Software Supply Chain Security Specialist supporting secure software supply chain in the United States. Requires 2+ years of experience and a Bachelor’s degree.
Responsibilities
Conduct vendor risk assessments based on security, compliance, and performance criteria.
Maintain and update vendor scorecards, flag underperforming suppliers for escalation.
Track vendor remediation plans and monitor follow-through.
Assist in onboarding new software vendors by auditing their security posture and documentation.
Support implementation and maintenance of software composition analysis (SCA) tools, SBOM generation/ingestion tools, and pipeline integrations.
Validate SBOMs submitted by vendors for correctness, depth, and format (e.g., SPDX, CycloneDX).
Help automate checks for license compliance, vulnerability scanning, and component provenance verification.
Apply and enforce existing vendor security policies, guidelines, and checklists consistently across projects.
Assist in reviewing third-party software requests from development teams, ensuring they meet policy criteria.
Escalate nonconforming proposals or exceptions to the Manager for review.
Monitor open source and third-party component vulnerabilities, mapping them to affected product lines and dependencies.
Help perform root cause or upstream traceability analysis for supply chain vulnerabilities.
Provide impact assessments and assist in remediation tracking.
Act as liaison between vendors, product teams, legal, procurement, and security/engineering stakeholders.
Schedule and lead vendor technical reviews, workshops, and follow-ups.
Prepare status reports, dashboards, and executive summaries for the Manager and leadership.
Support internal and external audits of supplier security practices and supply chain compliance.
Prepare evidence, documentation, and findings for audit reviews.
Help maintain supplier assurance programs and track compliance metrics.
Requirements
Bachelor’s degree in Supply Chain Management, Information Security, Software Engineering, or related field
2+ years of experience in supply chain management, software and supply chain security, third-party risk, or a related area
Familiarity with SBOM standards (SPDX, CycloneDX), software composition analysis tools (e.g. Snyk, Black Duck, Mend), and vulnerability databases
New graduate in Supply Chain Rotational Program at Arc'teryx gaining diverse experiences across multiple teams in Supply Chain. Kickstart your career with hands - on exposure in a collaborative environment.
Senior Supply Chain Manager managing sourcing strategies for mechanical and electronic components. Leading a team during parental leave while ensuring stable operations and smooth transitions.
Supply Chain Operations Associate role handling day - to - day supply chain execution in a regulated environment. Collaborating with teams to ensure order processing, invoicing, and shipment coordination.
Supply Chain Specialist driving US procurement in a lab automation company. Leading sourcing activities and optimizing supplier management for timely project delivery.
Senior Presales professional at KBRW understanding client supply chain needs and delivering tailored software solutions. Collaborating with sales and delivery teams to drive value for major clients.
Senior Analyst managing procurement strategies for Marine Logistics Services at SABIC. Responsible for implementing category management strategies within the Maritime sector across Europe.
Category Manager responsible for sourcing and contracting strategies for Intermodal Transportation in Europe. Leading supplier performance and internal engagement with various departments.
On - Site Warehouse Manager responsible for managing a team at a distribution center. Ensure operational excellence and maintain customer relationships while overseeing site performance.
Supply Chain Trainee supporting Nespresso's supply chain operations in Demand Planning and Logistics. Learn about end - to - end supply chain while working in a multinational company.
Supply Chain Specialist at Teva handling replenishment management and inventory activities. Collaborating across teams for supply chain efficiency and support in a multinational environment.