Jobs and Careers
BO

Senior Supply Chain Cybersecurity Specialist

Boeing
United Statesfull_timeVerifiedPosted 17 Jun 2025
💰 $167,900/yr($107,100/yr$167,900/yr)

About the role

Senior Supply Chain Cybersecurity Specialist

Company:

The Boeing Company

The Boeing Company’s Third-Party Risk & Resilience Program Management Office, operating within the Boeing Enterprise Security organization, is currently seeking a Senior Supply Chain Cybersecurity Specialist to join the team in Everett, WA; Arlington, VA;  Auburn, WA; Berkeley, MO; Chicago, IL; Colorado Springs, CO; El Segundo, CA; Englewood, CO; Hazelwood, MO; Houston, TX; Huntington Beach, CA; Huntsville, AL; Jacksonville, FL; Kennedy Space Center, FL; Kent, WA; Long Beach, CA; Mesa, AZ; Miami, FL; North Charleston, SC; Ogden, UT; Oklahoma City, OK; Plano, TX; Portland, OR; Renton, WA; Ridley Park, PA; Saint Charles, MO; San Antonio, TX; Seal Beach, CA; or Tukwila, WA. 

Step into a critical role that safeguards Boeing's assets and operations across our complex global supply chain! We are seeking a key contributor to drive our program’s growth while performing essential Cyber Supply Chain Risk Management (Cyber-SCRM) operational duties. Our program strategically collaborates with Procurement, Contracts, Legal, Enterprise Security, Supply Chain, and Corporate Compliance functions to proactively identify, assess, and mitigate cybersecurity risks throughout the third-party lifecycle.

In this dynamic, high-volume environment, you will play a vital role in current Third-Party Risk Management (TPRM) transformation projects while executing ongoing risk management activities. As a crucial interface, you will effectively communicate complex cybersecurity concepts to both technical and non-technical audiences, including senior management and third-party representatives.

We are looking for a self-driven team player with a deep understanding of cybersecurity principles, risk management frameworks (such as NIST 800-161 and NIST 800-171), and supply chain dynamics. You will exercise sound judgment, operate with significant autonomy, and influence stakeholders, directly contributing to the protection of Boeing's critical assets. This is your chance to actively shape the future of our C-SCRM program, impacting program development and implementation while helping the team transition to sustain operational excellence as the program matures. If you’re ready to make a meaningful impact on a vital area of our business, we want you on our team!

Position Responsibilities:

  • Contribute to the development, documentation, and implementation of the TPRM governance model, strategy, policies, and operating procedures

  • Participate in the configuration and implementation of a Third-Party Risk Management (TPRM) technology platform

  • Assist in designing and implementing an inherent risk assessment methodology, including questionnaire development and risk scoring logic within the TPRM tool

  • Help establish and document processes for validating supplier due diligence information, such as certifications and questionnaires

  • Collaborate on developing requirements and testing plans for integrating the TPRM platform with other internal Boeing systems (Procurement, Contracts, Security systems, etc.)

  • Support the adoption and refinement of AI/automation tools for TPRM tasks like contract review and due diligence assistance

  • Assist in developing communication materials and training for internal stakeholders and suppliers regarding updated TPRM processes and requirements

  • Conduct and evolve comprehensive cybersecurity risk assessments of current and potential suppliers using established methodologies

  • Analyze assessment results, supplier environments, and threat intelligence to identify, prioritize, and document cybersecurity risks and control gaps

  • Develop, negotiate, and track pragmatic risk mitigation and corrective action plans with suppliers

  • Serve as a key cybersecurity subject matter expert during procurement activities (SOWs, RFIs/RFPs/RFS) and contract negotiations, ensuring appropriate cybersecurity clauses are included and enforced

  • Define and communicate cybersecurity control requirements to suppliers based on risk assessments, data sensitivity, service criticality, and regulatory obligations (NIST 800-171, CMMC, etc.)

  • Review and present technical reports and briefings on supplier cybersecurity postures and associated risks to various stakeholders

  • Act as a cybersecurity SME, providing guidance and consultation to internal teams and business partners on supply chain security matters

  • Contribute to the continuous improvement of new TPRM processes, tools, and metrics

Basic Qualifications (Required Skills/Experience):

  • 3+ years of experience with cybersecurity, information protection and/or risk manag

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Boeing

View company profile →