Cyber Operations EngineerThis job is with Encode, Inc a fully owned subsidiary of LancesoftThis role requires a secret clearance to start. The candidate will need to be open and able to increase clearance level to Top Secret when they start. If someone has an active TS, that's a huge plus.Location: Alexandria, VAType: Full-timeBenefits: We offer a comprehensive benefit package that includes 3 weeks paid time off, 11 Paid Holidays, medical/dental coverage, STD, LTD, Life Insurance, AD&D, 401k with up to 4% match, and end of year profit sharing paid out in 401k.Job DescriptionThe Senior Cyber Operations Engineer provides expert-level support to enterprise vulnerability management programs across cloud-based infrastructures.
This role is critical in executing and maturing continuous monitoring capabilities through the use of industry-standard tools such as ACAS (Tenable.sc), AWS Inspector, and DISA STIG frameworks. The engineer is responsible for identifying, analyzing, and driving remediation of security vulnerabilities in alignment with DoD cybersecurity standards and Risk Management Framework (RMF) requirements.ResponsibilitiesLead enterprise-wide vulnerability scanning, analysis, and reporting using ACAS for traditional infrastructure and AWS Inspector for cloud-hosted assetsInterpret and apply DISA STIGs to support secure configuration baselines, remediation plans, and POA&M lifecycle managementCoordinates with system owners, application teams, and ISSOs to drive resolution of findingsAutomates scanning and reporting pipelines to enhance operational efficiencyCreates and maintains vulnerability dashboards, compliance reports, and audit-ready documentationSupports continuous monitoring tasks under RMF and ensures timely ingestion of findings into eMASSProvides mentorship to junior analysts and contributes to standard operating procedures and policy refinementMinimum Qualifications10+ years of hands-on experience in cybersecurity operationsDemonstrated expertise with ACAS (Tenable.sc/Nessus), AWS Inspector, and DISA STIGsSolid understanding of NIST SP 800-53 controls and RMF processesHands-on expertise with compliance systems such as eMASS, STIG Viewer, and SCAP toolsStrong technical writing and communication skills to support findings, reports, and remediation plansPreferred QualificationsAWS Security Certification or equivalent cloud security credentialScripting languages (e.g., Python, PowerShell, Bash) to support security automationExperience with STIG Manager, Splunk Enterprise Security, or similar orchestration toolsEEO Employer LanceSoft is a certified Minority Business Enterprise (MBE) and an equal opportunity employer. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristic as outlined by federal, state, or local laws.
This policy applies to all employment practices within our organization, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. LanceSoft makes hiring decisions based solely on qualifications, merit, and business needs at the time.