ICAM/AD Solutions Architect in Annandale

Energy Jobline
Annandale, VA, United States
about 1 month ago
Apply on www.energyjobline.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$131,300.0 - $237,350.0
Working hours
Regular working hours

Tech stack

Active Directory User Authentication Microsoft Azure Dynamic Host Configuration Protocol Domain Name System (DNS) Windows Servers Public Key Infrastructure Windows PowerShell Role-Based Access Control Azure Active Directory Zero Trust Network Access Virtual Machines
+3 more
Enterprise Software Applications Cloud Platform System Cloud Migration

Job description

Leidos is seeking a Senior Technical Solutions Architect responsible for delivering modern Access Credential Management (ICAM) solutions and Zero Trust Architectures (ZTA). Role responsibilities include technical leadership for modernization initiatives, translating business requirements into technical solutions alternatives, hands-on implementation/prototyping of identified solutions, and IPT project management activities across multiple ICAM service capabilities. The ideal candidate will be a technical leader for designing, implementing, managing, troubleshooting, and optimizing enterprise-grade Active Directory and Entra ID solutions. This role is critical in maintaining secure, scalable, and highly available infrastructure across on-premises and cloud environments.

Requirements

  • BS degree and 12+ years of prior relevant experience; additional experience in lieu of degree \n

  • 8+ years of hands-on experience in a lead role \n

  • MCSE or MCSA certification in Windows Server / Directory Services is required \n

  • Proven experience/proficiency in enterprise-level Windows Server administration and Directory Services management. \n

  • Proven experience with Azure services: Azure Virtual Machines, Azure AD Domain Services, Azure Arc, and Microsoft Entra suite. \n

  • Understanding of Attributes Based Access Control (ABAC) implementation, Role-Based Access Control (RBAC), and Policy-Based Access Control (PBAC) \n

  • Strong expertise in Azure AD / Entra ID, hybrid , and cloud migration projects. \n

  • Deep knowledge of Windows Server operating systems (2016/2019/2022), AD DS, DNS, DHCP, PKI, and certificate services. \n

  • Proven experience with Azure services: Azure Virtual Machines, Azure AD Domain Services, Azure Arc, and Microsoft Entra suite. \n

  • PowerShell scripting proficiency for automation and reporting., * Must have a solid understanding of IdAM / ICAM Services like Authentication, Authorization, , and Data Protection through Digital Policy \n

  • Demonstrated experience for client support of large scale enterprise applications \n

  • Strong communication skills via documentation and verbally with senior management \n

Benefits & conditions

n \n

  • Manage and prioritize tasks within the team directory services team, ensuring timely delivery of projects and effective resource utilization. \n

  • Design, implement, and manage Active Directory Domain Services (AD DS), including forest/domain architecture, trusts, replication, and high availability. \n

  • Lead hybrid initiatives using Azure AD Connect, Entra ID, and cloud sync technologies. \n

  • Develop best-of-breed ZT and ICAM solutions through COTS integration activities \n

\n

\n \n

  • Perform technical triage, business to technical requirements decomposition, and solutioning as part of the requirements process that inform downstream feature development \n

\n

\n \n

  • Manage and optimize Group Policy Objects (GPOs), OU structures, and security baselines. \n

  • Implement and maintain governance, role-based access control (RBAC), Privileged Management (PIM), and Conditional Access policies in Azure. \n

  • Perform AD health monitoring, performance tuning, backup/recovery, and disaster recovery planning. \n

  • Migrate and modernize legacy AD environments to Azure- or hybrid solutions. \n

  • Perform hands-on implementation / prototyping of solutions \n

  • Provide oral and written presentations to senior leaders describing solution options along with advantages and disadvantages of alternatives \n

  • Champions the development, documentation, and execution of system policies \n

  • Influence project/team leaders regarding solution design, process and/or approaches. \n

  • Requires expert knowledge of and ability to apply advanced technical principles, theories, and concepts. \n

  • Troubleshoot complex and authentication issues across Windows, Azure, and third-party applications. \n

  • Collaborate with Security, Networking, and Application teams to enforce Zero Trust principles and compliance standards (e.g., NIST, CIS, SOC2, ISO27001). \n

\n

\n

\n, n

  • Demonstrated experience with one of more of the following:\n \n

  • Digital Management and Governance \n

  • Authorization ICAM services \n

  • Data Security Architecture and Data Protection Services \n

  • Customer Access Management (CIAM) solutioning \n

  • Authentication and Multi-Factor Authentication (MFA) solutions \n

  • Cloud first and cloud architectures (any or all of Amazon Web Services, Azure, Google Cloud) \n

  • Utilizing cloud services to build infrastructure as code in an automated fashion \n, * Knowledge of modern authentication protocols (SAML, OAuth, OpenID Connect, Kerberos, NTLM). \n

  • Familiarity with security tools such as Microsoft Defender for , Sentinel, and Privileged Access Workstation (PAW). \n

  • Experience with DevOps and automation: PowerShell, Lambda \n

\n

\n

\n

\n

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares.

Original Posting:July 21, 2026\n\n \n \n \n \n \n \n

\n

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

\n \n \n \n \n \n \n\n\n

Pay Range:Pay Range $131,300.00 - $237,350.00\n

\n

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

\n

\n

About Leidos

\n

\n

About the company

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.energyjobline.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:06 min

Outline of free tools for Microsoft Azure

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:07 min

Building and running Windows containers locally on Windows servers

Don Schenck Don Schenck · World Congress 2024

3:16 min

Setting an agile three-month cloud migration goal

Steffen Heilmann · World Congress 2021

2:08 min

Managing complex structures and corporate guidelines

Alexandra Petri · World Congress 2023

1:37 min

Pitching cloud migration as an efficiency and cost saver

Doreen Sacker · LIVE

2:37 min

Consolidating local servers into a single terminal window

Stacy Cashmore · World Congress 2022

Videos

See all

Related articles

See all