This position will be based full-time in our Houston, TX office located at 990 Town & Country Blvd in CityCentre.
POSITION SUMMARY: This position establishes, leads, and governs the enterprise-wide Cybersecurity Supply Chain Risk Management (C SCRM) program for both Operational Technology (OT or digital instrumentation and controls) and Information Technology (IT). The C-SCRM Program Manager reports to the Supervisor, Information Security and leads an interdisciplinary team of subject matter experts from Information Security, Instrumentation and Controls Engineering and Manufacturing (i.e., Supply Chain), and Plant Services Cyber Security to deliver a scalable, defensible, and compliant supply chain assurance program for digital assets and software systems that are safety-related, augmented requirements, physical security-related, or emergency preparedness related in accordance with NIST SP 800-161, NIST SP 800-53 (SR/SA/RA/PM), NIST SP 800-82, and nuclear sector guidance (NEI 08-09, Regulatory Guide 5.71, RIS 2015-08 Rev 1).
ESSENTIAL DUTIES AND RESPONSIBILITIES:
The C-SCRM Program Manager will perform the following duties and have overall responsibility for the administration and implementation of the C-SCRM Program. Will be required to perform other duties as assigned.
Program Governance and Strategy
Supplier Lifecycle Management
Technical Assurance for OT and IT
Risk Analysis and Decision Support
Compliance, Audit, and Regulatory Engagement
Training, Communications, and Stakeholder Engagement
CORE COMPETENCIES: To perform the job successfully, the individual should demonstrate competencies in performing the essential functions of this position by performing satisfactorily in each of these competencies.
MINIMUM SKILLS, QUALIFICATIONS AND ABILITIES:
Education/Certification: A minimum of a bachelor's degree in Cybersecurity, Computer Science, Engineering, or related field is required. Alternatively, an additional 4 years (12 years total) of equivalent full-time nuclear industry cyber security experience may be considered in lieu of a degree. NSCP 800-161 Foundation Certificate or equivalent is required. Professional certifications such as CISSP, CISM, CRISC, GICSP, CISA, or ISA/IEC 62443 certificates are preferred.
Experience: A minimum of 8 years of full-time cybersecurity experience with a focus on supply chain risk, vendor management, or secure procurement is required. Must have experience across OT/ICS and IT cybersecurity, including digital I&C systems, embedded controllers, industrial networking, and enterprise IT infrastructure. Additional required experience included:
Detailed knowledge of NIST SP 800‑161, NIST SP 800‑82, and NIST SP 800‑53 control families related to supply chain, assurance, and risk assessment (SR/SA/RA/PM) .
Familiarity with nuclear regulatory guidance including NEI 08‑09, RG 5.71, and RIS 2015‑08 Rev 1.
Demonstrated ability to lead cross‑disciplinary teams and manage complex supplier ecosystems.
Strong written and verbal communication skills; ability to influence at all organizational levels. Experience in nuclear energy, critical infrastructure, or similarly regulated sectors preferred.
Working knowledge of SBOM formats (SPDX, CycloneDX) and secure software development lifecycle (SSDLC) practices (e.g., NIST SP 800-218).
Understanding of OT protocols, deterministic network architectures, physical/functional separation concepts, and secure digital I&C implementation (e.g., Regulatory Guide 1.152, Revision 3, Regulatory Position C.2).
Industry Requirements: Eligible to work under Department of Energy 10 CFR Part 810.
PHYSICAL DEMANDS: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Disclaimer: Employee(s) must perform the essential duties and responsibilities with or without reasonable accommodation efficiently and accurately without causing significant safety threat to self or others. The above statements are intended to describe the general nature and level of work being performed by employee(s) assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties and/or skills required of all employees in this classification.
NuScale Power, LLC is an equal opportunity employer and does not discriminate against otherwise qualified applicants on the basis of race, color, creed, religion, ancestry, age, sex, marital status, national origin, disability or handicap, or veteran status.
Pay and Benefits:
The target pay range for this position is $165,576 - $199,833 annually. The full pay range is $148,447 - $232,188 annually.
At NuScale, compensation decisions are determined using factors such as relevant job-related skills, full-time working experience, education and training, equity within the department.
For information on employee benefits, please visit our Careers Overview page: Employee Benefits | NuScale Power
| Location | Houston, TX |
| Salary | $165,576–$199,833 Per Year |
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.
Free resume templatesImprove your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.
Free resume builder