Description review

Security/ATO Engineer

ICF · United States · back to the listing

HR standards

70/100

solid

Title ↔ description

75/100

solid

Reads as

Security Engineer

100% confident

What this role officially is

ICT security administrator — ESCO, the EU occupation classification

ICT security administrators plan and carry out security measures to protect information and data from unauthorised access, deliberate attack, theft and corruption.

Also known as: network security administrator, system security administrator, ICT security administrators, IT security administrator

How others title the same work

Large employers

  • Security Risk Management Specialist Canonical Ltd.
  • Security Software Engineer Canonical Ltd.
  • Senior Security Operations Engineer Canonical Ltd.
  • Staff Security Operations Engineer Canonical Ltd.
  • Ubuntu Security Engineer Canonical Ltd.

Startups

  • Security Engineer (Bangalore, India) AiPrise
  • Security & Trust Engineer Alex
  • Elucid | Senior Security Engineer | Boston, MA | ONSITE (hybrid) | $130k–$170k Elucid
  • Factory | Security Engineer | ONSITE, San Francisco, CA | Full-Time Factory
  • Factory | Security Engineer | Onsite in San Francisco | Full-time Factory

What the listing never says

  • 21 bullet points. Long requirement lists deter qualified candidates, who read them as hard gates. Scope clarity

The listing, marked up

Nothing in the wording of this listing tripped a check. The scores above still judge how complete and coherent it is.

Our Digital Modernization Division is an information technology and management consulting department that offers integrated, strategic solutions to public- and private-sector clients. ICF brings the expertise, agility, and commitment to design, build, and operate high-performance IT solutions that support clients' missions.

The Security/ATO Engineer will coordinate and document security engineering and authorization activities for the Government modernization effort. The role will help the team identify, track, and remediate security requirements and findings throughout design, development, testing, and release.

Job Location: Remote work is authorized.  Must support US Eastern time zone working hours.

*If you accept this position, you should note that ICF does monitor employee work locations blocks access from foreign locations/foreign IP addresses and prohibits personal VPN connections. 

What You Will Do:

• Translate applicable security requirements into actionable engineering and documentation tasks.

• Coordinate security controls evidence, assessment activities, findings, and remediation tracking.

• Review architecture, configurations, code-quality output, and test evidence for security concerns.

• Partner with developers and DevSecOps personnel to address vulnerabilities and secure delivery pipelines.

• Maintain security risks, issues, decisions, and authorization artifacts.

• Support client reviews, status reporting, and authorization-readiness activities.

Required Skills:

• Candidate must reside in the U.S., be authorized to work in the U.S., and all work must be performed in the U.S.

• Candidate must have lived in the U.S. for three (3) full years out of the last five (5) years.

• Candidate must be able to pass successful Public Trust background check.

• US Citizenship is required by the federal government for this position.

• Minimum five years of experience supporting federal information-system security, assessment, or authorization activities.

Desired Skills

• Bachelor's degree in cybersecurity, information systems, or a related field; directly related experience may be considered in place of education.

• Experience documenting and tracking security controls, evidence, findings, and remediation actions.

• Working knowledge of secure software development, vulnerability management, and security testing.

• Ability to communicate security requirements to technical and nontechnical stakeholders.

• Ability to work effectively in Agile delivery teams and collaborate with government and contractor stakeholders.

• Relevant federal security, cloud, or information-assurance certification.

• Experience with Agile modernization programs and CI/CD security controls.

Professional Skills

• Highly effective analytical, problem-solving, and decision-making capabilities.

• Excellent communication and interpersonal skills to work effectively across business, technical, and client teams.

• Organized, detail-oriented, and able to prioritize multiple assignments in a delivery-focused environment.

#Indeed

#ICFcleared

Bot and Third-Party Applications

Please note that this application must be submitted directly by the applicant for consideration. Failure to do so may result in the application being excluded for consideration. Applicants needing an accommodation for disability or religious purposes in connection with the application process should contact for assistance.

Working at ICF

ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.
We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read our EEOpolicy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please email  and we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentrequiredto provide needed reasonable accommodations. 

Read more about workplace discrimination rightsor our benefit offerings which are included in the Transparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process. 

However, we understand that some candidates may require accommodation that involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance at . Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed. 

Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$98,614.00 - $167,644.00Nationwide Remote Office (US99)Originally posted on Himalayas

How this was produced

Highlights are found by rule, not by a model: each one is a phrase matched at a known position, and every note is a template we wrote. The two scores come from a typed-decision model (Jev) that reads the listing against the official role definition and real listings for the same role, and returns probabilities rather than prose — it never writes any of the words on this page, and never chooses what to highlight.

Deterministic penalty applied to the HR score: 4 points (from 74 before penalties). Reviewed 1 Oct 2026.