Cybersecurity Engineer

Lumen Inc
Washington, DC, United States
22 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Cloud Computing Security CompTIA Security+ Cyber Security Information Security Management Software Vulnerability Management Technical Debt CIS Benchmarks Devsecops

Job description

We are seeking a Senior Cybersecurity Engineer / Senior Information System Security Officer (ISSO) to provide cybersecurity design oversight, security governance, and risk-management support across enterprise technology initiatives. This individual will partner closely with business, technology, architecture, and cybersecurity teams to ensure security requirements are incorporated early in the solution design and delivery lifecycle., * Provide senior-level ISSO support, cybersecurity oversight, and security advisory services for enterprise systems, applications, platforms, and strategic initiatives.

  • Partner with Agile Release Trains (ARTs), product teams, solution architects, developers, infrastructure teams, and business stakeholders to embed security-by-design principles throughout planning, design, development, testing, deployment, and operational support.
  • Review proposed system and solution architectures to identify security gaps, design risks, control requirements, and remediation recommendations.
  • Ensure cybersecurity requirements are identified and incorporated early in the delivery lifecycle to reduce implementation risk, technical debt, and future remediation costs.
  • Lead or support security risk assessments, risk analysis, control evaluations, and documentation of security findings, exceptions, mitigation plans, and residual risk.
  • Advise teams on appropriate security controls, secure design practices, governance requirements, and compliance obligations.
  • Support adherence to applicable regulatory, enterprise, and industry security standards, policies, and procedures.
  • Serve as a key liaison between cybersecurity, enterprise architecture, technology delivery teams, and business stakeholders to enable compliant delivery of business objectives.
  • Communicate security risks, recommendations, and decision points clearly to both technical and non-technical audiences.
  • Contribute to the continuous improvement of cybersecurity governance, secure architecture practices, and enterprise risk-management processes.
  • Support strategic cybersecurity risk operations and related reporting, tracking, and executive-level visibility as needed.

Requirements

  • Significant experience in cybersecurity engineering, information security, security architecture, IT risk management, or a closely related field.
  • Demonstrated experience serving in a senior ISSO, security engineering, security governance, or cybersecurity advisory capacity.
  • Strong understanding of secure-by-design, secure SDLC, threat/risk analysis, security controls, vulnerability remediation, and enterprise security governance.
  • Experience conducting or supporting security assessments, risk reviews, control assessments, remediation planning, and exception/risk-acceptance processes.
  • Ability to evaluate technical architectures and translate security requirements into actionable guidance for delivery teams.
  • Experience supporting Agile delivery environments and collaborating with cross-functional product, engineering, architecture, and operations teams.
  • Working knowledge of recognized security frameworks and standards, such as NIST, ISO 27001, CIS Controls, and other relevant regulatory or industry requirements.
  • Strong stakeholder-management, communication, documentation, and influencing skills.
  • Ability to work independently in a remote environment while managing multiple priorities across a large enterprise portfolio., * Experience supporting large, regulated, critical-infrastructure, transportation, public-sector, or similarly complex enterprise environments.
  • Experience with Agile Release Trains (ARTs), SAFe, DevSecOps, cloud security, or enterprise architecture governance.
  • Relevant certifications such as CISSP, CISM, CRISC, CCSP, Security+, or comparable cybersecurity credentials.

About the company

Lumen Solutions Group Inc. is a technology consulting Services company based in Florida. We provide a wide array of experienced business and IT professionals supporting clients from solution design to implementation and support. We specialize in professional IT consulting services, IT Staffing, Business/IT Strategy, Business Process Blueprints, Enterprise Architecture, and Enterprise Transformation.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:06 min

The lack of responsibility over technical debt

Stefan Priebsch · World Congress 2021

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all