relhaRelha logo
← Back to all jobs
logo

ISSO, Senior Consultant

Deloitte
Posted 1 day ago

Overview

Office
$107,700 - $179,500

Position Summary

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

Work You’ll Do

As a PROJECT - Security Engineer III on the Cyber Risk and Compliance team, you will be responsible for:

Providing end-to-end Assessment and Authorization support for cybersecurity, privacy, and financial controls implementation, testing, monitoring, and enforcement

Interpreting risk posture and recommending approaches to meet Joint Special Access Program Implementation Guide, Department of Defense, and applicable control requirements

Mapping, implementing, interpreting, and documenting Risk Management Framework security controls across networks, enclaves, and information system

Managing eMASS activities, supporting vulnerability identification through ACAS/Tenable scans, and tracking remediation and mitigation efforts

Supporting monitoring, detection, investigation, and remediation activities through log review, security testing, authorization package development, and audit support

A successful candidate would possess these skills:

Ability to work independently and collaborate as part of a team

Effective written and verbal communication skills

Meticulous attention to detail and quality of work product

Ability to build and sustain professional relationships

Ability to lead projects or workstreams

Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment

Strong interpersonal skills and professional demeanor

Ability to meet deadlines

Ability to provide clear guidance to others

The Team

Deloitte’s Government & Public Services (GPS) practice – our people, ideas, technology and outcomes – is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Our Cyber Strategy & Transformation offering develops and transforms cyber programs in line with a client's strategic objectives, regulatory requirements, and risk appetite. It keeps the enterprise a step ahead of the evolving threat landscape and gives stakeholders confidence in the organization's cyber posture. Includes design of the cyber organization, governance, and risk assessments.

The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.

Qualifications

Required:

Bachelor’s degree

Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future

Active TS/SCI security clearance required

Ability to work onsite in Rosslyn, Virginia at least 4 days per week and reside within commuting distance of the office

Ability to travel 25%, on average, based on the work you do and the clients and industries/sectors you serve

3+ Years of Experience with:

RMF and security engineering

Supporting the full RMF lifecycle and federal Assessment and Authorization process, including mapping, implementing, interpreting, and documenting RMF security controls

Experience managing eMASS cybersecurity management tooling and developing and submitting at least two (2) Authorization to Operate packages

generating and interpreting ACAS/Tenable scans, identifying vulnerabilities, and tracking remediation and mitigation efforts

Preferred:

Experience managing POA&Ms, conducting Security Tests and Evaluations (ST&E), and creating system security documentation

Experience performing authorizations, risk assessments, and supporting third-party audits

Experience ensuring compliance with NIST Special Publication 800-53 and performing threat assessments aligned with RMF lifecycle processes

Experience with manual STIGs, Security Content Automation Protocol (SCAP), and SCAP Compliance Checker (SCC)

Experience conducting Splunk log reviews to support monitoring, detection, investigation, and remediation of security events and potential vulnerabilities

Prior technical experience as a system or network administrator

For individuals assigned and/or hired to work in Virginia, Deloitte is required by law to include a reasonable estimate of the compensation range for this role. This compensation range is specific to Virginia and takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $107,700 to $179,500.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

Deloitte is committed to providing reasonable accommodations for people with disabilities. If you require a reasonable accommodation to participate in the recruiting process, please direct your inquiries to the Global Call Center (GCC) at [email protected].

Recruiting tips

From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters.

Benefits

At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you.

Our people and culture

Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ways of thinking, ideas, and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work.

Our purpose

Deloitte’s purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Learn more.

Professional development

From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career.

As used in this posting, ""Deloitte"" means Deloitte Transactions and Business Analytics LLP, a subsidiary of Deloitte LLP. Please see www.deloitte.com/us/about for a detailed description of the legal structure of Deloitte LLP and its subsidiaries.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

Requisition code: 365023","{""Rosslyn, Virginia, United States""}",Office,2026-08-31)

← Back to all jobs

Disclaimer:
The information provided on this site is for general informational purposes only. While we strive to ensure the accuracy and reliability of the content, we make no guarantees regarding its completeness or correctness. It is ultimately the responsibility of the user to independently verify any information before relying on it.

If you believe you have found a data error please report it here