Demo

Cybersecurity Supply Chain Risk Management Subject Matter Expert (Anticipated Position)

Navanti Group
Arlington, VA Full Time
POSTED ON 6/15/2026
AVAILABLE BEFORE 7/12/2026
Location:

Remote / virtual support, aligned to Eastern Time core hours

Clearance Required

Active Top Secret clearance with SCI eligibility

Position Summary

The C-SCRM Subject Matter Expert will support GSA FAS/ASD in maturing its Cybersecurity Supply Chain Risk Management program from a compliance-focused model to a proactive, risk-informed enterprise capability. The SME will assess current C-SCRM practices, improve documentation and risk assessment processes, support strategy development, recommend scoring methodologies, develop practical C-SCRM guides, and advise stakeholders on cybersecurity, supplier risk, acquisition risk, and emerging technology considerations.

Key Responsibilities

  • Lead assessment of current C-SCRM documentation practices and recommend standardized templates, naming conventions, version control practices, and collaboration processes
  • Review current vendor risk assessment processes covering supplier ownership, foreign influence, cybersecurity posture, product or service criticality, supply chain dependencies, and prohibited source risks
  • Develop recommendations for improving consistency, repeatability, accuracy, and usefulness of C-SCRM risk assessments
  • Review existing C-SCRM questionnaires and recommend improvements to question clarity, evidence collection, applicability, scoring, and risk-informed decision support
  • Develop or support development of a standardized C-SCRM Risk Assessment Framework
  • Support development of a C-SCRM Strategy and Implementation Plan, including priorities, governance approach, maturity objectives, roadmap, milestones, dependencies, and responsible parties
  • Assist with planning, coordination, tracking, and execution of C-SCRM projects
  • Develop C-SCRM guides, standard operating procedures, frameworks, briefings, and other written deliverables as requested
  • Support integration of C-SCRM into acquisition processes and stakeholder workflows
  • Provide expert analysis related to NIST SP 800-161, cybersecurity risk management, enterprise risk management, acquisition assurance, supplier risk, and emerging cybersecurity requirements
  • Support monthly status reporting, technical meetings, deliverable reviews, and Government stakeholder engagement
  • Work with minimal direction and produce executive-ready written products

Required Qualifications

  • Minimum 3 years of experience establishing or supporting risk management programs, including C-SCRM
  • Demonstrated experience across the PWS task areas, including C-SCRM documentation, vendor risk assessment, questionnaire/scoring methodology, strategy development, and guide development
  • High-level cybersecurity or risk management certification, such as CISSP, CISM, or CRISC
  • Active Top Secret clearance with SCI eligibility
  • Strong knowledge of NIST SP 800-161, cybersecurity supply chain risk management, federal acquisition risk, and cyber risk frameworks
  • Strong written and oral communication skills
  • Ability to work independently with senior Government stakeholders

Preferred Qualifications

  • Experience supporting GSA, DHS, DoD, IC, or other federal cybersecurity or acquisition programs
  • Experience with Section 889, FASCSA, supplier risk, foreign ownership/control/influence concerns, prohibited source analysis, or acquisition assurance
  • Experience developing federal SOPs, implementation plans, risk frameworks, scoring rubrics, stakeholder guides, and executive briefings
  • Familiarity with AI-enabled risk management, automation, post-quantum cryptography planning, continuous monitoring, and enterprise C-SCRM maturity models

Salary.com Estimation for Cybersecurity Supply Chain Risk Management Subject Matter Expert (Anticipated Position) in Arlington, VA
$74,199 to $95,231
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cybersecurity Supply Chain Risk Management Subject Matter Expert (Anticipated Position)?

Sign up to receive alerts about other jobs on the Cybersecurity Supply Chain Risk Management Subject Matter Expert (Anticipated Position) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$74,367 - $98,680
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$99,138 - $133,641
Income Estimation: 
$94,973 - $125,755
Income Estimation: 
$96,228 - $129,772
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Navanti Group

  • Navanti Group Arlington, VA
  • POSITION NOT YET FUNDED. NAVANTI IS CURRENTLY ACCEPTING RESUMES FROM CANDIDATES FOR ANTICIPATED SECURITY AND STABILIZATION WORK. Location : Arlington, VA (... more
  • 3 Days Ago

  • Navanti Group Arlington, VA
  • POSITION NOT YET FUNDED. NAVANTI IS CURRENTLY ACCEPTING RESUMES FROM CANDIDATES FOR ANTICIPATED WORK. Navanti is seeking a wide variety of professional for... more
  • 9 Days Ago

  • Navanti Group Arlington, VA
  • Location: Remote Job Type: 1099/Independent Contractor; Part-Time/Ad Hoc Background: Navanti is seeking a seasoned Proposal Pricing Manager to provide expe... more
  • 9 Days Ago

  • Navanti Group El Paso, TX
  • Project/Team: 14G Instructor - Air Defense Artillery (ADA) Location: Fort Sill, OK Employment Type: Full-Time Number of Vacancies: 25 (with up to 5 surge p... more
  • 9 Days Ago


Not the job you're looking for? Here are some other Cybersecurity Supply Chain Risk Management Subject Matter Expert (Anticipated Position) jobs in the Arlington, VA area that may be a better fit.

  • Enterprise Solutions & Management Vienna, VA
  • Enterprise Solutions and Management (ESM) is a rapidly growing government contractor that provides strategic IT services that meet mission needs for Defens... more
  • 1 Month Ago

  • PingWind Alexandria, VA
  • Location: Alexandria, Va Required Clearance: Must possess a favorably adjudicated Tier 5 investigation Certifications: Possess one of the following certifi... more
  • 19 Days Ago

AI Assistant is available now!

Feel free to start your new journey!