Vinsys Information Technology logo

Remote Role - Cybersecurity Supply Chain Risk Management (C-SCRM) &PQC SME

Vinsys Information Technology

RemotemidPosted 2h ago

Visa & sponsorship

  • A US security clearance is required, which effectively means citizens only.

Job description

Hope you are doing well. We have an open position for a

Cybersecurity Supply Chain Risk Management and Post-Quantum Cryptography Subject Matter Expert

. Pl. go through the below description and let me know your interest. If you are interested, kindly share a copy of your resume to hr@vinsysinfo.com along with the rate / salary and best time to reach you.

Location:

Remote / Virtual, U.S.

Client:

Federal Client

Work Schedule:

Monday Friday; core hours 9:00 AM 3:00 PM ET

Clearance:

Active Top Secret with SCI eligibility required

Certification:

CISSP, CISM, or CRISC required

We are seeking a senior Cybersecurity Supply Chain Risk Management and Post-Quantum Cryptography Subject Matter Expert to support maturing its enterprise C-SCRM program and integrating PQC readiness into federal acquisition and vendor-risk processes.

Key Responsibilities Include

  • Develop and mature enterprise C-SCRM strategy, governance, processes, and implementation roadmaps.

  • Review and improve vendor/supplier risk-assessment methodologies.

  • Develop standardized C-SCRM risk frameworks, scoring models, questionnaires, SOPs, and guidance.

  • Support PQC readiness, including cryptographic risk, quantum-vulnerable dependencies, CBOM concepts, and acquisition guidance.

  • Assess supplier ownership, foreign influence, cybersecurity posture, criticality, supply-chain dependencies, and prohibited sources.

  • Support continuous monitoring, C-SCRM projects, documentation standardization, and federal stakeholder coordination.

  • Identify opportunities for AI and automation to improve C-SCRM efficiency.

  • Prepare required reports, plans, technical meeting materials, and project documentation.

Required Qualifications

  • 3+ years establishing a risk-management program, including C-SCRM.

  • 3+ years of experience with cryptographic algorithms.

  • Experience across C-SCRM strategy, vendor risk, cybersecurity policy, assessments, and program improvement.

  • CISSP, CISM, or CRISC certification.

  • Active TS clearance with SCI eligibility.

  • Strong written and verbal communication skills.

  • Ability to work independently with minimal supervision.

Preferred Experience

  • Post-Quantum Cryptography.

  • NIST SP 800-161 and federal C-SCRM requirements.

  • Federal acquisition and supplier-risk programs.

  • Vendor-risk scoring and continuous monitoring.

  • AI/automation for cybersecurity risk processes.