Identity and Access Management (IAM) Analyst SME

ASM Research$100K — $130K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT, Cybersecurity, Computer Science, or related field or equivalent experience.
  • 8-12 years of progressive IAM or information security experience, including several years in a senior or SME capacity.
  • Hands-on experience administering IAM platforms, directories, SSO, and MFA solutions.
  • Experience conducting access certifications and entitlement reviews to maintain least-privilege access.
  • Demonstrated experience developing IAM policies and privileged access management practices.
  • Active SECRET security clearance or ability to obtain one as specified.
  • U.S. citizenship required for federal IT support.

Responsibilities

  • Administer and govern user accounts, groups, and access across identity platforms and enterprise applications.
  • Design and execute onboarding, transfer, and offboarding workflows for accounts and entitlements.
  • Conduct periodic access certifications and audit support activities.
  • Configure and maintain IAM tools, including identity governance solutions and MFA.
  • Develop and maintain IAM policies and procedures for account lifecycle and privileged access.
  • Monitor access logs and dashboards to detect unauthorized access and coordinate remediation.
  • Provide advanced troubleshooting and user support for access issues.

Benefits

  • Comprehensive health insurance options.
  • 401(k) retirement plan with company match.
  • Generous paid time off and holiday schedule.
  • Continuing education and professional development opportunities.
  • Work-life balance support with flexible scheduling options.
  • Opportunity to work in a collaborative and innovative environment.
Full Job Description
The Identity and Access Management Analyst SME serves as the senior specialist responsible for governing user identities, accounts, and entitlements across enterprise systems in a highly regulated government environment. This role leads the design and operation of IAM processes and tools that enforce least-privilege access, support compliance, and protect mission-critical applications. The SME collaborates with cybersecurity, IT, and business stakeholders to optimize IAM workflows, integrate controls into the broader security architecture, and drive continuous improvement in identity governance.

Key Responsibilities
  • Administer and govern user accounts, groups, and role-based access across identity platforms, directories, and enterprise applications, ensuring appropriate authorization and segregation of duties.
  • Design and execute onboarding, transfer, and offboarding workflows to ensure timely provisioning and deprovisioning of accounts and entitlements in alignment with security and compliance policies.
  • Conduct periodic access certifications, entitlement reviews, and audit support activities to maintain least-privilege access and demonstrate adherence to regulatory and internal control requirements.
  • Configure and maintain IAM tools and user directories, including identity governance solutions, directory services, SSO, and MFA, to enforce password policies, multi-factor authentication, and standardized access workflows.
  • Develop, document, and maintain IAM policies, procedures, and standards, including account lifecycle rules, privileged access controls, and exception handling for mission-critical systems.
  • Monitor access logs, IAM dashboards, and exception reports to detect anomalous activity, unauthorized access, or control weaknesses, and coordinate remediation with security and IT teams.
  • Provide advanced troubleshooting and user support for access issues, resolving complex authentication and authorization problems in partnership with application owners and security operations.
  • Collaborate with cybersecurity, compliance, and audit teams to integrate IAM controls into security architecture, support risk assessments and control testing, and recommend automation and control improvements.

Required Qualifications
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field, or equivalent relevant experience.
  • Typically 8-12 years of progressive IAM or information security experience with several years in a senior or SME capacity in complex, highly regulated environments.
  • Hands-on experience administering enterprise IAM platforms, directories, SSO, and MFA solutions, including designing and operating access workflows and account lifecycle processes.
  • Demonstrated experience conducting access certifications, entitlement reviews, and audit support to maintain least-privilege access and meet regulatory or internal control requirements.
  • Experience developing and maintaining IAM policies, procedures, and standards, including privileged access management practices.
  • Active SECRET security clearance (or the ability to obtain and maintain one as specified).
  • U.S. citizenship, as required to support a federal IT environment.

Preferred Qualifications
  • Experience with leading IAM/IAG platforms such as SailPoint, CyberArk, Okta, or similar enterprise solutions, including workflow design and automation.
  • Industry certifications such as CISSP, CISM, or vendor IAM certifications that demonstrate advanced IAM and security expertise.
  • Experience supporting classified or high-assurance government environments with formal access control frameworks and audit requirements.
  • Background in integrating IAM with broader security operations, including SIEM, SOAR, and endpoint security tools.


Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

Similar Jobs

More Jobs at ASM Research

More Information Technology Jobs

Find similar Identity and Access Management (IAM) Analyst SME jobs: