Security/ATO Engineer

ICF•Reston, VA
•Remote

About The Position

Our Digital Modernization Division is an information technology and management consulting department that offers integrated, strategic solutions to public- and private-sector clients. ICF brings the expertise, agility, and commitment to design, build, and operate high-performance IT solutions that support clients' missions. The Security/ATO Engineer will coordinate and document security engineering and authorization activities for the Government modernization effort. The role will help the team identify, track, and remediate security requirements and findings throughout design, development, testing, and release.

Requirements

  • Candidate must reside in the U.S., be authorized to work in the U.S., and all work must be performed in the U.S.
  • Candidate must have lived in the U.S. for three (3) full years out of the last five (5) years.
  • Candidate must be able to pass successful Public Trust background check.
  • US Citizenship is required by the federal government for this position.
  • Minimum five years of experience supporting federal information-system security, assessment, or authorization activities.

Nice To Haves

  • Bachelor's degree in cybersecurity, information systems, or a related field; directly related experience may be considered in place of education.
  • Experience documenting and tracking security controls, evidence, findings, and remediation actions.
  • Working knowledge of secure software development, vulnerability management, and security testing.
  • Ability to communicate security requirements to technical and nontechnical stakeholders.
  • Ability to work effectively in Agile delivery teams and collaborate with government and contractor stakeholders.
  • Relevant federal security, cloud, or information-assurance certification.
  • Experience with Agile modernization programs and CI/CD security controls.

Responsibilities

  • Translate applicable security requirements into actionable engineering and documentation tasks.
  • Coordinate security controls evidence, assessment activities, findings, and remediation tracking.
  • Review architecture, configurations, code-quality output, and test evidence for security concerns.
  • Partner with developers and DevSecOps personnel to address vulnerabilities and secure delivery pipelines.
  • Maintain security risks, issues, decisions, and authorization artifacts.
  • Support client reviews, status reporting, and authorization-readiness activities.

Benefits

  • ICF is an equal opportunity employer.
  • Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service