Sr. ISSO
Accenturefederalservices · Arlington, VA
About this role
**Sr. ISSO** At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer—and life better for people. --- ## The Work The Sr. ISSO is responsible for leading the end-to-end security readiness of applications, ensuring compliance with federal and enterprise security frameworks, ATO processes, and risk management requirements. This role drives security architecture design, secure configurations, threat modeling, and alignment with enterprise and regulatory standards. Additional responsibilities include coordinating and executing security assessments, vulnerability analyses, penetration testing reviews, and remediation planning. The Application Security Lead partners with product, engineering, cloud, and compliance teams to implement secure-by-design solutions, develop and maintain security documentation, and oversee the implementation and monitoring of security controls to ensure compliance, resiliency, and ATO sustainment. --- ## Key Responsibilities - Lead and manage end-to-end security readiness of applications, including compliance with federal/enterprise security frameworks, ATO processes, and risk management requirements - Drive security architecture design (secure configurations, threat modeling, alignment with enterprise/regulatory standards) - Coordinate and execute security assessments, vulnerability analyses, penetration testing reviews, and remediation planning - Partner with product, engineering, cloud, and compliance teams to understand system requirements and implement secure-by-design solutions - Develop and maintain security documentation (e.g., SSPs, POA&Ms, security diagrams, control evidence, continuous monitoring artifacts) - Establish and enforce best practices for application security, identity and access management, secure CI/CD pipelines, and infrastructure hardening - Provide guidance and mentorship on secure development practices across the SDLC - Oversee implementation and monitoring of security controls for ongoing compliance, operational resiliency, and ATO sustainment - Drive continuous improvement in security processes, tooling, and engineering workflows to reduce risk and elevate security posture --- ## Here’s What You Need - 7+ years of professional experience - Extensive experience leading application or cloud security initiatives (preferably in regulated environments requiring ATO or equivalent compliance frameworks) - Strong practical expertise in security architecture, secure application design, and implementation of technical security controls - Hands-on experience with cloud security services (Azure, AWS, or equivalent), IAM models, network segmentation, encryption, and monitoring solutions - Familiarity with federal/enterprise/industry security frameworks (NIST 800-53, FedRAMP, Zero Trust, CIS benchmarks) - Proficiency with DevSecOps tooling, automated security scanning, and secure pipeline orchestration - Experience producing high-quality security documentation (SSPs, policies, diagrams, technical control evidence) - Demonstrated ability to collaborate across engineering, compliance, governance, and operational teams - Strong understanding of security governance, risk management, and continuous monitoring --- ## Nice to Have - Experience serving as a technical security lead on application development or modernization programs - Knowledge of cloud-native architectures, container security, and serverless security controls - F
Listing freshness
CronJobs last confirmed this listing 18h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.