Identity Policies and Governance Lead

UVS InfoTech LLC
United States
about 2 months ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Federal Information Processing Standards (FIPS) Identity and Access Management Role-Based Access Control Zero Trust Network Access Privacy Controls

Job description

The Identity Policies and Governance Lead will serve as the subject matter expert (SME) responsible for defining, assessing, and establishing enterprise identity governance frameworks for a Identity, Credential, and Access Management (ICAM) engagement within a Federal environment. This role will lead current-state policy assessments, gap analyses, compliance reviews, and the development of strategic identity governance roadmaps.

The Identity Policies and Governance Lead will evaluate existing identity management practices against Federal requirements, including HSPD-12, FIPS 201, and applicable cybersecurity frameworks, and provide recommendations to establish effective identity lifecycle management processes, governance structures, and policy frameworks., * Lead identity policy and governance assessments, including current-state reviews and gap analyses.

  • Evaluate existing identity management processes against Federal mandates, standards, and security requirements.
  • Develop and maintain identity governance frameworks, policies, procedures, and strategic roadmaps.
  • Serve as the SME for Identity Lifecycle Management (ILM), including identity provisioning, access changes, certification, and deprovisioning processes.
  • Define governance models, roles, responsibilities, and operating procedures to support enterprise ICAM capabilities.
  • Develop recommendations to improve identity security, compliance, operational efficiency, and user access management.
  • Ensure identity policies align with Federal standards, including HSPD-12, FIPS 201, NIST guidance, and Zero Trust principles.
  • Collaborate with ICAM architects, cybersecurity teams, program leadership, and government stakeholders to support successful ICAM implementation.
  • Support the development of implementation plans, policy documentation, compliance artifacts, and governance deliverables.
  • Identify policy, process, and compliance risks and recommend mitigation strategies.

Requirements

  • Minimum of 7+ years of experience in identity management, identity governance, or ICAM-related disciplines.
  • Demonstrated experience developing and implementing identity policies, governance frameworks, and lifecycle management processes.
  • Experience supporting Federal government cybersecurity and identity management programs.
  • Strong understanding of Identity Lifecycle Management (ILM), including identity creation, modification, access approval, certification, and termination processes.
  • Experience performing policy assessments, compliance reviews, gap analyses, and roadmap development.
  • Knowledge of Federal identity standards, including HSPD-12 and FIPS 201 requirements.
  • Ability to translate business, security, and compliance requirements into actionable identity governance strategies., * Experience supporting Federal ICAM implementations, identity modernization initiatives, or Zero Trust programs.
  • Familiarity with Federal identity and cybersecurity frameworks, including:
  • Federal Identity, Credential, and Access Management (FICAM)
  • NIST SP 800-53 Security and Privacy Controls
  • NIST SP 800-207 Zero Trust Architecture
  • Experience developing governance models for:
  • Identity Governance and Administration (IGA)
  • Access Control Policies
  • Role-Based Access Control (RBAC)
  • Attribute-Based Access Control (ABAC)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:49 min

Securing service invocation with zero-trust networking access

Marc Müller Marc Müller · World Congress 2025

1:45 min

Governing cluster permissions through role-based access control

Marc Nimmerrichter · World Congress 2022

1:13 min

Requirements and licensing plans for GitHub Copilot

lgonta lgonta +1 · World Congress 2024

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

1:55 min

Mitigating agent risks with zero trust networking

Oren Penso Oren Penso · World Congress 2026 Europe

2:14 min

Securing analysis platforms via network access controls

Jennifer Reif · LIVE

Videos

See all

Related articles

See all