Senior Information Security Engineer (ISSO)

Lumen
United States
Workplace: RemoteFull timeFunction: CybersecurityExperience: 3+ yearsSkills: ["Attention to detail","Technical judgment","Collaboration","Written and verbal communication","Customer focus"]

Support federal authorization and compliance work in a fast-paced, hands-on role focused on RMF lifecycle execution. You’ll maintain authorization artifacts (e.g., SSP, POA&M, evidence), support assessments and audit readiness, and help sustain continuous monitoring for regulated managed services systems. Collaborate with ISSOs, engineering, operations, and program stakeholders to identify control gaps, assess risks, track remediation, and evaluate solutions for compliance, security, and implementation considerations.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Lumen
Lumen
1 day ago

Senior Information Security Engineer (ISSO)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 7 hours agoStatus: Live

Job Summary

Support federal authorization and compliance work in a fast-paced, hands-on role focused on RMF lifecycle execution. You’ll maintain authorization artifacts (e.g., SSP, POA&M, evidence), support assessments and audit readiness, and help sustain continuous monitoring for regulated managed services systems. Collaborate with ISSOs, engineering, operations, and program stakeholders to identify control gaps, assess risks, track remediation, and evaluate solutions for compliance, security, and implementation considerations.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Support execution of the full RMF lifecycle, including categorization, control implementation, assessment readiness, authorization support, and continuous monitoring.
  • •Develop, maintain, and ensure accuracy of authorization artifacts such as SSP, POA&M, control evidence, and implementation narratives.
  • •Support ATO compliance and audit readiness for assigned systems, including vulnerability management, audit response, corrective action plans, and remediation tracking.
  • •Conduct security and compliance reviews and system-level risk assessments to identify gaps, risks, and improvement opportunities, and recommend control implementation and remediation.
  • •Coordinate with engineering, operations, and program teams during security assessments, audits, and inspections, and maintain awareness of vulnerability/audit/continuous monitoring data to sustain security posture.

Pay and Benefits

Perks:Health InsuranceDentalVision401kGym MembershipLearning Budget

Key Requirements

  • •Bachelor’s degree in information assurance, cybersecurity, or a related field, or equivalent experience.
  • •Minimum 3 years of relevant experience in information assurance, governance, risk, and compliance, or cybersecurity.
  • •Demonstrated experience performing RMF activities and supporting security assessments, audits, or authorization efforts.
  • •Experience developing or maintaining authorization artifacts (e.g., SSPs, POA&M, security plans, assessment evidence).
  • •Relevant cybersecurity or GRC certifications (e.g., Security+, CGRC, CAP, CISA) are preferred; broader certifications like CISSP/CISM/CCSP may supplement experience.
Experience:3+ yearsFederal complianceGRCVulnerability managementContinuous monitoringRegulated environments
Education:
Skills:Attention to detailTechnical judgmentCollaborationWritten and verbal communicationCustomer focus
Certifications:Security+CGRCCAPCISACISSPCCSPCISM
Tech Stack:NIST RMF (SP 800-37)NIST SP 800-53RMFFedRAMPFISMAGRCVulnerability managementContinuous monitoringSSPPOA&MSecurity plansCryptographic fundamentalsPost-quantum cryptography (PQC)Security assessmentsAuditsAuthorization artifacts

Eligibility

Nationality:US National

Company Brief

Lumen
Provides integrated communications, network, edge cloud, and security services to enterprise, government, and carrier customers, operating a global fiber network and delivering connectivity and managed IT solutions.
Industry: Telecommunications
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Monroe, United States
WebsiteLinkedIn