Security Compliance (ATO) Specialist
Get alerts for roles like this
More Security Compliance (ATO) Specialist roles in United States — straight to your inbox. No account needed.
Applying to this role? Tailor your résumé to this job description in one click, then download it clean — no watermark, no subscription.
Job Description
About Concept Plus Concept Plus is a mission-focused technology solutions provider that transforms IT concepts into impactful solutions for federal agencies.
Headquartered in Fairfax, VA, we bring the agility, responsiveness, and customer intimacy of a small business combined with the quality and infrastructure of a larger firm.
Recognized as an award-winning Oracle partner, we have delivered innovative solutions across Defense, Intelligence, Civilian, Health IT, and Tribal sectors. Our highly certified experts build systems that drive efficiency, accelerate modernization, and ensure mission outcomes with certainty.
We offer competitive pay, comprehensive health, dental, and vision insurance, paid life insurance, paid time off, 11 paid holidays, performance bonuses, tuition reimbursement, unlimited training, and the opportunity to thrive in a collaborative, flexible, and innovative environment. For more information, visit .
About the role Concept Plus is seeking a Security Compliance (ATO) Specialist to ensure the client OCI/ExaCC and Cloudflare solutions meet FedRAMP High, NIST 800-53 r5, and HIPAA requirements, and supports continuous Authorization to Operate (cATO) processes across the program.
What you'll do Map solution designs and configurations to FedRAMP High and NIST 800-53 r5 controls. Support continuous ATO activities: control assessment, POA&M management, and evidence collection. Advise architecture and engineering teams on compliant-by-design patterns and guardrails.
Review IaC and cloud configurations for security control coverage. Support HIPAA and client security requirements and Section 508 compliance of deliverables. Required Qualifications US Citizen Deep knowledge of FedRAMP High and NIST 800-53 r5. Experience with ATO / continuous ATO processes in federal environments.
Cloud security assessment experience (OCI, AWS, or Azure). Familiarity with HIPAA and healthcare data protection. Ability to translate controls into actionable engineering guidanc