Lead Specialist, Federal ICAM (Identity, Credential, and Access Management) Engineer

Kpmg LLP
Washington, DC, United States
about 1 month ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Software as a Service Multi-Factor Authentication Infrastructure as a Service (IaaS) Identity and Access Management Platform as a Service (PAAS) Zero Trust Network Access Single Sign-On Google Cloud Okta Cyberark
+1 more
SailPoint

Job description

  • Lead the architecture, deployment, and management of Identity, Credentialing, and Access Management (ICAM) solutions using platforms such as Okta, SailPoint, and CyberArk
  • Develop and enforce access control policies, standards, and procedures in alignment with Zero Trust principles and federal mandates (e.g. NIST, FICAM, HSPD-12)
  • Engineer and manage the full lifecycle of digital identifies, including provisioning, de-provisioning, and periodic access reviews
  • Integrate ICAM solutions with a wide variety of applications and infrastructure, including cloud (IaaS, PaaS, SaaS) and on-premises environments
  • Serve as technical lead for Privileged Access Management (PAM) initiatives, securing and monitoring access for high-risk accounts using tools like CyberArk
  • Translate federal client unique mission requirements into technical ICAM strategies and roadmaps
  • Troubleshoot and resolve complex issues related to identity federation, single sign-on (SSO), multi-factor authentication (MFA), and directory services
  • Mentor and review work of junior engineers and act as a key technical advisor to senior leadership

Requirements

  • A minimum of five years of experience in cybersecurity with a focus on Identify and Access Management; U.S. Federal government consulting experience preferred
  • Bachelor’s degree from an accredited college/university
  • Demonstrated experience with federal ICAM programs and frameworks, such as Federal Identity, Credential, and Access Management (FICAM), HSPD-12, PIV/CAC, and NIST SP 800-53 (Digital Identity Guidelines)
  • Hands-on implementation experience with one or more of the following platforms: Identify Governance and Administration (IGA), Sailtpoint (IdentityIQ or IdentityNOW), Access Management, SSO (Okta), PAM (CyberArk)
  • Preferred certifications: CISSP, GSEC, GCED
  • Okta, SailPoint IdentityIQ Engineer, and/or CyberArk Delivery Engineer certifications strongly preferred
  • Experience with identity services in major cloud providers (AWS, Azure, GCP)
  • Excellent written and verbal communication skills with the ability to articulate complex technical concepts to both technical and non-technical stakeholders
  • Ability to travel as required to support firm engagements
  • Applicant must possess a U.S. Government Secret clearance

Benefits & conditions

KPMG LLP and its affiliates and subsidiaries (“KPMG”) complies with all local/state regulations regarding displaying salary ranges. If required, the ranges displayed below or via the URL below are specifically for those potential hires who will work in the location(s) listed. Any offered salary is determined based on relevant factors such as applicant’s skills, job responsibilities, prior relevant experience, certain degrees and certifications and market considerations. In addition, KPMG is proud to offer a comprehensive, competitive benefits package, with options designed to help you make the best decisions for yourself, your family, and your lifestyle. Available benefits are based on eligibility. Our Total Rewards package includes a variety of medical and dental plans, vision coverage, disability and life insurance, 401(k) plans, and a robust suite of personal well-being benefits to support your mental health. Depending on job classification, standard work hours, and years of service, KPMG provides Personal Time Off per fiscal year. Additionally, each year KPMG publishes a calendar of holidays to be observed during the year and provides eligible employees two breaks each year where employees will not be required to use Personal Time Off; one is at year end and the other is around the July 4th holiday. Additional details about our benefits can be found towards the bottom of our KPMG US Careers site at Benefits & How We Work. Follow this link to obtain salary ranges by city outside of CA: https://kpmg.com/us/en/how-we-work/pay-transparency.html/?id=M105ADV_3_26

KPMG offers a comprehensive compensation and benefits package. KPMG is an equal opportunity employer. KPMG complies with all applicable federal, state and local laws regarding recruitment and hiring. All qualified applicants are considered for employment without regard to race, color, religion, age, sex, sexual orientation, gender identity, national origin, citizenship status, disability, protected veteran status, or any other category protected by applicable federal, state, or local laws. The attached link contains further information regarding KPMG’s compliance with federal, state and local recruitment and hiring laws. No phone calls or agencies please.

KPMG recruits on a rolling basis. Candidates are considered as they apply, until the opportunity is filled. Candidates are encouraged to apply expeditiously to any role(s) for which they are qualified that is also of interest to them.

About the company

The KPMG Advisory practice is at the forefront of transformation, offering excellent opportunities for individuals to advance their careers and expertise with KPMG. Looking ahead, we anticipate continued evolution and success within the practice, fostering both personal and professional development, thereby creating new pathways for growth. In this ever-changing market environment, our professionals must be adaptable and thrive in a collaborative, team-driven culture. At KPMG, our people are our number one priority. With a wealth of learning and career development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both professionally and personally. If you’re looking for a firm with a strong team connection where you can be your whole self, have an impact, advance your skills, deepen your experiences, and have the flexibility and access to constantly find new areas of inspiration and expand your capabilities, then consider a

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

2:20 min

Addressing security risks with central single sign-on setups

Gift Egwuenu · World Congress 2023

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all