Information System Security Engineer (ISSE) Manager

Deloitte France

Arlington (VA)

On-site

USD 138,000 - 278,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Deloitte’s GPS practice is seeking an experienced Project Information System Security Engineer (ISSE) Manager, Strategy, Growth and Transformation in the Washington, DC area. You will design, build, and integrate security into information systems and cloud architectures, lead STIG compliance, and support ATO activities across IT and OT.

Collaboration with engineers, compliance teams, and client stakeholders is essential.

Qualifications

  • Bachelor's degree required.
  • Active Top Secret (SCI Eligibility) security clearance required.
  • 5+ years of Information Systems Security Engineer (ISSE) experience with DoD or Federal gov systems.

Responsibilities

  • Design, build, and integrate security into information systems, apps, and cloud architectures.
  • Lead system architecture and STIG compliance.
  • Support ATO activities across IT and OT systems with security documentation and controls.

Skills

IT security
FedRAMP
RMF lifecycle
A&A documentation
Stakeholder collaboration
Security engineering

Education

Bachelor's degree

Tools

STIGs
JCAM
OpenRMF

Job description

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

Work You’ll Do

As a Project Information System Security Engineer (ISSE) Manager, Strategy, Growth and Transformation on the Deloitte Cyber Team, you will:

  • Design, build, and integrate security capabilities into information systems, applications, and cloud architectures
  • Lead system architecture and Security Technical Implementation Guide (STIG) compliance
  • Support Authorization to Operate (ATO) activities across IT and Operational Technology systems including development of security documentation and implementation of controls.
  • Develop and maintain security engineering artifacts and compliance evidence to support authorization decisions and ongoing security requirements
  • Assess security maturity, identify architecture and control gaps, and drive remediation actions with stakeholders
  • Collaborate with systems engineers, architects, compliance teams, and client stakeholders to resolve technical security issues and strengthen operational resilience
A successful candidate would possess these skills:
  • Strong technical skills and experience with IT and Operational Technology, both on-premise and in the cloud including FedRAMP
  • Ability to provide security recommendations and to help integrate security early in the systems development life cycle
  • Experience supporting systems through all steps of the Risk Management Framework (RMF) life cycle including developing compliant Assessment and Authorization (A&A) documentation.
  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to provide clear guidance to others
The Team

Deloitte’s Government & Public Services (GPS) practice – our people, ideas, technology and outcomes – is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.

The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.

Qualifications

Required:

  • Bachelor’s degree
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future
  • Active Top Secret (SCI Eligibility) security clearance required
  • Must be able to work onsite, 5 Days a week, at the client site in Washington, D.C.
  • 12+ Years of Experience with the following:
    • Serving as an Information Systems Security Engineer (ISSE) supporting U.S. Department of Defense (DoD) or Federal Government information systems, including information security engineering; system or application design and architecture; application security; and security architecture.
    • Implementing STIGs for information systems
  • One of the following certifications:
    • Certification in Risk and Information Systems Control (CRISC)
    • Certified Information Systems Security Professional (CISSP) certification

Preferred:

  • Experience supporting operational mission systems
  • Experience applying the National Institute of Standards and Technology (NIST) RMF to security and compliance activities
  • Experience with governance, risk and compliance (GRC) tools such as JCAM and OpenRMF.

For individuals assigned and/or hired to work in Virginia, Deloitte is required by law to include a reasonable estimate of the compensation range for this role. This compensation range is specific to Virginia and takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $137,500 to $278,300.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information System Security Officer (ISSO) Manager
Information System Security Officer (ISSO) Manager

Deloitte France • Arlington (VA)

On-site
USD 138,000 - 278,000
Analyst/ ISSO Senior Consultant
Analyst/ ISSO Senior Consultant

Deloitte France • Washington

On-site
USD 108,000 - 180,000
Defense Cyber Operations Engineer, Senior Consultant
Defense Cyber Operations Engineer, Senior Consultant

Deloitte France • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Cyber Security & Risk Strategy Senior Consultant
Cyber Security & Risk Strategy Senior Consultant

Deloitte France • Miami (FL)

On-site
USD 105,000 - 208,000
Cyber Senior Consultant - Cloud DevSecOps
Cyber Senior Consultant - Cloud DevSecOps

Deloitte France • Miami (FL)

On-site
USD 105,000 - 208,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Boise (ID)

On-site
USD 98,000 - 201,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Las Vegas (NV)

On-site
USD 98,000 - 201,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Honolulu (HI)

On-site
USD 98,000 - 201,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Tampa (FL)

On-site
USD 98,000 - 201,000
Senior Consultant Cyber Engineering
Senior Consultant Cyber Engineering

Deloitte France • Miami (FL)

On-site
USD 98,000 - 201,000