Cyber Security Consultant

4 weeks ago


Portland, United States LHH Full time

Cybersecurity Supply Chain Risk Management (C-SCRM) Analyst

Location: Portland, OR (Hybrid)

LHH is partnering with a leading industrial business in Portland, Oregon, to find an exceptional Cybersecurity Supply Chain Risk Management (C-SCRM) Analyst. Our client operates across multiple locations, providing vital support for infrastructure, defense, and energy projects. They are committed to building a values-driven culture that prioritizes sustainability, employee well-being, and community engagement.

As a C-SCRM Analyst, you’ll be a key member of the Information Security team, helping ensure the security and compliance of the supply chain. This is a fantastic opportunity for a cybersecurity professional with experience in supply chain risk management and expertise in NIST 800-171 and CMMC compliance.

Key Responsibilities:

  • Engage with suppliers to educate them on new cybersecurity requirements and ensure they meet federal contract compliance standards.
  • Coordinate the review of vendor cybersecurity questionnaire responses and conduct interviews to assess compliance with NIST SP 800-171 / CMMC requirements.
  • Develop and manage the Supply Chain Risk Management Plan, overseeing supplier compliance and implementing corrective actions as needed.

Top Responsibilities:

  • Supplier Engagement & Education (40%): Communicate with suppliers, educating them on cybersecurity requirements and ensuring they are compliant with regulations.
  • Vetting & Monitoring Compliance (40%): Perform recurring supplier vetting to ensure ongoing compliance with federal contracts and NIST 800-171 standards.
  • Program Development & Management (20%): Build and maintain a program to support suppliers in achieving compliance and managing cybersecurity risks.

About the Role:

This is a hybrid role, based in the Portland, OR area, with occasional travel (up to 10%) to various locations. You will work closely with cross-functional teams, providing expert guidance on cybersecurity compliance and managing risk across the supply chain. You’ll be instrumental in implementing technical solutions to protect the company’s operations and ensuring vendors remain compliant with national cybersecurity standards.

Qualifications:

  • 5+ years of experience with a Bachelor’s degree in Computer Science, Engineering, IT, Cybersecurity, or a related field, or 10+ years of related technical experience.
  • 3+ years of experience in Information Security, contributing to security solutions, scope, and architecture.
  • Experience with NIST SP 800-171/CMMC and conducting technical security assessments of large, complex systems.
  • Familiarity with cybersecurity technologies, including vulnerability scanning tools, SIEMs, endpoint protection tools, DLP, and IDS/IPS tools.
  • U.S. Citizenship required.
  • Active IAT Level III certification (DoDD 8140.01) and CISSP

Core Competencies:

  • In-depth understanding of NIST SP 800-171/CMMC compliance standards.
  • Ability to identify and mitigate cybersecurity risks, providing expert guidance to vendors.
  • Excellent communication and interpersonal skills to collaborate with suppliers, internal teams, and leadership.
  • Strong project management skills to oversee program development and supplier compliance.

Why Work for Our Client?

Our client offers a flexible schedule and a strong, collaborative team environment. They are committed to being a regenerative force for good, and you will have the chance to be part of an organization that values sustainability, innovation, and positive impacts on the community and environment.

Benefits: Benefit offerings include medical, dental, vision, life insurance, short-term disability, additional voluntary benefits, EAP program, commuter benefits and 401K plan. Our program provides employees the flexibility to choose the type of coverage that meets their individual needs. Available paid leave may include Paid Sick Leave, where required by law; any other paid leave required by Federal, State, or local law; and Holiday pay upon meeting eligibility criteria.

Applicants must be authorized to work for any employer in the U.S. and sit stateside. Our client is unable to sponsor or take over sponsorship of an employment Visa at this time.

**Please no C2C applicants*

How to Apply:

If you're passionate about cybersecurity and have experience working with NIST 800-171 and CMMC compliance, we encourage you to apply today. This is an opportunity to be part of an organization that values truth, responsibility, and continuous improvement.



  • Portland, Oregon, United States PacifiCorp Full time

    Job SummaryPacifiCorp is seeking a highly skilled Cyber Security Specialist to support the implementation and maintenance of information security systems in support of ISO 27001 and ISO 27019 certification. The ideal candidate will have a strong background in information security best practices and experience in managing continuous improvement program...


  • Portland, Oregon, United States PacifiCorp Full time

    Cyber Security SpecialistAt PacifiCorp, we are seeking a highly skilled Cyber Security Specialist to join our team. As a key member of our information security team, you will be responsible for implementing and maintaining information security systems in support of ISO 27001 and ISO 27019 certification. Your expertise will be essential in supporting change...


  • Portland, Oregon, United States Palo Alto Networks Full time

    Job DescriptionLead a Team of Cybersecurity ExpertsThe Consulting Director, Offensive Security will lead a team of technical security consultants in assessing and challenging the security posture of clients across various industries, geographies, and organizational structures. As a client advocate for cybersecurity risk management, you will provide strategic...


  • Portland, Oregon, United States PacifiCorp Full time

    Job SummaryPacifiCorp is seeking a highly skilled Information Security Specialist to support the implementation and maintenance of information security systems in support of ISO 27001 and ISO 27019 certification. The ideal candidate will have a strong background in information security best practices and experience in a similar role.Key...


  • Portland, Oregon, United States PacifiCorp Full time

    Job SummaryPacifiCorp is seeking a highly skilled Information Security Specialist to support the implementation and maintenance of information security systems in support of ISO 27001 and ISO 27019 certification. The ideal candidate will have a strong background in information security best practices and experience in managing complex technical problems.Key...


  • Portland, Oregon, United States PacifiCorp Full time

    Job SummaryPacifiCorp is seeking a highly skilled Information Security Specialist to support the implementation and maintenance of information security systems in support of ISO 27001 and ISO 27019 certification. The ideal candidate will have a strong background in information security best practices and experience in managing IT controls.Key...


  • Portland, Oregon, United States WebMD Full time

    About the Role:The Security Operations Analyst plays a critical role in the day-to-day administration and operations of cyber security at WebMD. This individual must have a solid understanding of common security tools and protocols.Responsibilities:Monitor and respond to real-time threat information and provide security support to our users.Hands-on...

  • Security Consultant

    3 weeks ago


    Portland, Oregon, United States NetSPI Full time

    Job Title: Associate Security ConsultantNetSPI is a leading provider of proactive security solutions, helping to secure the most trusted brands on Earth. We're seeking a highly motivated and skilled Associate Security Consultant to join our team.Responsibilities:Complete a comprehensive training program in web application penetration testingDemonstrate...

  • Security Consultant

    2 weeks ago


    Portland, Oregon, United States NetSPI Full time

    Job Title: Associate Security ConsultantNetSPI is a leading provider of proactive security solutions, helping to secure the most trusted brands on Earth. We're seeking a highly motivated and skilled Associate Security Consultant to join our team.Responsibilities:Complete the learning objectives of our web application penetration testing training...


  • Portland, Oregon, United States PacifiCorp Full time

    Job SummaryPacifiCorp is seeking a highly skilled Information Security Specialist to support the implementation and maintenance of information security systems in support of ISO 27001 and ISO 27019 certification. The ideal candidate will have a strong background in information security best practices and experience with change management of changes to the...

  • Security Lead

    2 weeks ago


    Portland, Oregon, United States Inter-Con Security Full time

    Job Title: Security LeadInter-Con Security Systems, Inc. is seeking a highly skilled Security Lead to join our team. As a Security Lead, you will be responsible for overseeing the security operations at our facilities, ensuring the safety and security of our clients and employees.Job Summary:The Security Lead will be responsible for:Supervising security...


  • Portland, Oregon, United States Atmosera Full time

    About Us: Atmosera is a leading cloud technology transformation firm that offers a range of services, including application and data professional services, security & compliance management, Azure operations, and technology training. Our expertise in applications, data, and the Microsoft Azure platform enables us to accelerate innovation speed, increase...

  • Leasing Consultant

    1 week ago


    Portland, Oregon, United States Security Properties Full time

    About UsAt Security Properties Residential, we are a leading provider of exceptional living experiences. Our team is dedicated to fostering a culture of growth and innovation, with a focus on delivering WOW customer service. We are seeking a talented Leasing Consultant to join our team in the Pearl District.Key ResponsibilitiesAs a Leasing Consultant, you...


  • Portland, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:Cisco Certified...


  • Portland, Oregon, United States Atmosera Full time

    About Us:Atmosera is a full lifecycle cloud technology transformation firm that offers application and data professional services, security & compliance management, Azure operations, and technology training.We accelerate innovation speed, increase operational agility, and vastly improve the return on investment in modern technology and human expertise.Job...


  • Portland, Oregon, United States Securitas Electronic Security Inc Full time

    Job Title: National Enterprise Security Solutions ExecutiveWe are seeking a highly motivated and experienced National Enterprise Security Solutions Executive to join our team at Securitas Electronic Security Inc. As a key member of our sales team, you will be responsible for developing and executing sales strategies to drive growth and revenue in the...


  • Portland, United States Deloitte Full time

    Position Summary Are you looking to elevate your cyber career? Your technical skills? Your opportunity for growth? Deloitte’s Government and Public Services Cyber Practice (GPS Cyber Practice) is the place for you! Our GPS Cyber Practice helps organizations create a cyber minded culture and become stronger, faster, and more innovative. You will...

  • SAP Security Expert

    4 weeks ago


    Portland, Oregon, United States TEPHRA Full time

    SAP Security ConsultantAt TEPHRA, we are seeking a highly skilled SAP Security Consultant to join our team. As a key member of our team, you will be responsible for providing expert-level guidance and support on SAP security and GRC consulting.Key Responsibilities:Provide SAP security consultation for rollouts, version upgrades, support, and implementation...

  • Sales Consultant

    1 month ago


    Portland, Oregon, United States ALSCO Full time

    Job Title: Sales ConsultantWe are seeking a highly motivated and results-driven Sales Consultant to join our team at Alsco. As a Sales Consultant, you will be responsible for soliciting and securing new clients for our linen and uniform rental services, as well as promoting our approved products and services within a designated sales territory.Key...


  • Portland, Oregon, United States NetSPI Full time

    Job SummaryNetSPI is a proactive security solution provider that helps secure the most trusted brands on Earth. We are seeking a skilled Cybersecurity Consultant to join our team. As a Cybersecurity Consultant, you will be responsible for discovering, prioritizing, and remediating security vulnerabilities of the highest importance.Key...