Federal CIO Greg Barbaccia tapped for two leadership roles at GSA
Federal CIO Greg Barbaccia has been appointed as acting director of GSA's Technology Transformation Services (TTS) and senior advisor to the GSA administrator, replacing Thomas Shedd who moves to a fraud prevention role. TTS oversees critical government digital services including Login.gov and SAM.g
Cabrillo Club
Editorial Team · February 19, 2026

Also in this intelligence package
Segment Impact Analysis: GSA (General Services Administration) Leadership Transition
Executive Summary
The appointment of Federal CIO Greg Barbaccia to dual leadership roles at GSA's Technology Transformation Services represents a strategic consolidation of technology authority that will likely accelerate digital modernization initiatives across government. Barbaccia's background as Federal CIO positions him to bridge enterprise IT strategy with service delivery, potentially creating tighter integration between TTS platforms (Login.gov, SAM.gov (System for Award Management), Cloud.gov) and broader federal IT modernization efforts. This leadership change, occurring amid DOGE-related restructuring, suggests GSA is prioritizing operational efficiency and platform consolidation over experimental innovation.
For contractors, this transition creates a 90-120 day window of strategic opportunity as new priorities crystallize. Barbaccia's dual role signals that TTS platforms will likely become more central to federal procurement and authentication workflows, making early positioning on these platforms critical. The departure of Thomas Shedd to fraud prevention also indicates heightened scrutiny of contractor credentials and compliance posture, particularly around identity verification and registration integrity. Contractors who can demonstrate deep integration with TTS platforms and proactive fraud prevention capabilities will gain preferential positioning.
The medium severity rating reflects manageable disruption risk but significant strategic implications. While day-to-day operations on GSA Schedules and TTS platforms will continue uninterrupted, the policy direction and investment priorities for digital services, cloud infrastructure, and identity management will shift. Contractors must monitor the first 100 days of Barbaccia's tenure for signals about API access policies, platform modernization roadmaps, and potential consolidation of redundant authentication systems across agencies.
Impact Matrix
IT Modernization Services
- Risk Level: Medium
- Opportunity: Barbaccia's Federal CIO background suggests increased emphasis on enterprise-wide modernization strategies that leverage TTS platforms as shared services. Contractors can position modernization proposals that explicitly integrate Login.gov for authentication, Cloud.gov for hosting, and demonstrate how agency-specific solutions feed into government-wide digital infrastructure. The consolidation of leadership creates a single decision-maker for both platform and policy, potentially accelerating approval cycles for integrated solutions.
- Timeline: 60-90 days for initial policy signals; 6-9 months for new procurement priorities to manifest in RFPs
- Action Required: Review existing modernization proposals to incorporate TTS platform integration; establish technical partnerships with TTS platform teams; develop case studies showing cost savings through shared service adoption; prepare white papers on enterprise architecture approaches that align with consolidated CIO/TTS vision
- Competitive Edge: Create "TTS-Ready" certification for your modernization methodology that demonstrates pre-validated integration patterns with Login.gov, SAM.gov, and Cloud.gov. Develop reference architectures showing agencies how to migrate legacy authentication to Login.gov while maintaining compliance, reducing your implementation risk and timeline. Build automated assessment tools that evaluate agency systems for TTS platform compatibility, positioning you as the expert in this emerging integration requirement.
Identity and Access Management (IAM)
- Risk Level: High
- Opportunity: Login.gov will likely receive increased investment and mandate expansion under Barbaccia's leadership. The shift of Thomas Shedd to fraud prevention signals that identity verification and credential integrity are top priorities. Contractors offering IAM solutions must either integrate with Login.gov or provide clear migration paths. This creates opportunities for integration services, identity proofing enhancements, and fraud detection capabilities that complement Login.gov's core functionality.
- Timeline: Immediate action required; expect policy announcements within 60 days
- Action Required: Audit all IAM solutions for Login.gov compatibility; develop integration accelerators and pre-built connectors; establish partnerships with identity proofing vendors; create fraud detection overlays that enhance Login.gov capabilities; prepare for potential mandate requiring Login.gov adoption across civilian agencies
- Competitive Edge: Develop a "Login.gov Plus" offering that wraps additional security layers (behavioral analytics, continuous authentication, insider threat detection) around the base Login.gov service, positioning it as the enterprise-grade version for high-security agencies. Create a rapid migration factory approach with pre-built templates for the top 10 legacy IAM systems, guaranteeing 90-day transitions. Establish yourself as the go-to implementation partner by contributing to Login.gov's open-source codebase and becoming a recognized technical authority in the community.
Digital Services and Customer Experience
- Risk Level: Medium
- Opportunity: Barbaccia's appointment suggests a shift from experimental digital services toward scalable, enterprise-grade platforms. Contractors should pivot from boutique custom development toward platform-based solutions that leverage TTS infrastructure. The focus will likely move from "innovation labs" to production-scale services that can handle millions of users. This favors contractors with DevSecOps maturity, platform engineering expertise, and experience scaling government digital services.
- Timeline: 90-120 days for strategic direction; 12-18 months for major procurement shifts
- Action Required: Assess digital service offerings for platform-first approaches; develop accelerators for common citizen-facing services built on TTS infrastructure; create scalability and reliability case studies; build DevSecOps capabilities aligned with TTS standards; prepare for shift from custom development to platform configuration and integration
- Competitive Edge: Build a library of pre-certified, reusable digital service components (form builders, notification systems, payment processors) that run on Cloud.gov and use Login.gov authentication, allowing you to deliver citizen services in weeks rather than months. Develop a "Digital Service Maturity Assessment" that evaluates agencies against TTS platform adoption criteria, positioning yourself to lead the remediation work. Create a talent pipeline of engineers certified in TTS platforms, making you the only contractor who can staff projects immediately without training delays.
Cloud Services and Platform Engineering
- Risk Level: Medium
- Opportunity: Cloud.gov, as a TTS platform, will likely see expanded adoption mandates and increased investment. Barbaccia's enterprise IT perspective may drive standardization around Cloud.gov for civilian agency workloads, particularly for applications requiring FedRAMP (Federal Risk and Authorization Management Program) compliance. Contractors should position cloud migration and application modernization services that specifically target Cloud.gov as the destination platform, emphasizing faster ATO timelines and reduced compliance burden.
- Timeline: 6-12 months for procurement impact; immediate opportunity for early adopter positioning
- Action Required: Develop Cloud.gov migration methodologies and assessment tools; create training programs for agency staff on Cloud.gov; build reference architectures for common workload patterns; establish Cloud.gov-specific DevSecOps pipelines; prepare comparative analyses showing Cloud.gov advantages over commercial cloud for specific use cases
- Competitive Edge: Become a Cloud.gov Managed Service Provider by developing proprietary automation for application onboarding, monitoring, and optimization specific to the platform's constraints. Create a "Cloud.gov Accelerator" program that guarantees ATO in 90 days by pre-mapping NIST 800-53 controls to Cloud.gov inherited controls, eliminating 70% of traditional compliance work. Build vertical-specific solutions (grants management, case management, public-facing portals) as Cloud.gov-native applications that agencies can adopt with minimal customization.
Procurement Platform Services
- Risk Level: Medium
- Opportunity: SAM.gov and other procurement platforms under TTS will likely see enhanced fraud prevention and verification capabilities given Shedd's move to fraud prevention. Contractors should anticipate stricter registration requirements, enhanced due diligence, and potentially new verification services. This creates opportunities for compliance automation, registration management services, and tools that help contractors maintain good standing across multiple verification dimensions.
- Timeline: 30-60 days for initial fraud prevention enhancements; ongoing evolution over 12-24 months
- Action Required: Conduct comprehensive SAM.gov registration audits for clients; develop monitoring tools for registration status and compliance alerts; create services that help contractors navigate enhanced verification requirements; prepare for potential new data requirements or certification standards
- Competitive Edge: Build a "SAM.gov Compliance Dashboard" that continuously monitors your clients' registration status, entity validation, exclusion list checks, and financial health indicators, alerting them to issues before they impact eligibility. Develop an AI-powered registration assistant that guides small businesses through complex SAM.gov requirements with personalized checklists based on their NAICS codes and contracting goals. Create a verification readiness service that pre-validates contractor credentials against likely new fraud prevention requirements, positioning clients ahead of mandate deadlines.
Government IT Professional Services
- Risk Level: Low
- Opportunity: The consolidation of technology leadership may streamline decision-making for IT services contracts, particularly those delivered through GSA Schedules and GWAC (Government-Wide Acquisition Contract) vehicles. Barbaccia's dual role could accelerate category management initiatives and push for greater standardization of IT services procurement. Contractors should emphasize platform expertise, shared service integration, and outcomes-based pricing models that align with efficiency mandates.
- Timeline: 12-18 months for procurement vehicle impacts
- Action Required: Review GSA Schedule offerings to emphasize TTS platform expertise; develop outcome-based pricing models; create case studies demonstrating cost savings through platform adoption; prepare for potential consolidation of IT services categories; build capabilities in emerging areas like AI/ML integration with government platforms
- Competitive Edge: Create a "Platform Integration Practice" within your professional services organization with dedicated teams for each TTS platform, allowing you to respond to RFPs with demonstrated expertise rather than generic IT services. Develop a fixed-price, outcome-based engagement model for common integration patterns (e.g., "Login.gov integration for under $150K in 60 days"), removing procurement risk for agencies. Build a talent exchange program that embeds your engineers in TTS platform teams for 6-month rotations, creating deep technical relationships and insider knowledge of platform roadmaps.
Cybersecurity and Compliance Services
- Risk Level: Medium
- Opportunity: The emphasis on fraud prevention and Barbaccia's CIO background suggest heightened focus on security, compliance, and risk management across TTS platforms and the agencies that use them. Contractors offering continuous monitoring, ATO acceleration, and compliance automation will find increased demand, particularly for solutions that work across TTS platforms and agency-specific systems. The consolidation of leadership may also drive standardization of security requirements, creating opportunities for reusable compliance frameworks.
- Timeline: 60-90 days for policy direction; 6-12 months for procurement impact
- Action Required: Develop TTS platform-specific security assessment methodologies; create compliance automation tools that leverage TTS inherited controls; build fraud detection and prevention capabilities; prepare for potential new security requirements around contractor access to government platforms; develop continuous monitoring solutions for hybrid TTS/agency environments
- Competitive Edge: Create a "TTS Security Stack" that provides unified security monitoring, threat detection, and compliance reporting across Login.gov, Cloud.gov, and SAM.gov integrations, giving agencies a single pane of glass for their TTS platform security posture. Develop an automated ATO package generator that maps agency-specific requirements to TTS inherited controls, reducing ATO preparation time by 60%. Build a fraud detection service specifically for SAM.gov registrations that uses ML to identify anomalous patterns in contractor profiles, positioning yourself as the technical partner for Shedd's fraud prevention initiative.
Cross-Segment Implications
The consolidation of Federal CIO and TTS leadership creates a powerful forcing function for platform standardization that will cascade across multiple market segments. Contractors operating in IT modernization, digital services, and cloud services must recognize that these previously distinct segments are converging around TTS platforms as mandatory infrastructure. A successful IT modernization project will increasingly require Login.gov integration (IAM segment), Cloud.gov hosting (cloud segment), and citizen-facing interfaces (digital services segment), making cross-segment capabilities essential for prime contractors.
The fraud prevention emphasis creates a compliance surface that spans all segments. Enhanced verification requirements in SAM.gov will affect contractor eligibility across all market segments, while stricter security standards for TTS platform access will impact how contractors deliver services. This suggests that cybersecurity and compliance capabilities are becoming table stakes rather than specialized offerings, requiring all contractors to elevate their security posture regardless of primary market segment.
The leadership transition also signals a shift from innovation-focused to operations-focused priorities, affecting how contractors position capabilities across segments. Digital services contractors must emphasize scalability over experimentation; cloud services providers must focus on cost optimization over feature richness; IT modernization firms must demonstrate rapid deployment over comprehensive transformation. This operational focus creates opportunities for contractors who can deliver standardized, repeatable solutions across multiple agencies, favoring platform-based approaches over custom development.
Finally, the 90-120 day policy formation window creates a first-mover advantage that compounds across segments. Contractors who establish early relationships with Barbaccia's team, contribute to TTS platform roadmaps, and position themselves as implementation partners during this transition will gain preferential access to information and opportunities across all affected segments. This suggests that strategic investments in TTS platform expertise during Q2 2025 will pay dividends across multiple market segments through 2026-2027.
How ready are you for CMMC?
Take our free readiness assessment. 10 questions, instant results, no email required until you want your report.
Check Your CMMC ReadinessCabrillo Club
Editorial Team
Cabrillo Club helps government contractors win more contracts with AI-powered proposal automation and compliance solutions.