IT Security Specialist IV - Authority to Operate (ATO)

GAMA-1 Technologies
Washington, DC, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Information Technology

Job description

In this role, you will serve as a trusted cybersecurity leader responsible for protecting mission-critical systems and enabling operational success through secure, compliant, and resilient environments in a remote and on-site work environment. Your work directly supports the customer’s mission by ensuring systems achieve and sustain a successful Authority to Operate (ATO), reducing organizational risk while maintaining alignment with evolving federal cybersecurity requirements.

As an IT Security Specialist IV - Authority to Operate (ATO), you will help shape the program’s security strategy, advising stakeholders across technical and leadership teams on compliance, risk posture, and security best practices. Your ability to balance mission needs with regulatory requirements will help ensure systems remain secure, audit-ready, and operationally effective in a dynamic federal environment.

What You Will Do in This Role

  • Lead complex Assessment and Authorization (A&A/SA&A) activities across the system lifecycle
  • Guide programs through the Authority to Operate (ATO) process, from security planning through authorization and ongoing compliance
  • Develop, review, and maintain security authorization documentation
  • Interpret and apply NIST SP 800-53 and NIST SP 800-37 guidance within federal environments
  • Conduct security control assessments, risk evaluations, and compliance reviews
  • Collaborate with system owners and key stakeholders to strengthen security posture and resolve findings
  • Provide guidance on cybersecurity compliance, governance, and risk management initiatives
  • Support audit readiness activities and maintain ongoing compliance with federal cybersecurity standards
  • Advise stakeholders on security best practices and control implementation strategies
  • Contribute to program-level security strategy to support mission success and operational resilience

Requirements

Do you have experience in Technical documentation?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field

  • 7+ years of overall cybersecurity or information assurance experience
  • 7+ years specifically supporting RMF, A&A/SA&A, or Authority to Operate (ATO) activities within federal environments
  • 2+ years in a senior, lead, or SME-level role guiding security strategy, assessments, or compliance initiatives
  • Strong knowledge of NIST SP 800-53 and NIST SP 800-37
  • Experience with security controls, risk management, and compliance methodologies
  • Experience developing and maintaining security authorization documentation
  • Demonstrated experience achieving and maintaining Authorities to Operate (ATOs) in government environments
  • Ability to translate technical and regulatory requirements into actionable guidance
  • Strong collaboration and communication skills
  • Relevant certifications such as CISSP, CAP, CISA, or CRISC

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Health insurance
  • Paid time off
  • Disability insurance
  • Paid holidays
  • Opportunities for advancement

About the company

GAMA-1 is a rapidly growing technology business that is based in Greenbelt, Maryland. GAMA-1 Technologies provides strategic information assurance, information security, and business enterprise and networking solutions to the Federal Government. Our success is based on using industry and agency standards, establishing and performing with standardized processes, and IT Services expertise. At GAMA-1, we believe employees should grow, achieve, and develop just as the company grows, achieves, and develops. GAMA-1 is committed to providing our employees with opportunities for career advancement throughout their employment. For more information, visit www.gama1tech.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

2:46 min

Missing equipment retrieval processes for departing employees

Jasmin Azemović Jasmin Azemović · World Congress 2026 Europe

Videos

See all

Related articles

See all