Analyst/ ISSO Senior Consultant

Deloitte France

Washington (District of Columbia)

On-site

USD 108,000 - 180,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Deloitte is seeking a candidate to join its GPS Cyber team, supporting RMF, authorization, and continuous monitoring across federal, state, and local government clients. You will maintain RMF documentation, organize evidence, and help keep audit-ready records.

Responsibilities include dashboard preparation, POA&M tracking, and collaboration with stakeholders on risk status. A bachelor’s degree, US work authorization, willingness to obtain a security clearance, and up to 25% travel are required.

Qualifications

  • Bachelor’s degree in a relevant field.
  • Must be legally authorized to work in the United States without sponsorship, now or in the future.
  • Ability to obtain and maintain an active security clearance.
  • Ability to travel up to 25%, on average, based on client work.
  • 3+ years of RMF and security engineering experience.
  • Experience with NIST SP 800-53 and RMF lifecycle processes.
  • Experience managing POA&M, ST&A tests, and security documentation.

Responsibilities

  • Provides analytical and coordination support for RMF, authorization, and continuous monitoring activities.
  • Maintain RMF documentation, system status trackers, and supporting records.
  • Assist with evidence collection, validation, and organization for assessments.
  • Track POA&M status, control compliance, and remediation activities.
  • Support dashboards, reports, and stakeholder summaries on authorization health and risk.
  • Assist with annual assessments, continuous monitoring actions, and change reviews.
  • Coordinate meetings, capture actions, and maintain auditable records.
  • Support monitoring, detection, investigation, and remediation activities through logs and audits.

Skills

Independent work
Team collaboration
Written communication
Verbal communication
Attention to detail
Relationship building
Project leadership
Task prioritization
Interpersonal skills
Technical writing

Education

Bachelor's degree

Tools

Splunk

Job description

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

Work You’ll Do
  • Provides analytical and coordination support for RMF, authorization, and continuous monitoring activities by maintaining trackers, organizing evidence, supporting reporting, and helping keep assigned systems audit-ready and authorization-ready. –
  • Maintain RMF documentation, system status trackers, and supporting records for assigned systems
  • Assist with evidence collection, validation, and organization to support assessments and package readiness.
  • Track POA&M status documentation progress, control compliance, and remediation activities.
  • Support preparation of dashboards, reports, and stakeholder summaries on authorization health and risk status
  • Assist with annual assessments, continuous monitoring actions, and change-driven reviews
  • Coordinate meetings, capture action items, and maintain auditable records in shared repositories.
  • Supporting monitoring, detection, investigation, and remediation activities through log review, security testing, authorization package development, and audit support
A successful candidate would possess these skills
  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others
  • Strong technical writing capabilities.
The Team

Deloitte’s Government & Public Services (GPS) practice – our people, ideas, technology and outcomes – is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.

The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.

Qualifications
  • Bachelor’s degree
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
  • Ability to obtain and maintain an active security clearance.
  • Ability to travel up to 25%, on average, based on the work you do and the clients and industries/sectors you serve
  • 3+ Years of Experience with:
    • RMF and security engineering
    • Supporting the full RMF lifecycle and federal Assessment and Authorization process, including mapping, implementing, interpreting, and documenting RMF security controls
    • Experience ensuring compliance with NIST Special Publication 800-53 and performing threat assessments aligned with RMF lifecycle processes
    • Experience managing POA&M, conducting Security Tests and Evaluations (ST&E), and creating system security documentation
Preferred:
  • Experience performing authorizations, risk assessments, and supporting third-party audits
  • Experience with manual STIGs, Security Content Automation Protocol (SCAP), and SCAP Compliance Checker (SCC)
  • Experience conducting Splunk log reviews to support monitoring, detection, investigation, and remediation of security events and potential vulnerabilities
  • Prior technical experience as a system or network administrator

For individuals assigned and/or hired to work in Virginia, Deloitte is required by law to include a reasonable estimate of the compensation range for this role. This compensation range is specific to Virginia and takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107,700 to $179,500.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Engineer (ISSE) Manager
Information System Security Engineer (ISSE) Manager

Deloitte France • Arlington (VA)

On-site
USD 138,000 - 278,000
Information System Security Officer (ISSO) Manager
Information System Security Officer (ISSO) Manager

Deloitte France • Arlington (VA)

On-site
USD 138,000 - 278,000
Defense Cyber Operations Engineer, Senior Consultant
Defense Cyber Operations Engineer, Senior Consultant

Deloitte France • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Honolulu (HI)

On-site
USD 98,000 - 201,000
Cyber Security & Risk Strategy Senior Consultant
Cyber Security & Risk Strategy Senior Consultant

Deloitte France • Miami (FL)

On-site
USD 105,000 - 208,000
Data Security Engineer (Tuning)
Data Security Engineer (Tuning)

Deloitte France • Colorado Springs (CO)

On-site
USD 96,000 - 159,000
Cyber Operate SOC L2 Analyst - Senior Consultant
Cyber Operate SOC L2 Analyst - Senior Consultant

Deloitte France • Tampa (FL)

Hybrid
USD 105,000 - 208,000
Cyber Security & Risk Strategy Consultant
Cyber Security & Risk Strategy Consultant

Deloitte France • Miami (FL)

On-site
USD 83,000 - 163,000
Cyber Operate SOC L2 Analyst - Senior Consultant
Cyber Operate SOC L2 Analyst - Senior Consultant

Deloitte France • Miami (FL)

Hybrid
USD 105,000 - 208,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Tampa (FL)

On-site
USD 98,000 - 201,000