Identity Access Management SME

Leidos

Remote Actively hiring
Remote, USA Posted 16 days ago $107,900$195,050 / year

At a glance

AI generated

TL;DR

The Identity Access Management SME at the SEC ISS contract leads as a senior technical authority for enterprise IAM capabilities, driving the design and governance of Microsoft Entra- and ICAM-based identity services to ensure secure authentication and authorization across cloud and on-premises environments. This role involves implementing conditional access policies, MFA, PIM/PAM, RBAC, and identity governance workflows aligned with zero-trust principles and federal security requirements. The SME collaborates closely with infrastructure, security, and operations teams to maintain audit readiness and support FISMA evidence requirements while resolving complex identity and access challenges at enterprise scale. Required qualifications include a Bachelor's degree in IT or related fields, 8+ years of IAM experience, hands-on expertise with Microsoft Entra (Azure AD) and ICAM, and proficiency in compliance frameworks like NIST and ISO 27001. Preferred candidates have experience leading IAM modernization initiatives in federal environments and possess certifications such as CISSP or CISM.

Skills

Microsoft Entra Azure AD ICAM MFA Conditional Access RBA PIM/PAM Entra Identity Governance Microsoft 365 NIST ISO 27001 CISA SCuBA Zero-trust Architecture DevSecOps CI/CD FIDO Python PowerShell

What you'll do

  • Design and implement secure authentication and authorization models using Microsoft Entra and role-based access controls.
  • Manage joiner/mover/leaver identity lifecycle processes to maintain accurate and timely access provisioning.
  • Implement conditional access policies, multifactor authentication, and privileged identity management controls.
  • Establish and operate governance workflows to enforce least privilege and reduce insider-risk exposure.
  • Ensure IAM services support Authorization to Operate objectives through complete documentation and compliance with federal security requirements.

What we're looking for

  • At least 8 years of experience in IAM and cybersecurity roles for enterprise environments.
  • Hands-on expertise with Microsoft Entra (Azure AD) and ICAM capabilities.
  • Advanced knowledge of MFA, conditional access, RBAC, PIM/PAM, and identity governance.
  • Strong understanding of compliance frameworks like NIST, ISO 27001, CISA SCuBA, and zero-trust principles.
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related field.
  • Experience implementing and integrating Microsoft Entra with Microsoft 365 and enterprise applications.

Market check

Salary context

This $107,900–$195,050 range sits above 34% of similar postings on FindRole.

Peer median band

$130,650$207,750

Median floor and ceiling across peers.

Typical midpoint (25–75%)

$143,025$204,075

Middle half of comparable postings.

Based on 240 comparable postings.

* 240 is the maximum number of comparable postings sampled.

Employer

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations.

Leidos currently has 199 open roles on FindRole.

Listed pay typically runs $107,900–$195,050 across 187 roles with salary data.

Most-posted roles

View all roles at Leidos

More like this

Similar roles

Identity Access Management Specialist Mid

Leidos

Remote (6314 Remote/Teleworker Us, US) 16 days ago $69,550$125,725
Microsoft Entra ID Azure AD Multi-Factor Authentication MFA Conditional Access Role-Based Access Control RBAC Entra Identity Governance Identity lifecycle management Microsoft 365 GCC IAM workflow automation PowerShell Microsoft Graph ServiceNow CompTIA Security+ FISMA Zero Trust
Remote

Identity Access Management Specialist Senior

Leidos

Remote (6314 Remote/Teleworker Us, US) 16 days ago $87,100$157,450
Microsoft Entra Azure AD MFA Conditional Access RBAC Privileged Access Management IAM NIST CISA SCuBA ISO 27001 ServiceNow Zero Trust CI/CD Python PowerShell
Remote

VPII Product Management, Identity Access Management (IAM)

LPL Financial

Fort Mill/Charlotte, US 17 days ago $172,010$286,649
ForgeRock Okta Ping Microsoft Entra ID CI/CD AWS Kubernetes Terraform Python PostgreSQL Git Jira Confluence Scrum Agile DevOps IAM SSO MFA APIs REST

Identity Provider Engineer

Booz Allen Hamilton

US 29 days ago $86,800$198,000
PingFederate Okta EntraID SAML 2.0 OAuth 2.0 OpenID Connect Java JavaScript Python PowerShell Groovy RESTful APIs Active Directory LDAP Zero Trust MFA PingAccess PingDirectory PingOne DevOps CI/CD Okta Workflows Custom Authorization Servers Inline Hooks NIST FedRAMP HIPAA AWS Cognito Azure AD B2C Google Cloud Identity

Identity Provider Engineer

Booz Allen Hamilton

US 18 days ago $86,800$198,000
PingFederate Okta Entra ID SAML 2.0 OAuth 2.0 OpenID Connect Java JavaScript Python PowerShell Groovy RESTful APIs Active Directory LDAP Zero Trust Password-less authentication MFA DevOps CI/CD NIST FedRAMP HIPAA AWS Cognito Azure AD B2C Google Cloud Identity