Cyber Governance Team Lead
Oak Ridge National LaboratoryAbout the role
Requisition Id 14213
Due to the security clearance requirements of this position, US citizenship is required for consideration.
Overview:
Oak Ridge National Laboratory is hiring a Cyber Governance Team Lead to mature and manage governance, risk, and compliance program initiatives for Enterprise Systems and related platforms! In this role, you will collaborate with various groups across the ORNL complex, manage a team of analysts, Information Systems Security Officers, and domain experts in leading security initiatives for enterprise systems, ensuring appropriate risk identification, directing policy for data and network cyber protection, and enabling mission and business objectives. You will develop a coordinated approach to policy documents, security control assessments, and risk mitigation strategies, enabling metrics and reporting. Our Team Lead collaborates closely with the Cyber Governance Group Leader, and the selected candidate will have the opportunity to interact with all levels of the organization.
The Team Lead in the Cybersecurity Division's Governance Group is responsible for the development, review, and updating of cybersecurity policies and procedures, ensuring compliance with federal and industry standards and regulations. This position will lead, liaise, and follow audits and risk assessments, as well as participate in incident response activities, documenting findings and corrective actions. The Team Lead will maintain accurate records of cybersecurity activities, task tracking, and all efforts in support of program enhancement, and prepare reports for senior management. Additionally, they help conduct security assessments and ensure data protection measures are effective.
Major Duties/Responsibilities:
- Lead ORNL's Cyber Governance unclassified team across all functions and disciplines.
- Identify, review, and provide analysis and recommendations to meet security requirements, translating them into policies, procedures, and control structures.
- Provide guidance on security policies and controls to support appropriate risk levels, facilitate risk tolerance discussions, and recommend controls based on industry standards.
- Lead initiatives to mature Governance, Risk, Compliance (GRC) platform capabilities.
- Coordinate risk management efforts, including risk assessment processes, mitigation strategies, and staff training.
- Participate in internal/external compliance audits and assessments.
- Create and present metrics related to risk and compliance, along with tracking the progress of compliance programs and remediation activities.
- Identify and implement process improvements for security operations.
- Work with other teams as appropriate to automate and integrate security applications and processes.
- Other duties as assigned for support within the program.
- Deliver ORNL’s mission by aligning behaviors, priorities, and interactions with our core values of Impact, Integrity, Teamwork, Safety, and Service. Promote diversity, equity, inclusion, and accessibility by fostering a respectful workplace – in how we treat one another, work together, and measure success.
Basic Qualifications:
- A BS degree in cybersecurity, computer science, computer engineering, information technology, information systems, business, or a related discipline and a minimum of eight (8) to twelve (12) years of aligned experience is required for consideration. An overall combination of equivalent education and experience may be considered.
- Experience leading teams both administratively and technically.
- Experience writing and implementing Cybersecurity Plans at enterprise and system levels.
- Knowledge of and experience performing security control assessments.
- Strong analytical and problem-solving skills to understand Cyber risk a
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s