ECS

Identity and Access Management Lead

ECS$126K — $189K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in Identity and Access Management within complex enterprise or federal settings
  • Expertise in Microsoft EntraID (Azure AD) focusing on governance and role assignments
  • Hands-on experience with AWS IAM, including access policies and analysis tools
  • Deep understanding of RBAC design, least privilege principles, and Zero Trust Architecture
  • Experience with Privileged Access Management (PAM) and governance of privileged accounts
  • Familiarity with CDM program requirements and federal ICAM policies
  • Proven ability to conduct access reviews, compliance audits, and reporting

Responsibilities

  • Design and implement a formal RBAC framework for CDM BETSIE and related environments
  • Establish least privilege policies in line with Zero Trust architecture and federal directives
  • Develop and manage identity lifecycle processes for onboarding and offboarding
  • Implement and manage a Privileged Access Management program including privileged account governance
  • Lead access review and audit processes to meet compliance and reporting obligations
  • Develop and maintain role-to-privilege mappings to simplify access management
  • Collaborate with leadership and HR to align IAM policies with organizational changes
  • Produce IAM metrics and reports to communicate governance posture and access risk

Benefits

  • Remote work flexibility with opportunities in Arlington, VA
  • Engagement in high-impact federal compliance and security initiatives
  • Opportunities for professional growth in IAM and security engineering
  • Collaborative work environment with cross-functional teams
  • Access to ongoing training and development resources
Full Job Description
Everforth ECS is seeking an Identity and Access Management Leadto work in our Arlington, VA office/remote.

The Lead IAM Engineer will serve as the primary subject matter expert for Identity and Access Management within the CDM program's Security Engineering team. This individual will be responsible for designing, implementing, and maturing IAM capabilities across the CDM BETSIE environment, with a focus on access governance, least privilege enforcement, privileged access management, and federal compliance alignment.

Key Responsibilities
  • Design and implement a formal RBAC framework across CDM BETSIE and associated environments, including EntraID and AWS
  • Establish and enforce least privilege policies in alignment with Zero Trust Architecture principles and federal directives
  • Develop and manage identity lifecycle processes for joiners, movers, and leavers across the program, ensuring timely provisioning and deprovisioning
  • Implement and manage a Privileged Access Management (PAM) program including identification, governance, and monitoring of privileged accounts
  • Lead access review and audit processes to support PAR/RAR reporting requirements and ongoing compliance obligations
  • Develop and maintain role-to-privilege mappings and job function definitions across the program to eliminate access ambiguity
  • Collaborate with program leadership, system owners, and HR to ensure IAM policies align with organizational changes and personnel transitions
  • Produce IAM metrics, reports, and dashboards to communicate access risk and governance posture to program leadership
  • Serve as the IAM subject matter expert for CDM program compliance activities, audits, and government stakeholder engagements


Salary: $126,000 - $189,000

General Description of Benefits

  • 5+ years of experience in Identity and Access Management in a complex enterprise or federal environment
  • Demonstrated expertise with Microsoft EntraID (Azure AD) including conditional access, role assignments, and identity governance
  • Hands-on experience with AWS IAM, including policies, roles, permission boundaries, and access analysis tools
  • Strong knowledge of RBAC design, least privilege principles, and Zero Trust Architecture frameworks
  • Experience supporting or implementing PAM solutions and privileged account governance
  • Familiarity with CDM program requirements, PAR/RAR processes, and federal ICAM policies
  • Experience conducting access reviews, audits, and compliance reporting
  • Strong documentation and communication skills with the ability to present complex IAM concepts to both technical and non-technical stakeholders

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar Identity and Access Management Lead jobs: