Cybersecurity Engineer Senior (Senior ISSO) / Exposure Management Analyst

Lumen Solutions Group, Inc.

  • Washington, DC
  • 4 days ago
  • Remote

    Highlights

    We are seeking three experienced Cybersecurity Engineers / Exposure Management Analysts to help identify, assess, prioritize, and coordinate remediation of cybersecurity risks across a large enterprise IT and operational technology environment. Key Responsibilities Identify and assess vulnerabilities, security misconfigurations, exposed assets, attack paths, and security-control gaps across infrastructure, applications, networks, cloud services, and operational environments.

    Numbers & Facts

    LocationWashington, DC (
    Remote
    )

    Description

    Company Description 
    Lumen Solutions Group Inc. is a technology consulting Services company based in Florida. We provide a wide array of experienced business and IT professionals supporting clients from solution design to implementation and support. We specialize in professional IT consulting services, IT Staffing, Business/IT Strategy, Business Process Blueprints, Enterprise Architecture, and Enterprise Transformation. 
     
    Job Title: Cybersecurity Engineer Senior (Senior ISSO) / Exposure Management Analyst
    Location: Washington, DC. (REMOTE) (Quarterly PI planning travel)
    Contract: 12+ months
     
    Position Overview:
    We are seeking three experienced Cybersecurity Engineers / Exposure Management Analysts to help identify, assess, prioritize, and coordinate remediation of cybersecurity risks across a large enterprise IT and operational technology environment. These professionals will provide hands-on exposure-management support, including vulnerability identification, misconfiguration analysis, external attack-surface monitoring, attack-path analysis, and risk-based remediation tracking.
    Key Responsibilities
    • Identify and assess vulnerabilities, security misconfigurations, exposed assets, attack paths, and security-control gaps across infrastructure, applications, networks, cloud services, and operational environments.
    • Use threat intelligence, exploitability data, asset criticality, and business impact to prioritize risks and drive practical remediation decisions.
    • Work with technology owners, Cloud Services, Network Engineering, Security Architecture, Security Engineering, the Cyber Fusion Center, and other stakeholders to coordinate and track remediation activities.
    • Operate and analyze data from vulnerability and exposure-management tools such as Tenable, Qualys, Rapid7, Microsoft Defender, and ServiceNow.
    • Support external attack-surface management and attack-path analysis to identify potentially exploitable entry points and high-risk exposure chains.
    • Develop cybersecurity metrics, dashboards, executive-ready reporting, and remediation-status tracking.
    • Translate technical security findings into clear business, operational, and risk-focused communication for both technical and non-technical stakeholders.
    • Support compliance and cybersecurity best practices aligned with NIST CSF, NIST SP 800-53, CIS Controls, and related enterprise security standards.
    • Contribute to a proactive, threat-informed exposure-management program that improves enterprise resilience and reduces overall cyber risk.
     
    Required Qualifications
    • Strong experience in enterprise vulnerability management, exposure management, and risk-based remediation.
    • Experience assessing infrastructure, applications, networks, cloud platforms, and externally exposed assets.
    • Hands-on experience with one or more major vulnerability-management platforms, including Tenable, Qualys, Rapid7, Microsoft Defender, and/or ServiceNow.
    • Knowledge of cybersecurity frameworks and practices, including NIST CSF, NIST SP 800-53, and CIS Controls.
    • Strong analytical, documentation, communication, and stakeholder-management skills.
    • Ability to prioritize competing security findings based on real-world exploitability and business impact.
    • Experience supporting large, complex enterprise cybersecurity programs.
     
    Preferred Qualifications
    • Relevant certifications such as CISSP, CISM, CISA, CRISC, GICSP, GSEC, Security+, CASP+, or equivalent.
    • For at least one of the three openings: experience securing Operational Technology (OT), ICS, or SCADA environments, including awareness of operational safety, system availability, maintenance windows, and vendor constraints.
     
    Lumen Solutions Group Inc is an equal opportunity employer. All qualified applicants will be considered for employment without regard to any legally protected status.

    Similar Jobs

    See more jobs