ICAM Engineer

Akima
Alexandria, VA, United States
8 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$170,000.0 - $175,000.0
Working hours
Regular working hours

Tech stack

Active Directory User Authentication Microsoft Azure Cloud Computing Cloud Engineering Cyber Security Multi-Factor Authentication Identity and Access Management Kerberos (Protocol) Lightweight Directory Access Protocols (LDAP) Microsoft SQL Server NT LAN Manager
+7 more
Oracle (Applications) Role-Based Access Control Azure Active Directory Zero Trust Network Access Technical Debt Information Technology Hardware Infrastructure

Job description

  • Serve as the senior technical subject matter expert for Identity, Credential, and Access Management (ICAM) across hybrid Microsoft environments, including legacy on-premises infrastructure and Microsoft Azure cloud services.
  • Design and guide the evolution of the enterprise ICAM architecture from datacenter-centric identity services toward a modern Azure and Microsoft Entra-based identity model while still maintaining secure and reliable support for legacy applications and infrastructure.
  • Assess existing identity services, authentication methods, directories, federation services, privileged access, certificates, service accounts, and application dependencies to identify modernization requirements, technical risks, and migration constraints.
  • Collaborate with Cloud, Application, Infrastructure, Cybersecurity, and Solution Architects to develop target-state and transition-state ICAM architectures, modernization roadmaps, technical standards, and implementation patterns.
  • Design and support hybrid identity solutions integrating Microsoft Active Directory Domain Services, Microsoft Entra ID, cloud and on-premises applications, and authoritative identity sources while maintaining appropriate identity synchronization, authentication, authorization, and lifecycle controls.
  • Develop migration and coexistence strategies for applications and infrastructure transitioning to Azure, including modernizing authentication and authorization methods while supporting legacy technologies such as LDAP, Kerberos, NTLM, federation, certificates, and other required authentication mechanisms during the transition.
  • Design and guide implementation of modern access controls and identity security capabilities, including multifactor authentication, Conditional Access, role-based access control, privileged identity and access management, federation, certificate-based authentication, and Zero Trust principles.
  • Provide technical guidance to application, infrastructure, and cloud engineering teams during solution design and implementation, ensuring new and modernized services appropriately integrate with enterprise ICAM capabilities and standards.
  • Identify identity-related technical debt, dependencies, security risks, and modernization opportunities and develop practical remediation and migration recommendations that balance cloud transformation objectives with continued operation of mission-critical legacy services.
  • Develop and maintain ICAM architecture documentation, integration, identity flows, standards, technical designs, migration plans, and implementation guidance necessary to support architecture governance, cybersecurity review, engineering, and ongoing operations.

Requirements

  • Active Top Secret security clearance with SCI eligibility.
  • Bachelor’s degree from an accredited university.
  • Minimum 8 -10 years in an IT related field.
  • Active IAT Level II certification or equivalent., * Major in Information Technology.
  • Certification: Oracle OCP, Microsoft SQL Expert.
  • Experience with Microsoft Identity Manager (MIM) and Microsoft Entra Connect for identity synchronization.
  • Experience with Azure and Microsoft Entra-based identity models.

Benefits & conditions

Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.

About the company

SUVI Global Services is seeking an ICAM Engineer to support Identity, Credential and Access Management across all Department of War Office of Inspector General (DoW OIG) networks., Suvi, an Akima company, is not just another federal mission services contractor. As an Alaska Native Corporation (ANC), our mission and purpose extend beyond our exciting federal projects as we support our shareholder communities in Alaska.

At Suvi, the work you do every day makes a difference in the lives of our 15,000 Iñupiat shareholders, a group of Alaska natives from one of the most remote and harshest environments in the United States.

For our shareholders, Suvi provides support and employment opportunities and contributes to the survival of a culture that has thrived above the Arctic Circle for more than 10,000 years.

For our government customers, Suvi delivers subject matter experts, an agile management approach, and innovative technologies that accomplish customers’ missions safely, securely, and efficiently.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:06 min

The lack of responsibility over technical debt

Stefan Priebsch · World Congress 2021

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:22 min

Identifying the root causes of systemic technical debt

Hendrik Lösch Hendrik Lösch · World Congress 2023

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:52 min

Identifying environments that require strict credential management

Moritz Johner · World Congress 2023

Videos

See all

Related articles

See all