Qureos

Find The RightJob.

ICAM Architect (Identity, Credential, and Access Management)


General Info:

Citizenship Required: US Citizenship

Clearance: Secret

Job Duration: Full Time

Site: Washington D.C. Metro Area

Travel: 5% or Less


Position Overview:

Lead and deliver enterprise Identity, Credential, and Access Management (ICAM) solutions across the full solution lifecycle. Responsible for successful execution from discovery and planning through deployment, user adoption, and ongoing operational support. Provides strategic and technical leadership to ensure scalable, secure, and compliant solutions aligned with mission objectives and call order requirements.


Responsibilities:

  • Lead ICAM delivery across the full solution lifecycle including discovery, planning, design, development/configuration, MVP delivery, deployment, adoption, training, documentation, system handover, and ongoing support
  • Design and implement enterprise ICAM architectures across cloud, hybrid, and on-prem environments
  • Ensure integration with enterprise systems, applications, and identity platforms
  • Define and enforce access control models including RBAC, ABAC, and Zero Trust principles
  • Architect identity lifecycle management processes including provisioning, governance, and deprovisioning
  • Support development of training materials, user guides, and documentation
  • Drive user adoption and change management strategies
  • Ensure compliance with federal standards including NIST, FICAM, and Zero Trust frameworks
  • Provide technical leadership and subject matter expertise to meet task or call order objectives
  • Contribute to staffing strategies, labor mix planning, and resource alignment
  • Support operational activities including troubleshooting, optimization, and continuous improvement
  • Ensure adequate subject matter expertise, technical proficiency, and operational support across delivery teams

Education and Experience Required:

  • Bachelor’s degree or higher in Computer Science, Information Systems, or related field
  • 8–12 years of demonstrated experience in ICAM, cybersecurity, or enterprise architecture
  • Proven experience delivering full lifecycle ICAM solutions including MVP and production deployment
  • Experience with cloud identity platforms such as Azure AD, AWS IAM, or Okta
  • Strong knowledge of federation protocols (SAML, OAuth, OpenID Connect)
  • Experience with identity governance (IGA) and privileged access management (PAM)
  • Demonstrated experience in enterprise system integration
  • Experience in training development, documentation, and change management

Preferred Qualifications:

  • Active Secret or Top Secret clearance
  • Certifications such as CISSP, CISM, TOGAF, or SABSA
  • Experience supporting federal government programs or task order execution
  • Familiarity with Zero Trust Architecture implementation
  • Experience with DevSecOps and identity automation

© 2026 Qureos. All rights reserved.