Principal Secure Procurement Leader
Greenville, NC - USA
Job Summary
In this high-visibility cross-functional role you will define supplier cybersecurity requirements lead third-party assessments and audits embed security obligations into procurement contracts and drive SBOM adoption across the supplier base. You will partner with product engineering sourcing legal and Vulnerability Operations teams to strengthen supply chain security and protect GE Vernova customers and critical energy infrastructure.
In This Role You Will
- Own and manage GE Vernovas Secure Procurement Program end-to-end.
- Develop supplier security requirements policies and contractual cybersecurity obligations aligned with ISA/IECand.
- Conduct supplier cybersecurity assessments and audits including questionnaires remote reviews and on-site evaluations.
- Track supplier cybersecurity risks remediation actions and compliance status.
- Embed cybersecurity requirements into RFPs contracts and supplier qualification processes.
- Maintain a cybersecurity-focused Approved Supplier List and reassessment process.
- Drive SBOM adoption and manage open-source software risk.
- Coordinate vulnerability response for supplier-provided components in the field.
- Deliver supplier risk reporting and executive metrics.
- Monitor supply chain threats and relevant regulations.
- Represent GE Vernova in industry forums and standards groups.
- Mentor team members on secure procurement and IEC 62443 practices.
Required
- Bachelors degree or equivalent experience.
- 8 years of experience in cybersecurity supply chain security product security or third-party risk management in an OT/ICS environment.
- Strong knowledge of ISA/IEC 62443 especiallyand.
- Experience running supplier security assessment programs and managing remediation.
- Familiarity with SBOMs SCA tools and OSS risk management.
- Experience integrating cybersecurity into procurement sourcing and contract processes.
- Knowledge of relevant regulations and standards including NERC CIP-013 CMMC NIS2 EU Cyber Resilience Act and NDAA Section 889.
- Strong communication and stakeholder management skills.
Desired
- Direct experience with IECin OT/ICS manufacturing.
- Experience using AI/ML for supplier risk monitoring or SBOM analysis.
- Knowledge of GE Vernova or similar industrial product ecosystems.
- Experience with firmware security counterfeit component detection and hardware supply chain integrity.
- Global supplier management experience.
- Relevant certifications such as CISSP CISM GICSP CSSLP or ISA/IEC 62443 certification.
GE Vernova offers a great work environment professional development challenging careers and competitive compensation. GE Vernova is anEqual Opportunity Employer. Employment decisions are made without regard to race color religion national or ethnic origin sex sexual orientation gender identity or expression age disability protected veteran status or other characteristics protected by law.
GE Vernova will only employ those who are legally authorized to work in the United States for this opening. Any offer of employment is conditioned upon the successful completion of a drug screen (as applicable).
Relocation Assistance Provided: Yes
Required Experience:
Staff IC
About Company
GE Vernova's Asset Performance Management software can help you increase asset reliability, minimize costs and reduce operational risks. View a demo today.