SME Systems Engineer (ICAM)

• Posted 2 days ago • Updated 8 hours ago
Full Time
USD $135,000.00 - 172,000.00 per year
Company Branding Image
Fitment

Dice Job Match Score™

🫥 Flibbertigibetting...

Job Details

Skills

  • Recruiting
  • Provisioning
  • Workflow
  • Network
  • Multi-factor Authentication
  • SSO
  • Root Cause Analysis
  • Performance Tuning
  • Interfaces
  • Data Flow
  • Documentation
  • PIM
  • MPM
  • Scripting
  • Microsoft Azure
  • Retail
  • Cloud Computing
  • Reporting
  • Analytics
  • Regulatory Compliance
  • Dashboard
  • Auditing
  • Enterprise Architecture
  • DoD
  • Security+
  • Customer Engagement
  • Federated Identity
  • SAML
  • OAuth
  • OIDC
  • Active Directory
  • LDAP
  • Smart Card
  • Authentication
  • PKI
  • NIST SP 800 Series
  • Enterprise Networks
  • Security Clearance
  • Identity Management
  • Data Governance
  • ICAM
  • Access Control
  • Management
  • SailPoint
  • Microsoft
  • Microsoft Power BI
  • RESTful
  • Authorization

Summary

GovCIO is currently hiring a highly experienced SME Systems Engineer to support critical Identity, Credential, and Access Management (ICAM) modernization activities for the U.S. Coast Guard (USCG). This technical role focuses on designing, engineering, and executing secure, identity-centric access control frameworks across legacy and modern enterprise architectures. This position will be located in Alexandria, VA, and will be a hybrid position.

Responsibilities

The SME Systems Engineer / ICAM Engineer will serve as a primary technical authority for the enterprise identity management and access control framework. Core responsibilities include:
  • Lead Modernize legacy access controls into robust, secure ICAM solutions.
  • Manage enterprise directories, federation, authentication, authorization, and SSO protocols.
  • Architect identity lifecycles, user provisioning workflows, and privilege management controls.
  • Design and deploy strict Zero Trust identity principles (NIST SP 800-207) across network hubs.
  • Configure and manage enterprise-grade PKI systems, credentials, and authenticators.
  • Implement logical and physical access control systems, including MFA, SSO, and PAM.
  • Build federated identity services to enable secure interoperability with mission partners.
  • Conduct technical root cause analysis, privilege audits, and system performance tuning.
  • Develop custom technical interfaces, architectures, data flows, and compliance documentation.
  • Provide advanced engineering and architecture ownership across one of the following specializations:
    • Microsoft Entra: Own tenant architecture, Entra Connect Sync, conditional access, and Entra ID Governance (PIM/Access Reviews).
    • Power Platform & Automation: Lead MPM/PUMP applications and migrate legacy scripts to cloud-native solutions (Power Automate, Logic Apps, Azure Functions).
    • Azure AD B2C (CIAM): Manage the CIAM platform lifecycle, custom policies, user flows, and external application integrations.
    • Cloud Credential & PKI: Engineer DigiCert platforms and cloud HSMs; plan Yubikey integration to meet NIST AAL3 standards.
    • Governance, Reporting & Analytics: Build Power BI compliance dashboards and develop advanced KQL queries for audits and threat hunting.
    • ICAM Enterprise Architecture: Design the hybrid identity strategy (on-premises AD and Entra ID integration) and Domain Controller lifecycle.

Qualifications

High School with 10+ years (or commensurate experience)

Required Skills & Experience
  • Certifications: DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).
  • Deep technical understanding of federated identity concepts, including SAML, OAuth, OIDC, and Active Directory / LDAP architecture.
  • Hands-on engineering experience managing Smart Card / Common Access Card (CAC) authentication and PKI certificate validation.
  • Proven experience designing and applying federal Zero Trust identity guidelines (NIST SP 800-207) within enterprise networks.

Clearance Level: Must have an active Secret clearance

Preferred Skills & Experience

  • Prior experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) identity management programs.
  • Familiarity with integrating data governance frameworks with ICAM solutions to enforce data-level access controls.
  • Direct experience with enterprise identity tools such as SailPoint, Okta, Microsoft Entra ID, Ping Identity, DigiCert, or Power BI.
  • Advanced knowledge of RESTful API authorization protocols, secure gateways, and data schema security standards.

Posted Salary Range

USD $135,000.00 - USD $172,000.00 /Yr.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10443217
  • Position Id: 8556
  • Posted 2 days ago

Company Info

About GovCIO

GovCIO is a rapidly growing provider of advanced technology solutions and digital services for the federal government. Combining our extensive federal experience with the latest innovations in IT and disruptive approaches, our experts develop comprehensive solutions to meet the most pressing demands of today’s government agencies. From the U.S. military to Health and Human Services, we have an impressive track record of helping our customers optimize how they operate.

We’re transforming government IT, empowering our federal customers to meet the challenges of today while building the government of tomorrow.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

No location provided

Today

Full-time

USD 135,000.00 - 172,000.00 per year

No location provided

Today

Full-time

USD 175,000.00 - 185,000.00 per year

Search all similar jobs