Senior ICAM Identity Governance and Provisioning Engineer

Leidos

Fort Meade (FL)

On-site

USD 131,000 - 237,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Leidos is seeking a senior technical engineer to lead ICAM identity governance, automated provisioning, and Master User Record initiatives. You will design, configure, integrate, and sustain identity lifecycle workflows across DoD, cloud, and legacy environments, while aligning with Zero Trust and FICAM standards.

You will collaborate with leadership and mission partners to implement scalable, compliant ICAM solutions, deliver architecture diagrams, and mentor junior engineers.

Qualifications

  • Requires DoD Secret clearance or higher.
  • BS degree and 12+ years relevant experience preferred.
  • Experience with IdAM/ICAM delivery systems and provisioning.

Responsibilities

  • Plan and execute ICAM governance and provisioning activities.
  • Integrate identity governance across SailPoint, Okta, Saviynt, and other platforms.
  • Assess and modernize identity lifecycle management and access requests.
  • Develop workflow designs, provisioning rules, and test plans.
  • Mentor engineers and provide technical leadership on ICAM programs.

Skills

Communication skills
Leadership

Education

Bachelor's degree

Tools

SailPoint
Okta
Saviynt
Delinea
ServiceNow
Microsoft Entra ID
Active Directory
LDAP
SCIM
REST
SQL

Job description

Serves as a senior technical engineer for ICAM identity governance, automated account provisioning, entitlement management, and Master User Record capabilities; designing, configuring, integrating, and sustaining identity lifecycle workflows, role and attribute models, access certification, audit reporting, and identity data synchronization across DoD enterprise, cloud, mission, and legacy environments; supporting Zero Trust and FICAM-aligned ICAM services; and ensuring compliance with DoD, NIST, and Intelligence Community standards and frameworks.

Primary Responsibilities
  • Work with senior leadership, customers, application owners, and mission partners to plan and execute ICAM governance and provisioning activities using Agile methodologies.
  • Integrate identity governance, provisioning, directory, and audit capabilities across platforms such as SailPoint,Radiant Logic,Okta, Saviynt,Delinea, ServiceNow, Microsoft Entra ID, Active Directory, LDAP, and related ICAM technologies.
  • Assess current identity governance, provisioning, directory, and entitlement environments; analyze alternatives and implement solutions that modernize enterprise account lifecycle management and replace manual access request processes.
  • Develop and present workflow designs, integration artifacts, provisioning rules, access review materials, test plans, technical briefings, and demonstrations.
  • Evaluate emerging identity governance and provisioning technologies and guide engineering teams in implementing scalable, compliant, and mission-aligned solutions.
  • Develop service design procedures and technical recommendations for identity lifecycle management, delegated administration, access certification, entitlement management, and identity data integration.
  • Ensure engineering teams deliver efficient and effective identity governance, provisioning, de-provisioning, audit, and compliance capabilities supporting enterprise missionobjectives.
  • Support integration of provisioning and entitlement services across cloud, enterprise directory, and mission application environments.
  • Provide technical status updates and implementation risk assessments to internal and external stakeholders.
  • Serve as a technical lead for identity governance, automated provisioning, and Master User Record implementation activities while mentoring junior engineers.
  • Prepare and present technical briefings, demonstrations, architecture diagrams, and implementation plans.
  • Recognizedas a trusted technical leader for ICAM identity governance, entitlement management, and provisioning automation.
Required Qualifications
  • Active DoD Secret Clearance or higher.
  • Typically requires BS degree and 12+ years relevant experience.Additionalexperience may be considered in lieu of degree.
  • Experience with IdAM / ICAM delivery systems, identity governance, automated provisioning and de-provisioning, authentication, authorization, entitlement management, access certification, role engineering, and digital policy management.
  • Experience integrating identity governance platforms with cloud, enterprise directory, and mission application environments using APIs, SCIM, LDAP, Active Directory, REST, SQL, and workflow automation technologies.
  • Understanding of RBAC, ABAC, segregation of duties, privileged account auditing, identity data normalization, and identity-related audit/compliance processes supporting DoD accreditation requirements.
  • Experience supporting identity governance and provisioning services within cloud-hosted and hybrid enterprise environments.
  • Experience interacting with cross-functional teams including Software Development, Systems Engineering, Security, Compliance, Verification and Validation, Quality Assurance, and Operations.
  • Excellent oral and written communication skills.
Required Certification(s):
  • One or more DoD 8140.01 Level IIICertifications
  • Active Computing Environmental certification (CE) in job-related duties such as SailPoint, Okta, Saviynt, Microsoft Entra ID, AWS Cloud, Microsoft Cloud, or related ICAM platform certification
Desired Qualifications:
  • Experience supporting DoD ICAM, Zero Trust, or FICAM initiatives.
  • Experience implementing SailPoint, Saviynt, Okta Identity Governance, or equivalent IGA platforms.
  • Experience supporting Master User Record (MUR), enterprise entitlement reporting, or insider threat analytics capabilities.
  • Experience integrating legacy applications into enterprise identity governance and provisioning architectures.
  • Experience supporting IL5/IL6, GovCloud, C2S, or classified cloud environments.
  • Familiarity with NIST 800-53, NIST 800-63, NIST 800-162, and DoD Zero Trust guidance.
  • TS/SCI eligible.

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares.

Original Posting:

May 22, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior ICAM Identity Governance and Provisioning Engineer
Senior ICAM Identity Governance and Provisioning Engineer

Leidos • United States

On-site
USD 131,000 - 238,000
Senior ICAM Federation & App Onboarding Engineer
Senior ICAM Federation & App Onboarding Engineer

Via Logic LLC • Reston (VA)

On-site
Senior ICAM Federation and App Integration Engineer
Senior ICAM Federation and App Integration Engineer

Leidos Inc • Fort Meade (MD)

On-site
USD 150,000 - 190,000
Senior ICAM Federation and App Integration Engineer
Senior ICAM Federation and App Integration Engineer

Leidos • United States

On-site
USD 140,000 - 190,000
Senior AD/ICAM Administrator
Senior AD/ICAM Administrator

Leidos Inc • Reston (VA)

On-site
USD 131,000 - 237,000
ICAM Engineering Support Staff 24x7
ICAM Engineering Support Staff 24x7

Leidos • Hanover (MD)

On-site
USD 87,000 - 158,000
Paid Time Off
401K with 6% company match
Flexible Schedules
+2
Identity and Access Engineer (ICAM) Engineer
Identity and Access Engineer (ICAM) Engineer

Leidos Inc • Rockville (MD)

On-site
USD 87,000 - 157,000
Senior AD/ICAM Administrator
Senior AD/ICAM Administrator

Leidos • Virginia (MN)

Hybrid
USD 142,000 - 237,000
Senior AD/ICAM Administrator
Senior AD/ICAM Administrator

Leidos • United States

On-site
USD 131,000 - 237,000
Senior AD/ICAM Administrator
Senior AD/ICAM Administrator

Leidos Inc • Virginia (MN)

On-site
USD 131,000 - 237,000