Identity and Access Management (IAM) Analyst SME

ASM Research$90K — $120K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT, Cybersecurity, Computer Science, or related field, or equivalent experience.
  • 8-12 years of IAM or information security experience, including expertise in regulated environments.
  • Experience administering enterprise IAM platforms and solutions, including access workflows and account lifecycle management.
  • Proven track record of conducting access certifications and audits for compliance.
  • Familiarity with developing IAM policies and privileged access management practices.
  • Active SECRET clearance or ability to obtain one as required.
  • U.S. citizenship required for federal IT support.

Responsibilities

  • Administer and govern user accounts and role-based access to ensure proper authorization and compliance.
  • Design onboarding and offboarding workflows for timely account provisioning and deprovisioning.
  • Conduct access certifications and entitlement reviews for compliance and least-privilege access.
  • Configure IAM tools to enforce security measures like multi-factor authentication and password policies.
  • Develop and maintain IAM policies, procedures, and standards for account lifecycle management.
  • Monitor IAM logs for anomalous activities and coordinate with security teams for remediation.
  • Provide troubleshooting and user support for complex access issues in collaboration with application owners.

Benefits

  • Comprehensive employee benefits package including health insurance and retirement plans.
  • Opportunities for professional development and industry certifications.
  • Engagement with advanced technology and innovative IAM solutions in a government environment.
Full Job Description
The Identity and Access Management Analyst SME serves as the senior specialist responsible for governing user identities, accounts, and entitlements across enterprise systems in a highly regulated government environment. This role leads the design and operation of IAM processes and tools that enforce least-privilege access, support compliance, and protect mission-critical applications. The SME collaborates with cybersecurity, IT, and business stakeholders to optimize IAM workflows, integrate controls into the broader security architecture, and drive continuous improvement in identity governance.

Key Responsibilities
  • Administer and govern user accounts, groups, and role-based access across identity platforms, directories, and enterprise applications, ensuring appropriate authorization and segregation of duties.
  • Design and execute onboarding, transfer, and offboarding workflows to ensure timely provisioning and deprovisioning of accounts and entitlements in alignment with security and compliance policies.
  • Conduct periodic access certifications, entitlement reviews, and audit support activities to maintain least-privilege access and demonstrate adherence to regulatory and internal control requirements.
  • Configure and maintain IAM tools and user directories, including identity governance solutions, directory services, SSO, and MFA, to enforce password policies, multi-factor authentication, and standardized access workflows.
  • Develop, document, and maintain IAM policies, procedures, and standards, including account lifecycle rules, privileged access controls, and exception handling for mission-critical systems.
  • Monitor access logs, IAM dashboards, and exception reports to detect anomalous activity, unauthorized access, or control weaknesses, and coordinate remediation with security and IT teams.
  • Provide advanced troubleshooting and user support for access issues, resolving complex authentication and authorization problems in partnership with application owners and security operations.
  • Collaborate with cybersecurity, compliance, and audit teams to integrate IAM controls into security architecture, support risk assessments and control testing, and recommend automation and control improvements.

Required Qualifications
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field, or equivalent relevant experience.
  • Typically 8-12 years of progressive IAM or information security experience with several years in a senior or SME capacity in complex, highly regulated environments.
  • Hands-on experience administering enterprise IAM platforms, directories, SSO, and MFA solutions, including designing and operating access workflows and account lifecycle processes.
  • Demonstrated experience conducting access certifications, entitlement reviews, and audit support to maintain least-privilege access and meet regulatory or internal control requirements.
  • Experience developing and maintaining IAM policies, procedures, and standards, including privileged access management practices.
  • Active SECRET security clearance (or the ability to obtain and maintain one as specified).
  • U.S. citizenship, as required to support a federal IT environment.

Preferred Qualifications
  • Experience with leading IAM/IAG platforms such as SailPoint, CyberArk, Okta, or similar enterprise solutions, including workflow design and automation.
  • Industry certifications such as CISSP, CISM, or vendor IAM certifications that demonstrate advanced IAM and security expertise.
  • Experience supporting classified or high-assurance government environments with formal access control frameworks and audit requirements.
  • Background in integrating IAM with broader security operations, including SIEM, SOAR, and endpoint security tools.


Compensation Ranges

Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.

Disclaimer

The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

Similar Jobs

More Jobs at ASM Research

More Information Technology Jobs

Find similar Identity and Access Management (IAM) Analyst SME jobs: