Koniag Government Services

Cyber Supply Chain Risk Management Analyst

Koniag Government Services  •  Remote  •  1 day ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Koniag AI Solutions (KAIS), a Koniag Government Services company, is seeking a Cyber Supply Chain Risk Management Analyst to support KDS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust. This position is a remote opportunity.

We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

Koniag AI Solutions (KAIS), a Koniag Government Services company, is seeking an experienced Cybersecurity Supply Chain Risk Management (C-SCRM) Analyst to Cyber Supply Chain Risk Management (C-SCRM) Analyst to support the Food and Drug Administration's mission to protect the integrity, security, and resilience of its IT supply chains and research programs, including the vendors, technologies, and awardees that support them. The position is remote, with the expectation that the analyst will travel onsite to FDA facilities as needed to support meetings, assessments, briefings, or other mission-critical activities.
Essential Functions, Responsibilities & Duties may include, but are not limited to:
• Support the identification, assessment, and documentation of cyber supply chain risks associated with hardware, software, and service providers used by FDA.
• Assist in conducting vendor and third-party risk assessments, including reviewing vendor security questionnaires, SBOMs (Software Bill of Materials), and supplier attestations.
• Provide support for maintaining and updating C-SCRM policies, plans, and procedures in alignment with NIST SP 800-161, NIST SP 800-53, the Federal Acquisition Supply Chain Security Act (FASCSA), and other applicable federal supply chain risk management guidance and Executive Orders.
• Document and summarize OSINT findings in risk assessment reports, flagging concerns for further review by senior analysts and government stakeholders.
• Evaluate proposed acquisitions and existing technologies in use or under consideration by FDA for potential applicability of federal supply chain restrictions and prohibitions, including but not limited to NDAA Section 889 (covered telecommunications and video surveillance equipment/services), Executive Order-driven prohibitions, and other statutory or regulatory supply chain bans.
• Leverage supply chain risk management tools and platforms, including AI-powered supply chain risk solutions, to evaluate vendor risk, analyze supplier compliance data, and support more efficient, data-driven risk assessments.
• Assist in maintaining risk registers, tracking mitigation plans, and preparing status reports for government stakeholders.
• Participate in cross-functional meetings with FDA program offices, security teams, and vendors, providing analytical support and documentation.
• Help research emerging supply chain threats, vulnerabilities (e.g., counterfeit components, malicious code insertion, foreign ownership/control/influence concerns), and mitigation strategies.
• Support development of briefings, reports, and presentations summarizing C-SCRM findings for government leadership.
Education and Experience:
Required:
• Minimum of 3 years of experience in cybersecurity, IT risk management, supply chain risk management, or a related field.
• Working knowledge of NIST Risk Management Framework (RMF), NIST SP 800-161 (Cyber Supply Chain Risk Management), and NIST SP 800-53 controls.
• Familiarity with federal cybersecurity and acquisition regulations relevant to supply chain risk (e.g., FASCSA, FAR/DFARS supply chain clauses, EO 14028).
• Basic understanding of vendor risk assessment methodologies and third-party risk management practices.
• Strong analytical, research, and technical writing skills, with the ability to translate technical findings into clear, actionable reports.
• Proficiency with Microsoft Office/365 (Excel, Word, PowerPoint) and risk-tracking tools (e.g., GRC platforms, ServiceNow, or similar).
• Ability to use supply chain risk management tools, including AI-powered platforms, to evaluate vendor risk and analyze supplier compliance data.
• Strong communication skills and ability to work effectively in a remote, distributed team environment.
Security Requirement:
• Must be a U.S. citizen capable of obtaining and maintaining a Public Trust clearance.
Our Equal Employment Opportunity Policy
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.

The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e-mail at accommodations@koniag-gs.com or by calling 703-488-9377 to request accommodations.

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352
Koniag Government Services

About Koniag Government Services

Koniag Government Services (KGS) is an Alaska Native Corporation comprised of multiple wholly owned subsidiary companies that deliver Enterprise Solutions, Professional Services, and Operations Management to Federal Government agencies. With an agile employee and corporate culture, KGS applies its proven technical, professional, and operational expertise to enable successful mission outcomes for Defense and Civilian agencies through forward-leaning, solution-oriented business partnerships and a commitment to exceptional service delivery.

Our commitment to quality delivery is demonstrated by our independently accredited CMMI/Dev Level3, CMMI/Svc Level3, ISO 9001:2015 Quality Management System, and ISO 20001:2011 Service Management System. KGS is headquartered in Chantilly, VA with offices all over the country.

KGS is seeking qualified candidates for our open positions, but we will only extend an offer of employment after a candidate applies through the link in our job posting. If you receive a job offer via email only and have not been interviewed by the KGS hiring manager, feel free to contact KGSrecruiting@koniag-gs.com to verify its validity.

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
Chantilly, Virginia
Year Founded
1975
Social Media