Identity Access Management SME
Remote
Type: Contract To Hire
Compensation: $65.28
Security Clearance: Ability to obtain and maintain Public Trust (or higher if required)
Overview
This role is for a senior IAM professional who can lead enterprise identity security and governance across Microsoft Entra ID and Microsoft ICAM environments. The SME will manage identity lifecycle processes, MFA, conditional access, RBAC, privileged access, and access governance while supporting zero-trust and compliance requirements. They’ll also handle complex IAM issues, support audits and remediation, and help automate identity provisioning and reporting. Ideal candidates will have 8+ years of IAM or cybersecurity experience, strong Microsoft Entra expertise, and experience in federal or regulated environments.
Responsibilities
- Serve as the senior technical authority for enterprise IAM capabilities supporting the contract, leading design, implementation, and governance of Microsoft Entra- and Microsoft ICAM-based frameworks and identity services.
- Lead the design and implementation of secure authentication and authorization models using Microsoft Entra ID, Microsoft ICAM, and role-based access controls.
- Manage joiner/mover/leaver identity lifecycle processes, directory services, and account governance to maintain accurate and timely access provisioning.
- Implement and maintain conditional access policies, multifactor authentication, privileged identity/access management, and identity protection controls.
- Establish and operate access reviews, entitlement management, and governance workflows to enforce least privilege and reduce insider-risk exposure.
- Ensure IAM services support authorization and audit objectives through complete, current SOP and control documentation.
- Align IAM controls with NIST, ISO 27001, CISA SCuBA, FISMA, and security policy requirements.
- Produce technical artifacts and evidence for audit and assessment activities, including FISMA and related reviews.
- Support remediation planning and corrective actions for IAM-related findings, risks, and control deficiencies.
- Lead resolution of complex identity and access incidents, root causes, and recurring control gaps across hybrid environments.
- Drive automation of identity provisioning, deprovisioning, policy enforcement, and reporting using scripting and platform-native capabilities.
- Collaborate with security, cloud, endpoint, and service management teams to implement identity-dependent controls.
- Provide strategic guidance to government stakeholders on IAM roadmap priorities, modernization sequencing, and operational risks.
Requirements
- Must meet contract requirements for citizenship and ability to obtain and maintain Public Trust security clearance.
- Bachelor''s degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related field.
- Minimum 8 years of experience in identity governance, access management, or cybersecurity supporting enterprise environments.
- Hands-on experience with Microsoft Entra ID (Azure AD) and Microsoft ICAM capabilities.
- Advanced experience with MFA, conditional access, privileged access management, Entra Identity Governance, and integration with Microsoft 365 and enterprise applications.
- Strong understanding of compliance frameworks (NIST, ISO 27001, CISA SCuBA) and zero-trust principles.
- Technical skills in Microsoft Entra ID, MFA, RBAC, privileged access/identity management, and identity lifecycle management.
- Experience supporting audit remediation, remediation planning, and executive-level risk reporting.
- Preferred qualifications include leading IAM modernization initiatives, experience supporting federal or regulated enterprise environments, implementing phishing-resistant authentication, automating IAM operations, and holding certifications such as SC-300, CISSP, or CISM.
System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.
System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.
#M-
#LI-
Ref: #851-Rockville-S1