Security Delivery Associate Manager

Accenture Federal ServicesArlington, VA
4h

About The Position

At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. Join Accenture Federal Services, a technology company and part of global Accenture, to do work that matters in a collaborative and caring community, where you feel like you belong and are empowered to grow, learn and thrive through hands-on experience, certifications, industry training and more. Join us to drive positive, lasting change that moves missions and the government forward! The Security Architecture Specialists will work in the Security Architecture, Engineering and Risk (ITSER) Tower in the CISO organization. The Specialist will work directly on the AFS IT Security Engineering (ITSR) team within our tower. Working to ensure that IT solutions are tracked during the build process to incorporate secure designs and business priorities. The candidate will have experience in one or more of the following areas: cloud security, application security, network security, security plans/procedures, protecting systems from security risk, security data analysis tools, or data security. Collaborate with variety of different technology teams within IT and IS to promote collaboration on secure engineering practices. Coordinate with IT and Security stakeholders to develop security requirement with understanding of external regulations and best practices as well as unique business needs and capabilities. The primary responsibilities of this role include providing day-to-day tracking of ATO projects and Security Reviews for IT Security Engineering (ITSE), which involves maintaining project tracking sheets, updating the summary project tracker, and delivering weekly status reports on all new applications, re-ATOs, and Security Reviews. The position works closely with the ITSE lead to document strategies, IT intake workflows, and compliance documentation flows. It also requires implementing and interpreting ITAE work processes while coordinating with other compliance processes such as Continuous Monitoring (ConMon). Additional duties include participating in ITSE activities such as control assessments for applications and contributing to process improvements. The role involves creating documentation for new processes, updating Standard Operating Procedures (SOPs) during the annual cycle or as needed, and collaborating with the ITSE lead and project stakeholders to review requirements, update documentation, and ensure objectives are met. Responsibilities also include supporting ATO and Security Review development, assessing service requirements and deliverables, coordinating meetings with application stakeholder teams to gather responses, and reviewing documents for completeness while escalating issues to the ITAE team lead and following up as necessary. The position requires attending department, tower, and other assigned meetings, as well as collaborating with colleagues in Security Architecture, Engineering, and the Risk tower.

Requirements

  • U.S. Citizen Required
  • 5+ years of working experience information security or relevant experience.
  • Experience with NIST 800-171 r2 and NIST 800-53
  • Knowledge of US Security requirements
  • Good foundational understanding of policy, standard, procedure and baseline structure.
  • Openness to, and ability to deal with, rapid change in business needs, processes and technologies
  • General project management skills to:
  • - Create task structures and delivery timelines
  • - Understand resource allocation and constraints
  • - Identify, assessing, and mitigating delivery risks
  • - Document and follow up on ATO / Security Review issues
  • - Create and deliver ATO / Security Review status updates
  • - Track deliverables and process flow
  • - Understand ATO / Security Review timelines /Constraints
  • - Identify and managing scope changes

Nice To Haves

  • 7+ years of working experience in security architecture or relevant experience.
  • Prior experience performing ongoing maintenance and operations of security technologies (e.g. management of firewalls, IDS/IPS, endpoint security, etc.)
  • Prior experience with AFS policies, standards and baseline structure
  • Strong knowledge of application and network security principles
  • Strong knowledge of Microsoft cloud services (e.g., Azure Active Directory, Azure IaaS/PaaS, Office 365)
  • Strong understanding of secure web application network protocols (HTTP(S), TLS, SFTP, etc.)
  • Experience with NIST 800-171 compliance documentation implementation
  • Understanding and experience with US security requirements related to regulations/standards such as NIST SP 800-171, 800-53, RMF, SOX, DFARS etc.
  • Experience using Agile within project or architecture /engineering teams
  • Certifications: CC, CISA

Responsibilities

  • providing day-to-day tracking of ATO projects and Security Reviews for IT Security Engineering (ITSE), which involves maintaining project tracking sheets, updating the summary project tracker, and delivering weekly status reports on all new applications, re-ATOs, and Security Reviews
  • working closely with the ITSE lead to document strategies, IT intake workflows, and compliance documentation flows
  • implementing and interpreting ITAE work processes while coordinating with other compliance processes such as Continuous Monitoring (ConMon)
  • participating in ITSE activities such as control assessments for applications and contributing to process improvements
  • creating documentation for new processes, updating Standard Operating Procedures (SOPs) during the annual cycle or as needed, and collaborating with the ITSE lead and project stakeholders to review requirements, update documentation, and ensure objectives are met
  • supporting ATO and Security Review development, assessing service requirements and deliverables, coordinating meetings with application stakeholder teams to gather responses, and reviewing documents for completeness while escalating issues to the ITAE team lead and following up as necessary
  • attending department, tower, and other assigned meetings, as well as collaborating with colleagues in Security Architecture, Engineering, and the Risk tower
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service