Supply Chain Cyber Risk Analyst

🔥 12 hours ago

🏈 Alabama, Alaska, +44 more states – Remote

infoinfo

⏰ Full Time

🟡 Mid-level

🟠 Senior

🔐 Security Analyst

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Cummins Inc.

Cummins Inc.

10,000+ employees

Founded 1919

🏗️ Construction

💼 Consulting

🏥 Healthcare

💰 $75M Grant on 2024-07

Construction • Consulting • Healthcare

Cummins Inc. is a global power technology leader that designs, manufactures, and distributes a variety of engines and power systems solutions. They offer products that range from diesel and natural gas engines to hybrid and electric power systems, as well as components like turbochargers, fuel systems, and emissions solutions. With a strong emphasis on innovation, Cummins aims to reduce emissions and improve fuel efficiency. The company is dedicated to helping industries navigate the transition to cleaner energy through integrated power solutions suitable for diverse applications such as on-highway, marine, mining, and construction. Additionally, Cummins provides services including remote monitoring, diagnostics, and aftermarket support, reinforcing its commitment to sustainability and customer service excellence.

📋 Description

• Lead support of the organization's cybersecurity framework, including policies, standards, and baselines • Apply Cummins cybersecurity policies and industry data privacy principles • Lead cybersecurity risk identification using Cummins risk management frameworks • Provide guidance to evaluate risk severity and mitigation plans • Coach and develop less experienced team members • Apply NIST, ISO, ITIL, and COBIT frameworks to Cummins processes and controls • Provide cybersecurity technical expertise for technology solutions • Collaborate with stakeholders on new and changing technology solutions as a trusted business partner and advisor • Assess cybersecurity risk profiles of third-party vendors and partners through due diligence reviews and questionnaires • Monitor ongoing vendor compliance and escalate concerns • Maintain the third-party risk inventory and associated risk ratings • Partner with IT, Legal, Compliance, Privacy, and business units to embed risk awareness into projects and initiatives • Provide risk-informed guidance during new technology adoption, system changes, and product launches • Support security awareness efforts related to risk management practices

🎯 Requirements

• Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, or a related field (or equivalent experience) • 3–5 years of experience in cybersecurity, IT risk management, or a related discipline • Demonstrated knowledge of cybersecurity risk frameworks and methodologies (NIST CSF, NIST RMF, ISO 27001/27005, FAIR) • Familiarity with regulatory requirements such as SOC 2, PCI-DSS, or GDPR • Strong analytical and problem-solving skills with the ability to translate technical risks into business language • Excellent written and verbal communication skills, including experience preparing executive-level reports • Proficiency with GRC tools (e.g., Venminder, Black Kite, OneTrust, or similar) • College, university, or equivalent degree in Cybersecurity, Computer Science, Information Technology, or a related subject, or relevant equivalent experience required • This position may require licensing for compliance with export controls or sanctions regulations

Apply Now

Similar Jobs

🔥 12 hours ago

Chainguard

51 - 200

🔐 Security

☁️ SaaS

🔒 Cybersecurity

Senior Security Analyst building Chainguard’s public-sector security program. Translating federal requirements into continuous monitoring, authorization, and risk-reducing controls for secure open-source software.

🔥 13 hours ago

BlueScope

10,000+ employees

🏭 Manufacturing

🏗️ Construction

Information Security Analyst securing BlueScope’s global building-solutions manufacturing systems, applications, and AI technologies. Managing controls, risk programs, continuity planning, and security awareness.

🔥 18 hours ago

Draper

1001 - 5000

🏥 Healthcare

🏭 Manufacturing

🧬 Biotechnology

Supply Chain Security Analyst assessing defense-industry suppliers and SCRM risks for Draper, a nonprofit R&D company. Developing compliance analyses, supplier validations, and mitigation strategies.

🔥 18 hours ago

Equity Resources, Inc

201 - 500

💸 Finance

🏠 Real Estate

👥 B2C

Senior IT Security Analyst leading Microsoft cybersecurity operations for mortgage lender Equity Resources. Protecting company and customer data through incident response, identity management, vulnerability remediation, and compliance.

🕒 Yesterday

Windstream

10,000+ employees

📡 Telecommunications

👥 B2C

Information Security Analyst supporting IAM access provisioning, audits, and identity lifecycle management. Resolving access issues for corporate applications and systems across the United States.