Identity, Credential, and Access Management (ICAM) Subject Matte

Capgemini
McLean, VA, United States
2 months ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$120,000.0 - $155,000.0
Working hours
Regular working hours

Tech stack

Biometrics Cloud Computing Cloud Engineering Multi-Factor Authentication Identity and Access Management Azure Active Directory Single Sign-On Systems Integration Okta Cyberark SailPoint Epic Radiant

Job description

Capgemini Government Solutions (CGS) LLC is seeking a highly motivated Identity, Credential, and Access Management (ICAM) Subject Matter Expert (SME) to join our Federal team supporting the Department of Veterans Affairs (VA) ICAM program in the DC Metro Area. Serving as as-needed reach-back support, the ICAM SME recommends emerging ICAM technologies, trends, and best practices to advance VA’s ICAM transformation initiatives, drawing on deep experience designing and implementing cutting-edge ICAM solutions in large, complex organizations.

The successful candidate will be responsible for activities, such as:

  • Recommend emerging ICAM technologies, trends, and best practices to help VA advance its ICAM transformation initiatives on an as-needed, reach-back basis
  • Strategize, build, and implement cutting-edge ICAM solutions in large, complex organizations similar in size and scope to VA, including Fortune 500, commercial, state, federal, and healthcare organizations
  • Apply ICAM methodologies such as digital wallets, cloud-based solutions, advanced MFA, biometrics, conditional access, contextual-based authentication, federation, Privileged Access Management (PAM), and digital identity management
  • Advise on the infrastructure required to deliver enterprise ICAM services, including PAM, lifecycle management of digital identities, Single Sign-On (SSO), Federated SSO (FSSO), Cross-Domain SSO (CDSSO), and MFA, along with day-to-day operations, continuous monitoring, system upgrades, and troubleshooting
  • Support integration with Department of War (DoW)-aligned identity and security expectations (e.g., CAC/PIV federation patterns, STIG-aligned hardening, controlled environments, and cross-domain/partner access) and translate those constraints into healthcare-operable designs
  • Guide a converged identity platform approach integrating IGA, Cloud Privileged Access Management (CPAM), Application Governance (GRC), SSO, and Third-Party Access Governance into a single, cloud-native solution

Requirements

  • S. Citizenship
  • Ability to obtain and maintain a Tier 4 / High Risk background investigation (High Risk Public Trust), as required for all task areas under this contract
  • Extensive experience strategizing, designing, and implementing cutting-edge ICAM solutions in large, complex organizations similar in size and scope to VA, including Fortune 500, commercial, state, federal, and healthcare organizations
  • Hands-On experience implementing emerging ICAM products such as CyberArk, Okta, SailPoint, Saviynt, and Radiant Logic VDS
  • Strong command of ICAM methodologies, including digital wallets, cloud-based solutions, advanced MFA, biometrics, conditional access, contextual-based authentication, Federation, Privileged Access Management (PAM), and digital identity management
  • Keen understanding of the infrastructure required to deliver enterprise ICAM services, including Privileged Access Management (PAM), lifecycle management of digital identities, SSO, Federated SSO (FSSO), Cross-Domain SSO (CDSSO), and MFA, along with day-to-day operations, continuous monitoring, system upgrades, and troubleshooting
  • Experience translating partner-driven identity and security constraints (e.g., CAC/PIV federation patterns, STIG-aligned hardening, controlled environments, and cross-domain/partner access) into healthcare-operable designs
  • Experience delivering a converged identity platform that integrates IGA, Cloud Privileged Access Management (CPAM), Application Governance (GRC), SSO, and Third-Party Access Governance into a single, cloud-native solution
  • Ability to recommend emerging ICAM technologies, trends, and best practices as as-needed reach-back support

Desired Qualifications:

  • Experience supporting the Department of Veterans Affairs (VA) or another large federal health agency
  • Experience supporting or integrating with Department of War (DoW)-aligned identity and security environments
  • Hands-on experience with VA’s incumbent ICAM stack (e.g., CyberArk, Okta, Saviynt, Microsoft Entra ID)

Benefits & conditions

Capgemini supports all aspects of your well-being throughout the changing stages of your life and career. For eligible employees, we offer:

  • Flexible work
  • Healthcare including dental, vision, mental health, and well-being programs
  • Financial well-being programs such as 401(k) and Employee Share Ownership Plan
  • Paid time off and paid holidays
  • Paid parental leave
  • Family building benefits like adoption assistance, surrogacy, and cryopreservation
  • Social well-being benefits like subsidized back-up child/elder care and tutoring
  • Mentoring, coaching and learning programs
  • Employee Resource Groups
  • Disaster Relief, Capgemini discloses salary range information in compliance with state and local pay transparency obligations. The disclosed range represents the lowest to highest salary we, in good faith, believe we would pay for this role at the time of this posting, although we may ultimately pay more or less than the disclosed range, and the range may be modified in the future. The disclosed range takes into account the wide range of factors that are considered in making compensation decisions including, but not limited to, geographic location, relevant education, qualifications, certifications, experience, skills, seniority, performance, sales or revenue-based metrics, and business or organizational needs. At Capgemini, it is not typical for an individual to be hired at or near the top of the range for their role. The base salary range for the tagged location is $120K - $155K

This role may be eligible for other compensation including variable compensation, bonus, or commission. Full time regular employees are eligible for paid time off, medical/dental/vision insurance, 401(k), and any other benefits to eligible employees.

Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, or any other form of compensation that are allocable to a particular employee remains in the Company’s sole discretion unless and until paid and may be modified at the Company’s sole discretion, consistent with the law.

About the company

Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2024 global revenues of â‚ 22.1 billion.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:55 min

Executing secure deployments with verified compliance and data residency

Alex Laubscher Alex Laubscher · World Congress 2025

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

2:20 min

Addressing security risks with central single sign-on setups

Gift Egwuenu · World Congress 2023

1:52 min

Identifying environments that require strict credential management

Moritz Johner · World Congress 2023

Videos

See all

Related articles

See all