Identity and Access Management (IAM) Subject Matter Expert (SME)

Peraton Inc
Washington, DC, United States
18 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$104,000.0 - $166,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Access Microsoft Windows Active Directory Microsoft Azure Cloud Computing Cloud Engineering Cyber Security Multi-Factor Authentication Identity and Access Management Lightweight Directory Access Protocols (LDAP) Microsoft Security Essentials OAuth
+16 more
Ping (Networking Utility) Role-Based Access Control Openid Connect Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Software Engineering Enterprise Software Applications Okta Cyberark HybridCloud Customer Identity Access Management Sentry Api Design SailPoint Devsecops

Job description

Peraton is seeking an experienced Identity and Access Management (IAM) Subject Matter Expert (SME) to serve as the senior technical authority supporting the U.S. Department of Health and Human Services Office of Inspector General (HHS-OIG).

The IAM SME will provide strategic leadership, enterprise architecture guidance, and technical oversight for Identity, Credential, and Access Management (ICAM) technologies supporting a hybrid cloud enterprise. This role will lead the design, governance, implementation, and continuous improvement of enterprise identity services while ensuring alignment with Zero Trust Architecture, federal cybersecurity mandates, and HHS security policies.

The successful candidate will serve as a principal advisor to Government leadership, cybersecurity personnel, infrastructure teams, application owners, and engineering teams on IAM initiatives. The role will establish technical standards, review solution architectures, mentor engineering staff, and guide modernization of enterprise identity services., * Serve as the senior technical authority for Identity and Access Management (IAM) and Identity Governance and Administration (IGA) initiatives.

  • Provide strategic guidance for modernization of enterprise identity services supporting cloud transformation and Zero Trust initiatives.
  • Lead architecture, design, implementation, and governance of enterprise IAM solutions ensuring scalability, security, and operational efficiency.
  • Provide technical oversight for Microsoft Entra ID, Active Directory, Hybrid Identity, Multi-Factor Authentication (MFA), Conditional Access, Identity Governance, and Privileged Access Management (PAM).
  • Lead enterprise application onboarding and integration into IAM platforms.
  • Develop enterprise IAM standards, architecture patterns, governance models, technical roadmaps, and implementation strategies.
  • Review and approve IAM solution designs, engineering documentation, and implementation plans.
  • Guide implementation of automated identity lifecycle management, provisioning, deprovisioning, access certification, and role-based access control (RBAC).
  • Provide expertise in authentication and federation technologies including SAML, OAuth, OpenID Connect, SCIM, LDAP, and federation services.
  • Support security assessments, Authority to Operate (ATO) packages, and compliance initiatives.
  • Advise Government leadership on IAM technologies, cybersecurity best practices, and risk mitigation strategies.
  • Provide technical leadership during identity-related security incidents, authentication failures, and privileged account events.
  • Collaborate with Cybersecurity, Cloud Engineering, Infrastructure, Networking, Endpoint Engineering, and Application Development teams.
  • Mentor engineering staff and provide technical leadership across multiple IAM initiatives.
  • Develop and maintain enterprise architecture documentation, standards, runbooks, and Standard Operating Procedures (SOPs).
  • Participate in executive briefings, technical strategy sessions, engineering reviews, and customer meetings.

Requirements

  • Bachelor’s degree and 8 years of experience or 12 years with a HS diploma/equivalent.
  • Experience designing, implementing, and supporting enterprise IAM solutions.
  • Experience in IAM architecture, technical leadership, or SME roles.
  • Demonstrated experience designing and implementing Identity Governance and Administration (IGA) solutions.
  • Extensive experience with Microsoft Entra ID (Azure AD), Active Directory, and Hybrid Identity.
  • Experience implementing and supporting Privileged Access Management (PAM) solutions, preferably CyberArk.
  • Experience implementing MFA, Conditional Access, and Zero Trust identity controls.
  • Strong understanding of identity lifecycle management, provisioning, RBAC, and access governance.
  • Experience supporting Azure and Microsoft 365 identity services.
  • Experience supporting federal cybersecurity requirements including NIST 800-53, NIST 800-63, NIST 800-207 Zero Trust Architecture, and FISMA.
  • Experience developing architecture documentation, SOPs, technical standards, and implementation plans.
  • Strong communication skills with the ability to present technical concepts to executive leadership.
  • Must be a US Citizen
  • Ability to obtain and maintain the agency clearance

Preferred Qualifications:

  • Experience supporting HHS, DHS, DOJ, or other Federal Civilian agencies.
  • Experience implementing Microsoft Entra Identity Governance.
  • Experience with SailPoint IdentityIQ/IdentityNow or Saviynt Enterprise Identity Cloud.
  • Experience with Okta Workforce Identity or Ping Identity.
  • Experience with Microsoft Defender XDR and Microsoft Security solutions.
  • Experience supporting Azure cloud architecture and hybrid cloud environments.
  • Experience supporting DevSecOps environments and API-based identity integrations.
  • Experience developing enterprise IAM roadmaps and modernization strategies.

Preferred Certifications- One or more:

  • CISSP
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Microsoft Certified: Azure Solutions Architect Expert
  • CyberArk Defender or CyberArk Sentry
  • Certified Identity and Access Manager (CIAM)
  • ITIL Foundation v4

Benefits & conditions

3.13.1 out of 5 stars Washington, DC Remote $104,000 - $166,000 a year, Pulled from the full job description

  • Parental leave
  • 401(k)
  • Health insurance
  • Paid time off
  • Vision insurance
  • Health savings account
  • Dental insurance, Target Salary Range: $104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at https://www.careers.peraton.com/benefits.

About the company

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

1:22 min

Overview of the Sentry error and performance monitoring platform

Priscila Oliveira · WWC 2023

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · WWC 2023

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

Videos

See all

Related articles

See all