Information System Security Engineer (ISSE)
Job Description
<div class="content-intro"><div> <div> </div> <div>At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. </div> <div> </div> <div>Join Accenture Federal Services, a technology company within global Accenture. Recognized as a Glassdoor Top 100 Best Place to Work, we offer a collaborative and caring community where you feel like you belong and are empowered to grow, learn and thrive through hands-on experience, certifications, industry training and more. </div> <div> </div> <div>Join us to drive positive, lasting change that moves missions and the government forward!</div> <div> </div> </div></div><p><strong>Job Description</strong></p> <p>Accenture Federal Services is looking for an Information System Security Engineer (ISSE) to design, implement, and maintain the security architecture and controls for cloud-based client systems supporting the program. You'll build and operate the security tooling — SIEM, vulnerability management, automation — that keeps systems compliant and secure, and provide the technical engineering input that supports RMF/JSIG authorization activities.</p> <p><strong>What You'll Own</strong></p> <ul> <li>Design and implementation of security controls across cloud-based systems — identity and access management, encryption, and network security</li> <li>Security tooling engineering and administration — SIEM (Splunk), vulnerability management (Nessus/ACAS), and STIG compliance tools</li> <li>Security-as-code automation for deploying and configuring security tooling (Ansible, Terraform, PowerShell, Bash, or Python)</li> <li>Technical input into RMF authorization artifacts — SSP, SCTM, POA&Ms, and Risk Assessment Reports — supporting the authorization package</li> <li>Incident detection engineering — developing detections, tuning alerts, and improving telemetry to support incident response</li> <li>Technical compliance review of new and existing systems against IA directives, including protection of data across classification levels</li> </ul> <p><strong>What You'll Deliver</strong></p> <ul> <li>Security architecture and controls implemented and functioning across supported cloud environments</li> <li>Working SIEM and vulnerability management tooling that gives the security team real visibility into risk</li> <li>Accurate, engineering-grounded inputs to RMF documentation that hold up under authorization review</li> <li>Detections and alerting that measurably improve incident response time and coverage</li> <li>Automated, repeatable deployment and configuration of security tooling, not manual one-off setups</li> </ul> <p><strong>Here's What You Need</strong></p> <ul> <li>3+ years of experience implementing NIST 800-53 controls and the Risk Management Framework (RMF), including at least 1 year of hands-on experience administering security tooling such as SIEM (Splunk), vulnerability management (Nessus/ACAS), or security automation (Ansible, Terraform, PowerShell, Bash, or Python)</li> <li>2+ years of experience with virtualization or cloud environments (AWS or Azure)</li> <li>DoD 8570 IASAE Level II certification (e.g., CISSP, CASP+), or DoD 8140 equivalent</li> <li>Bachelor's or Associate degree in Computer Science, Cybersecurity, or a related technical