Identity Access Management SME

System One

Washington (District of Columbia)

On-site

USD 83,000 - 94,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

System One is seeking a senior Identity Access Management SME in Washington, DC for a contract role. The candidate will lead enterprise IAM strategy, governance, and operations, acting as the technical authority for Microsoft Entra ID (Azure AD), ICAM, and zero-trust security.

The role requires extensive experience in identity governance, MFA, PIM/PAM, and RBAC, with a focus on secure authentication across cloud and on-premises environments.

Qualifications

  • Bachelor's degree in IT, cybersecurity, engineering, or related field.
  • Minimum 8 years of identity governance or IAM experience in enterprise environments.
  • Hands-on experience with Microsoft Entra ID (Azure AD) and ICAM capabilities.
  • Strong knowledge of MFA, conditional access, and zero-trust principles.

Responsibilities

  • Serve as senior technical authority for enterprise IAM across the contract.
  • Lead design, implementation, and governance of Entra ID and ICAM frameworks.
  • Drive conditional access, MFA, PIM/PAM, RBAC, and governance workflows.
  • Collaborate with infrastructure, security, and operations to maintain audit readiness.
  • Define IAM standards and operating procedures aligned with zero-trust and federal requirements.
  • Produce artifacts for audits and assessments and support remediation actions.
  • Drive automation of identity provisioning/deprovisioning and reporting.

Skills

Identity governance
Zero trust
IAM strategy
Azure AD / Entra ID
MFA / PAM
RBAC

Education

Bachelor's degree in IT/Cybersecurity
Microsoft SC-300
CISSP
CISM

Tools

Azure AD
Microsoft ICAM
PIM/PAM
RBAC

Job description

Job Title: Identity Access Management SME
Location: Washington, DC
Type: Contract
Compensation: $63.75/hr
Work Model: Onsite – onsite
Hours: 40.0
Security Clearance: Ability to obtain and maintain a Public Trust Clearance (or higher if required)

Overview

This is a senior-level cybersecurity and identity management role focused on leading enterprise Identity and Access Management (IAM) strategy, governance, and operations. The position serves as the technical authority for Microsoft Entra ID (Azure AD), Microsoft ICAM, Zero Trust security, and identity governance, ensuring secure access across cloud and on-premises environments.

Responsibilities
  • Serve as the senior technical authority for enterprise IAM capabilities supporting the contract.
  • Lead the design, implementation, and governance of Microsoft Entra- and Microsoft ICAM-based frameworks and identity services to ensure secure authentication, authorization, compliance, and least-privilege access across cloud and on-premises environments.
  • Drive the implementation of conditional access, MFA, PIM/PAM, RBAC, and identity governance workflows aligned with SEC zero-trust objectives and OMB M-22-09 direction.
  • Partner with infrastructure, security, and operations teams to sustain audit readiness, support FISMA evidence requirements, and resolve complex identity and access challenges at enterprise scale.
  • Design and implement secure authentication and authorization models using Microsoft Entra ID, Microsoft ICAM, and role-based access controls.
  • Lead the integration of Entra identity services with Microsoft 365 and enterprise applications for consistent identity lifecycle and policy enforcement.
  • Define IAM standards, patterns, and operating procedures aligned with zero-trust principles and federal security requirements.
  • Manage joiner/mover/leaver identity lifecycle processes, directory services, and account governance to maintain accurate access provisioning.
  • Implement and maintain conditional access policies, MFA, privileged identity/access management, and identity protection controls.
  • Establish and operate access reviews, entitlement management, and governance workflows to enforce least privilege and reduce insider-risk exposure.
  • Oversee RBAC design, assignment, and recertification, including automated processes for policy consistency.
  • Ensure IAM services support continuing Authorization to Operate objectives with complete SOP and control documentation.
  • Align IAM controls with NIST, ISO 27001, CISA SCuBA, FISMA, and SEC/OIT security policy requirements.
  • Produce artifacts and evidence for audits, assessments, FISMA, and internal/external reviews.
  • Support remediation planning and corrective actions for IAM findings, risks, and deficiencies.
  • Lead resolution of complex identity and access incidents, root causes, and recurring gaps.
  • Drive automation of identity provisioning, deprovisioning, policy enforcement, and reporting.
  • Collaborate with security, cloud, endpoint, and service management teams to implement identity-dependent controls.
  • Provide strategic guidance to stakeholders on IAM roadmap priorities, modernization, and operational risk.
Requirements
  • Must meet contract requirements for citizenship/work authorization.
  • Ability to obtain and maintain Public Trust clearance (or higher if required).
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related field.
  • Minimum 8 years of experience in identity governance, IAM, or cybersecurity roles supporting enterprise environments.
  • Hands-on experience implementing and operating Microsoft Entra ID (Azure AD) and Microsoft ICAM capabilities.
  • Advanced experience with MFA, conditional access, privileged access management, and identity governance.
  • Strong understanding of compliance frameworks (NIST, ISO 27001, CISA SCuBA) and zero-trust principles.
  • Experience supporting federal or highly regulated enterprise IAM modernization initiatives (preferred).
  • Knowledge of scripting/automation tools for IAM operations (preferred).
  • Certifications such as Microsoft SC-300, CISSP, or CISM are a plus.

System One, and its subsidiaries including Joulé and Mountain Ltd., are leaders in delivering outsourced services and workforce solutions across North America. We help clients get work done more efficiently and economically, without compromising quality. System One not only serves as a valued partner for our clients, but we offer eligible employees health and welfare benefits coverage options including medical, dental, vision, spending accounts, life insurance, voluntary plans, as well as participation in a 401(k) plan.

System One is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, age, national origin, disability, family care or medical leave status, genetic information, veteran status, marital status, or any other characteristic protected by applicable federal, state, or local law.

#M-M2
#LI-HJA
Ref: #851-Rockville-S1

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior IAM Architect: Entra ID, Zero Trust & Governance
Senior IAM Architect: Entra ID, Zero Trust & Governance

System One • Washington

On-site
USD 83,000 - 94,000
SME Systems Engineer
SME Systems Engineer

GDH • Alexandria (VA)

Hybrid
USD 83,000 - 90,000
Hybrid work schedule
Identity & Access Management Specialist
Identity & Access Management Specialist

Milbank LLP • New York (NY)

On-site
USD 140,000 - 160,000
Identity, Credential, and Access Management (ICAM) Engineer - Cleared (Polygraph)
Identity, Credential, and Access Management (ICAM) Engineer - Cleared (Polygraph)

TrueTandem • Reston (VA)

On-site
USD 120,000 - 150,000
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

On-site
USD 140,000 - 180,000
IT Security and IAM Engineer/Administrator
IT Security and IAM Engineer/Administrator

Cypress HCM • Cincinnati (OH)

On-site
USD 70,000 - 90,000
Benefits
Community Involvement
PTO
+2
Sr. Identity & Access Management (IAM) Engineer
Sr. Identity & Access Management (IAM) Engineer

NKC Health • Kansas City (MO)

On-site
USD 100,000 - 130,000
IAM Architect
IAM Architect

Conexess Group • Farmington Hills (MI)

On-site
USD 130,000 - 170,000
Identity and Access Management Architect
Identity and Access Management Architect

Deal Exchange, LLC • Southfield (MI)

Hybrid
USD 110,000 - 140,000
Identity and Access Management
Identity and Access Management

Robotics Prcocess Automation, LLC • Braintree (MA)

On-site
USD 90,000 - 115,000