Principal IAM / Zero Trust Solutions Architect

Nabout Leidos
United States
8 days ago
Apply on jobs.military.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$154,050.0 - $278,475.0
Working hours
Regular working hours

Tech stack

Active Directory Amazon Web Services Systems Engineering Microsoft Azure Cloud Computing Configuration Management Cyber Security Information Systems Computer Networks Identity and Access Management Ping (Networking Utility) Azure Active Directory
+8 more
Zero Trust Network Access Virtualization Technology Okta Cyberark HybridCloud Information Technology SailPoint Devsecops

Job description

Serve as a principal technical leader for the Leidos Mission Operations Division CTO Team supporting the Defense Information Systems Agency and other Department of War and federal customers.

Requirements

  • Experience with cloud and hybrid enterprise environments such as AWS, Azure, or comparable platforms.\n
  • Broad understanding of enterprise infrastructure technologies including networking, virtualization, automation, configuration management, monitoring, and cybersecurity technologies.\n
  • Familiarity with modern automation, DevSecOps, containers, and infrastructure-as-code concepts.\n
  • Ability to understand and define integration requirements across infrastructure, cybersecurity, IAM, cloud, and operations technologies.\n, * Ability to communicate complex technical concepts to government customers, technical teams, and senior stakeholders.\n
  • Strong written, verbal, technical briefing, and customer-facing communication skills.\n
  • Experience developing technical architectures, solution concepts, recommendations, or implementation plans.\n, * Bachelor’s degree in Computer Science, Information Technology, Systems Engineering, Cybersecurity, or a related field and approximately 15+ years of relevant professional experience.\n
  • Additional relevant experience may be considered in lieu of a technical degree.\n
  • Active DoD Secret clearance or higher.\n
  • DoD 8140-aligned cybersecurity certification appropriate to the role, such as Security+ CE or higher.\n, * Experience supporting DoD, Intelligence Community, or other federal mission environments.\n
  • TS/SCI eligibility or active TS/SCI clearance.\n
  • Experience architecting solutions across classified, multi-domain, hybrid-cloud, or distributed enterprise environments.\n
  • Experience with enterprise IAM platforms such as Microsoft Entra ID, Active Directory, Okta, Ping Identity, SailPoint, CyberArk, RadiantLogic, or comparable technologies.\n
  • Experience with Zero Trust modernization initiatives or applying Zero Trust principles within enterprise architectures.\n
  • Experience with automation, infrastructure-as-code, DevSecOps, or configuration-management technologies.\n
  • Experience with enterprise network, monitoring, observability, or cybersecurity platforms.\n
  • Experience supporting federal security accreditation and authorization processes.\n
  • Experience conducting vendor technology evaluations or Analyses of Alternatives.\n
  • Experience supporting capture, proposals, technical solution development, or customer demonstrations.\n

Benefits & conditions

n The Principal IAM / Zero Trust Solutions Architect will lead the development and integration of complex enterprise technology and cybersecurity solutions spanning identity, cloud, infrastructure, networking, automation, security, and mission systems. The successful candidate will bring broad enterprise architecture experience with strength in Identity and Access Management (IAM) and Zero Trust principles.\n \n This role requires the ability to assess complex customer environments, translate mission and cybersecurity requirements into practical technical solutions, evaluate alternative technologies, and lead multidisciplinary engineering teams through solution development and integration. The position will also support customer engagement, technical demonstrations, modernization initiatives, proposal development, and other business growth activities.\n \n \n2. Primary Responsibilities\n \n \n

  • Lead the architecture, design, and integration of complex enterprise infrastructure and cybersecurity solutions across cloud, on-premises, classified, and mission environments.\n
  • Develop integrated IAM and Zero Trust solution architectures aligned with customer mission requirements and applicable DoW, NIST, and federal cybersecurity guidance.\n
  • Assess existing technology environments, identify architectural and operational gaps, and develop modernization strategies and implementation roadmaps.\n
  • Design and integrate identity, cloud, infrastructure, networking, security, automation, monitoring, and related enterprise capabilities.\n
  • Apply IAM principles including authentication, authorization, federation, identity lifecycle management, privileged access, PKI, and access policy as part of broader enterprise solutions.\n
  • Incorporate Zero Trust principles such as least privilege, continuous verification, segmentation, policy enforcement, and risk-based access into solution architectures.\n
  • Evaluate commercial and government technologies, conduct technical trade studies and Analyses of Alternatives, and develop solution recommendations.\n
  • Define architectural interfaces, integration dependencies, implementation approaches, and transition strategies across multiple technical domains.\n
  • Develop architecture diagrams, technical approaches, implementation plans, test strategies, modernization roadmaps, and customer briefings.\n
  • Provide technical leadership and direction to multidisciplinary engineering and integration teams.\n
  • Engage directly with government customers and mission stakeholders to understand technical challenges, shape requirements, and develop practical solutions.\n
  • Research emerging enterprise, cybersecurity, cloud, IAM, and Zero Trust technologies and assess their applicability to customer missions.\n
  • Support technical demonstrations, solution development, capture, proposals, and on-contract growth activities.\n

\n \n3. Basic Qualifications\n \n \nEnterprise Solutions Architecture\n \n \n

  • Significant experience designing, integrating, and modernizing complex enterprise infrastructure, cybersecurity, or mission technology environments.\n
  • Ability to translate customer mission and technical requirements into architectures, implementation approaches, and modernization roadmaps.\n
  • Experience evaluating technologies, conducting technical trade studies or Analyses of Alternatives, and developing solution recommendations.\n
  • Experience leading complex technical integrations across multiple infrastructure and cybersecurity domains.\n

\n \nIdentity, Security & Zero Trust\n \n \n

  • Strong working knowledge of enterprise IAM/ICAM concepts including authentication, authorization, federation, identity lifecycle management, privileged access, PKI, directory services, and access policy.\n
  • Experience incorporating IAM capabilities into enterprise cloud, infrastructure, or cybersecurity solutions.\n
  • Understanding of Zero Trust principles and the interaction among identity, devices, applications, networks, workloads, data, and security policy.\n
  • Familiarity with DoD, NIST, RMF, and related federal cybersecurity frameworks and requirements.\n

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.military.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

2:48 min

Daily responsibilities and alignment practices for technical engineering leadership

Edoardo Dusi · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all