Information Systems Security Engineer (ISSE)
Job Description
Accenture Federal Services is looking for an Information Systems Security Engineer (ISSE) to support security authorization and assessment work for classified information systems in an onsite environment in Arlington, VA. In this role, you will evaluate and review the Risk Management Framework (RMF) authorization body of evidence, help strengthen required security artifacts, and contribute to technical compliance and assessment activities, including incident response support.
This position focuses on thorough technical review of documentation and implementation plans tied to systems security, continuous monitoring, and readiness for incident response. You will also conduct site visits to validate how controls are implemented and support activities for the Incident Response Team (IRT).
What You’ll Do
- Review both new and existing systems for technical compliance with directives while ensuring protection of data across all classification levels.
- Advise on security design reviews and perform threat and risk assessments.
- Contribute inputs to required technical artifacts, including POA&Ms, SCTMs, and RARs.
- Conduct site visits and assessments to examine plans and verify security control implementation.
- Support Incident Response Team (IRT) activities.
Requirements
- DoD 8570 IAT Level II certification or higher (examples: Sec+, CISSP, CASP, etc.).
- 5+ years implementing NIST 800-53, Rev 4 and the Risk Management Framework (RMF).
- 5+ years experience with Windows and Linux environments.
- 5+ years of experience with virtualization or cloud environments.
- 2+ years using information security and assurance practices and principles.
- Secret level clearance or higher.
Tools, Frameworks, and Technologies
- NIST 800-53, Rev 4
- Risk Management Framework (RMF), including OpenRMF
- Authorization and security artifacts: System Security Plan (SSP), Security Control Traceability Matrix (SCTM), Continuous Monitoring Plan, Incident Response Plan, Access Control Plan, Security Assessment Plan, POA&Ms, and Risk Assessment Reports (RARs)
- eMASS
- Security and monitoring tooling: MS Active Directory, Splunk, ACAS/Nessus, McAfee
- Operating and platform technologies: Windows, Linux, AWS Security
Salary: USD 94,000 to 187,600 per year. Experience: 5 years minimum. Location: Arlington, VA (onsite).
Bonus Points If You Have
- Other security-related certifications (cloud, SIEM, forensics, Linux, Windows, and more).
- Experience working in a DevSecOps project environment.
- Experience as a system administrator, developer, or engineer (formerly or currently).
- Experience with tools and platforms such as OpenRMF, eMASS, MS Active Directory, Splunk, ACAS/Nessus, McAfee, Windows, Linux, and AWS Security.
- Strong verbal and written communication skills, including the ability to explain technical concepts to semi-technical customers.
- Ability to interface with experienced Government personnel.
- Ability to work in a matrixed team and support multiple efforts as needed.
- Interest in learning new technologies and tools, along with willingness to share experience with the team.
- SIG or ICD 503 compliance.