and assist with training the Purchasing Department and technical division staff
Ensure effective supply chain cyber risk management in accordance with internal and regulatory requirements
Oversee Supply Chain Cybersecurity Compliance to ensure alignment with Federal Government requirements, including Supply Chain Cyber Risk Management (SCRM)
Manage and monitor the entire SCRM lifecycle, identify, mitigate, and document risk throughout the process
Attend/ participate in meetings, incl. virtual, conferences, and working groups related to the Cybersecurity Maturity Model Certification (CMMC) and other Federal Government cybersecurity requirements
Help develop and maintain policies and procedures and other process documents
Contribute to increasing awareness of supply chain cyber risk management through training for Purchasing and non-Purchasing staff
Continuously monitor suppliers to ensure compliance, identify issues, and work with suppliers and internal stakeholders to manage timely remediation
Submit surveys to suppliers to determine compliance with Federal Government cybersecurity requirements
Receive, analyze, and interpret supplier survey responses
Communicate survey results to stakeholders and management as needed
Regularly monitor and stay updated on CMMC rules and regulations, while providing training and guidance to purchasing and technical staff to ensure compliance and understanding
Draft contract language as needed to ensure compliance, and maintain standard language approved by Legal in a central repository
Support DCMA cybersecurity assessments of Purchasing processes, and help develop corrective action plans in the event of findings
Perform daily administrative tasks to document and maintain Purchasing Cybersecurity vendor records, ensuring vendor compliance statuses are accurate, organized, and audit-ready for both internal and external reviews
Develop a deep understanding of the risk landscape for supply chain cybersecurity, and gain a good understanding of how to prioritize and protect against these threats from a procurement standpoint through approved training and online research
Other duties as assigned
Qualification
Required
Requires a Bachelors degree in Supply Chain Management, Business Administration, Cybersecurity, or a related field
1-5 years: Familiarity with current Federal Government supply chain laws, regulations, standards, and/or best practices including, but not limited to, NIST 800-171 and DFARS 252.204-7012, DFARS 252.204-7019, DFARS 252.204-7020, and DFARS 252.204-7021
1-5 years: Exceptional organizational skills, with the ability to manage multiple priorities in a fast-paced environment. Strong problem-solving skills with a proactive, detail-oriented approach to mitigating supply chain risks. Excellent written and verbal communication skills
1-5 years: Proven ability to work collaboratively with cross-functional teams, leveraging strong interpersonal skills to build relationships, facilitate teamwork, and drive successful outcomes in a dynamic and fast-paced environment. Proven ability to design and conduct effective training
1-5 years: Must have advanced skills Microsoft Office Suite (Excel, Word, PowerPoint, Outlook, and Teams), with advanced skills in Excel (e.g., pivot tables, VLOOKUP, and data analysis) as well as experience in Adobe Acrobat, with strong skills in creating, editing, and formatting
A valid/clear driver's license is required
Must be a U.S. person (i.e., U.S. citizen, non-U.S. citizen national, lawful permanent resident, asylee, or refugee) due to ITAR work in section
Company
Southwest Research Institute
Southwest Research Institute is an independent organization benefiting the government and others through innovative science and more.
Funding
Current Stage
Late StageTotal Funding
$19.47MKey Investors
NASAUS Department of EnergyARPA-E
2025-03-11Grant· $3M
2023-06-09Grant· $2M
2022-12-14Series Unknown· $1.61M
Recent News
2026-01-13
2025-12-17
Company data provided by crunchbase