Arlington, VA
3 years ago

Job Overview

Job Type
Regular Full-Time
Pay
Not disclosed

Job description

Location:
Arlington, VA, United States
Work arrangement:
On-site

Identity, Credential, and Access Management (ICAM) Analyst at Sprymethods in Arlington, VA, United States.

Responsibilities

What Your Day-To-Day Looks Like (Position Responsibilities)

  • Work with senior leadership, customers, application owners, security teams, mission partners, and operations personnel to plan and execute ICAM engineering, modernization, integration, and sustainment activities using Agile methodologies.
  • Perform hands-on configuration, integration, troubleshooting, and sustainment of enterprise ICAM technologies, including CyberArk, PingFederate, SailPoint, Radiant Logic, Microsoft Entra ID, and related identity and access management technologies.
  • Implement and maintain authentication, authorization, federation, identity governance, privileged access management (PAM), identity lifecycle management, and application onboarding capabilities aligned with Zero Trust and FICAM principles.
  • Lead or support the integration and onboarding of legacy, cloud-native, SaaS, mission, and coalition applications into approved DON/DoW enterprise ICAM services.
  • Analyze system environments to identify ICAM integration requirements, technical dependencies, implementation pathways, risks, and compliance gaps, and recommend appropriate solutions.
  • Support the implementation and enforcement of DON, DoW, and Marine Corps ICAM requirements, including assessments, self-assessments, testing, UAT, compliance verification, and remediation of identified gaps.
  • Provide technical analysis and recommendations for Zero Trust data calls, audits, assessments, and compliance reporting, including validation of system information and development of recommended responses.
  • Guide engineering and application teams in implementing secure, scalable, interoperable, and operationally sustainable ICAM capabilities aligned with mission objectives and enterprise architecture requirements.
  • Develop and maintain implementation procedures, onboarding standards, deployment documentation, technical guidance, engineering practices, and sustainment processes that enable consistent enterprise ICAM delivery.
  • Serve as a technical liaison among system owners, FAMs, cybersecurity teams, program offices, engineering teams, mission partners, and ICAM service providers to resolve technical and organizational integration challenges.
  • Maintain visibility of system integration status, milestones, risks, dependencies, technical issues, and remediation activities; analyze implementation data to identify systemic gaps and opportunities for process improvement.
  • Provide senior leadership with technical and analytical recommendations regarding ICAM architecture, compliance, integration readiness, risks, priorities, and resources, while contributing to a unified, sustainable ICAM architecture supporting Zero Trust and mission integration across the MCCE.

Requirements

Who We’re Looking For (Position Overview)

The Department of the Navy (DON) ICAM Analyst will support the Service’s Identity, Credential, and Access Management (ICAM) mission by helping enforce ICAM requirements and establish a unified, sustainable approach to modernizing, sustaining, adopting, and integrating systems within the Marine Corps Cyberspace Environment (MCCE) with Department of War (DoW)-approved ICAM service providers.

The ICAM Analyst will work across system owners, application teams, Functional Area Managers (FAMs), cybersecurity stakeholders, and ICAM service providers to assess system readiness, identify integration requirements, track implementation progress, and help ensure systems achieve and maintain compliance with DON and DoW ICAM requirements.

What You Need to Succeed (Minimum Requirements)

  • Secret Clearance
  • Experienced Professional with combined 15+ years within the fields of Information Security and Identity & Access Management with regards to developing, implementing, and overseeing the protection of information, information systems and (IT) requirements.
  • 5+ years of experience on working in any major cloud (Azure, AWS or like) services and proficient with Cloud technologies.
  • Knowledge of and experience with architecting solutions adhering to Federal Identity, Credential, and Access Management (FICAM) policies, directives, and standards.
  • Knowledge of IAM and ICAM policies and standards (e.g., HSPD-12, FIPS 201, NIST- 800-63, and NIST SP 800-53 Rev 5)
  • Understanding of ICAM as a foundational element of a Zero Trust architecture.
  • Knowledge of implementing IAM tools in an enterprise environment.
  • Knowledge of Active Directory (AD), Azure AD, AD Federated Services (ADFS), common ICAM standards (e.g. OAuth 2.0, OIDC, SAML, SCIM, FIDO2, XACML, Attribute and Role based access control (ABAC and RBAC)), multi-factor authentication solutions (AAL2 and AAL3), single sign on, entitlement management.
  • Familiar with Azure DevSecOps tools and processes.
  • Has hands-on experience managing or supporting complex technical ICAM implementations, and experience with Federal Public Key Infrastructure (FPKI).
  • Experience working directly on large scale ICAM implementations, with a strong understanding of the DOD ICAM Strategy, the Federal ICAM (FICAM) Architecture, and service level strategies & Federal Public Key Infrastructure (FPKI) concepts and their relationship to PIV, derived PIV, and Azure AD CBA.
  • Strong understanding Azure AD concepts, i.e. enterprise applications, application registrations, managed identities, and service principals; conditional access framework, authentication strengths, and their relationship to NIST (e.g. 800-63B); SCIM and Azure AD User Provisioning; and deploying Identity Experience Framework (IEF) policies.

Ideally, You Also Have (Preferred Qualifications)

  • Ability to see the big picture and lead the team with a detailed task level aligned with the big picture.
  • Strong oral and written communication skills with the ability to tailor your messaging to technical and non-technical audiences.
  • Proficient to handle multi-tasking and ability to prioritize (teams) tasks independently based on organizations priorities.
  • Ability to manage various stakeholders (technical and non-technical) and collaborate with others to achieve common goals.
  • Experience working using agile methods and scrum process.
  • Demonstrated ability to understand complex technical issues at a high-level and communicate them to non-technical stakeholders.
  • Excellent diagnostic, critical thinking, and analytical skills.
  • Ability to understand CC/S/A challenges and identify and recommend appropriate strategies and technical solutions

#CJ

Benefits

Perks of Working for Us (Benefits)

Medical Coverage – Cigna - 4 Options

  • Traditional - PPO Open Access Plus Network
  • (2) HDHP - PPO Open Access Plus Network
  • HDHP - EPO Open Access Plus Network
  • Dental Coverage – Cigna - PPO Base & Buy-Up Plans
  • Vision Coverage – Principal - VSP Choice Network
  • Paid Holidays: Full-time employees receive 11 paid federal holidays
  • Paid Time Off (PTO) – PTO accrual starts at 15 days per year
  • Training Benefit – Annual training allowance available toward any job-related training or education
  • 401(k) – Multiple Fund Choices through Fidelity with a company match
  • For our full list of benefits, please visit http://www.sprymethods.com/careers/benefits/

Additional Information

At Spry, we believe talented and dedicated employees are our most valued assets and the foundation of our success. We are committed to crafting a diverse and inclusive workplace that endorses engagement, creativity, quality and innovation.

We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.

Role:
Identity, Credential, and Access Management (ICAM) Analyst
Job Type:
Regular Full-Time

Company profile

Sprymethods

sprymethods.com

Spry Methods provides cyber security, platform services, national security and IT strategy and modernization services to the federal government and commercial entities. Its customers include federal civilian agencies, the Department of Defense, law enforcement and the Intelligence Community, which it supports across intelligence disciplines such as OSINT, HUMINT, SIGINT and GEOINT. It also offers DevSecOps, enterprise architecture and cloud solutions. Founded in 2001, Spry is ISO 9001:2015, ISO/IEC 20000-1:2018 and ISO/IEC 27001:2013 registered and CMMI-SVC ML3 rated.

Founded
2001

More jobs at Sprymethods

Similar Department of Defense jobs at other companies