SME Systems Engineer (ICAM Architect)

GovCIO
Alexandria
Workplace: HybridFull timeUSD 135,000 - 172,000 annuallyFunction: IT Operations (Systems/Network Admin)Experience: 10+ yearsEducation: high_schoolSkills: []

Serve as a primary technical authority for enterprise identity management and access control modernization, focused on ICAM Enterprise Architecture supporting the U.S. Coast Guard. Lead secure redesign of legacy access controls, manage federation/authentication/authorization and SSO, and architect identity lifecycles, privilege management, PKI, and Zero Trust principles (NIST SP 800-207). Build federated services, enforce MFA/SSO/PAM, and perform root-cause analysis and audits.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GovCIO
GovCIO
1 week ago

SME Systems Engineer (ICAM Architect)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Serve as a primary technical authority for enterprise identity management and access control modernization, focused on ICAM Enterprise Architecture supporting the U.S. Coast Guard. Lead secure redesign of legacy access controls, manage federation/authentication/authorization and SSO, and architect identity lifecycles, privilege management, PKI, and Zero Trust principles (NIST SP 800-207). Build federated services, enforce MFA/SSO/PAM, and perform root-cause analysis and audits.
Location: Alexandria
Workplace: Hybrid
Employment Type: Full time
Job Function: IT Operations (Systems/Network Admin)
Seniority: Mid level

Key Responsibilities

  • •Lead modernization of legacy access controls into secure ICAM solutions.
  • •Manage enterprise directories, federation, authentication, authorization, and SSO protocols.
  • •Architect identity lifecycles, user provisioning workflows, and privilege management controls.
  • •Design and deploy Zero Trust identity principles (NIST SP 800-207) and configure enterprise-grade PKI systems, credentials, and authenticators.
  • •Implement logical and physical access control systems (including MFA, SSO, and PAM), build federated identity services, and conduct root-cause analysis and privilege audits.

Pay and Benefits

Salary: USD 135,000 - 172,000 annually

Key Requirements

  • •High school with 10+ years (or commensurate experience).
  • •Must have an active Secret clearance.
  • •DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).
  • •Deep understanding of federated identity concepts including SAML, OAuth, OIDC, and Active Directory/LDAP architecture.
  • •Hands-on experience managing Smart Card/Common Access Card (CAC) authentication and PKI certificate validation.
Experience:10+ years
Education:High School
Certifications:DoD 8570 IAT Level IISecurity+ CECySA+
Tech Stack:ICAMIdentityCredentialAccess controlActive DirectoryLDAPEntra IDSAMLOAuthOIDCSSOMFAPAMZero TrustNIST SP 800-207PKISmart CardCommon Access Card (CAC)Domain Controllers (DCs)RESTful APIs

Eligibility

Security Clearance:Secret

Company Brief

GovCIO
Provides IT modernization, cloud, cybersecurity, data analytics, and managed services to U.S. federal civilian and defense agencies, delivering technology solutions and mission support to improve government operations and security.
Industry: Professional Services
Growth: Established Company
Headquarters: Herndon, United States
WebsiteLinkedIn