There is often some confusion about the difference between IAM and IAT certifications. Many times these terms are confused and interchanged.
Both IAM and IAT were established by the Dept. of Defense in 2004. These are qualification standards meant to ensure that the Dept. of Defense IT systems are staffed with technical and management personnel who meet a certain standard of technical expertise.
IAT stands for Information Assurance Technical. The IAT certification levels are achieved by passing specific exams and having certain work experiences that meet particular requirements. These requirements are focused on technical knowledge and are geared toward technical staff.
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for new policy moves, CISA actions, and risk developments this article could not cover when it was published.
By subscribing you agree to our Privacy Policy.
Free. Weekday mornings. 5 minutes or less.
IAM stands for Information Assurance Management. The IAM certification levels are achieved by passing specific exams and having certain work experiences that meet particular requirements. These requirements are focused on management and are geared toward leadership staff.
Both IAT and IAM standards have three levels: 1, 2, and 3. Level 1 is considered entry-level certifications, level 2 are intermediate, and level 3 is expert level.
Government jobs and many commercial industry jobs require applicants to meet one of the certification levels as a minimum requirement for being considered for the position.
Below is the government-published chart that shows the IT certifications that fall into each of the IAT and IAM levels.
DoD 8570.01-M. DoD Approved Baseline Certifications
Reading an older article? Use the brief to stay current.
This Article Gives You the Background. The Brief Gives You What Changed Next.
Get the weekday cyber brief for the developments, risk shifts, and new signals that changed the picture after this article was published.
By subscribing you agree to our Privacy Policy.
Free. Weekday mornings. 5 minutes or less.
| IAT Level I | IAT Level II | IAT Level III |
| CompTIA A+ CompTIA Network+ SSCP |
GSEC CompTIA Security+ SCNP SSCP |
CISA GSE SCNA CISSP (or Associate) GCIH |
| IAM Level I | IAM Level II | IAM Level III |
| CAP GISF GSLC CompTIA Security+ |
CAP GSLC CISM CISSP (or Associate) |
GLSC CISM CISSP (or Associate) |
If you are working in or planning to work in the IT or cybersecurity field, then obtaining the appropriate certification levels is critical and can be quite lucrative.
Obtaining IAM1 or IAT1 level certifications is often the first step to gain an entry-level position in the IT field.
Obtaining IAM3 or IAT3 level certifications demonstrates expert-level knowledge and experience and is the objective of many experienced technical and management IT professionals.
Newer CyberExperts coverage on this topic
This article still works as background. If you want the current picture, start with the freshest related coverage below and today's brief.
Are Your AI-Powered Security Tools Vulnerable to Adversarial Inputs?
AI security tools can miss threats when attackers craft adversarial inputs. Here’s how malware, phishing, and behavior models get fooled — and...
The 5-Minute Cyber Brief: September 18, 2026
Friday clock stories: Cisco ISE root bypass due Saturday, Acronis hosting LPE, MikroTik MikroTrick, Check Point management root.
Check Point CVE-2026-91843: Unauth Stack Overflow to Root on Management Servers
Pre-auth login overflow yields root on Security Management / Log servers. Apply LivePatch sk1000155; lock Trusted Clients.
The 5-Minute Cyber Brief: September 23, 2026
The fastest way to catch up on what changed after this article was published.
Start your morning with the signal that matters.
Get the biggest cybersecurity developments, why they matter, and where to go deeper on CyberExperts.
By subscribing you agree to our Privacy Policy.
Free. Weekdays. Built for operators.