Lead Identity and Access Management (ICAM) Engineer

Leidos Holding$131K — $237K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in computer science, IT, or similar; master's degree preferred.
  • 12 years of general experience, with 8+ years specifically in identity access management.
  • 5+ years in a senior or SME role, managing enterprise-scale IAM architecture.
  • Hands-on experience with two or more IAM platforms: IGA, PAM, SSO, Directory Services.
  • Familiarity with federal or highly regulated environments is preferred.
  • Deep understanding of authentication and authorization protocols like SAML, OAuth, OIDC, etc.
  • Proficient in PowerShell and Graph API for automation.

Responsibilities

  • Lead design and improvement of enterprise IAM solutions and frameworks.
  • Act as SME for IAM architecture, tool selection, and integration strategies.
  • Define and enforce identity lifecycle management processes and access controls.
  • Conduct IAM-related audits and ensure compliance with regulations.
  • Collaborate with security operations and compliance teams to integrate applications.
  • Mentor IAM engineering staff and provide technical leadership.
  • Support incident responses and forensics related to identity events.

Benefits

  • Eligibility for security clearances based on employment needs.
  • Professional development and certification support.
  • Collaboration with leading government digital initiatives.
  • Opportunities for technical leadership and mentorship.
  • Work with cutting-edge IAM technologies and frameworks.
Full Job Description
Leidos Digital Civilian Agency Solutions division is seeking an expert-level Lead Identity and Access Management Engineer to serve as the senior technical authority for complex enterprise identity management solutions for large-scale government digital transformation initiatives. The ideal candidate will have deep expertise in Microsoft identity technologies and a proven track record of designing, implementing, and maturing IAM architecture and processes across cloud and on-premises environments, ensuring alignment with industry frameworks and regulatory requirements, and provides technical leadership and mentorship to junior and mid-level IAM engineers. advanced enterprise-level identity solutions.

Candidate MUST:

Be a US Citizen or US Person who has lived in the United States for at least three consecutive years and have the ability to obtain a Public Trust level 4 clearance

Primary Responsibilities:
  • Lead the design, engineering, and continuous improvement of enterprise IAM solutions, including Identity Governance and Administration (IGA), Privileged Access Management (PAM), Single Sign-On (SSO)/Federation, Multi-Factor Authentication (MFA), and directory services.
  • Serve as the SME for IAM architecture decisions, tool selection, and integration strategy across cloud (Azure, AWS, GCP) and on-premises platforms.
  • Define and enforce Identity lifecycle management processes (joiner-mover-leaver), role-based/attribute-based access control (RBAC/ABAC), and least-privilege principles.
  • Lead IAM-related audits, risk assessments, and remediation efforts; ensure compliance with regulatory and contractual obligations.
  • Partner with security operations, application owners, and compliance teams to integrate applications into enterprise IAM platforms (e.g., Microsoft Entra ID/Azure AD, Okta, Ping Identity, CyberArk).
  • Provide technical leadership, mentoring, and peer review for IAM engineering staff.
  • Support incident response and forensic investigations involving identity-related events.
  • Evaluate emerging IAM technologies (e.g., password less authentication, decentralized identity, Zero Trust architecture) and recommend adoption strategies.
  • Prepare technical documentation, architecture diagrams, and executive-level reporting on IAM posture and roadmap.

Required Qualifications:
  • Bachelor's degree in computer science, Information Technology, or equivalent and 12 years of general experience, preferably supporting system engineering. 6 years of additional experience is equivalent to a Bachelor's degree. With a Master's degree, 10 years of general experience is required.
  • 8+ years of progressive experience focusing on identity and access management.
  • 5+ years in a senior/lead or SME capacity, with demonstrated ownership of enterprise-scale IAM architecture.
  • Hands-on experience with at least two of the following IAM platform categories:

- IGA: Microsoft Identity Manager

- PAM: CyberArk, Beyond Trust

- SSO/Federation: Okta, Microsoft Entra ID, Ping Identity

- Directory Services: Active Directory, Azure AD/Entra ID, LDAP
  • Experience supporting federal, defense, or highly regulated environments preferred (especially for government/contractor roles).
  • Experience with cloud IAM services (Azure Entra ID, AWS IAM/SSO, GCP IAM).
  • Deep understanding of authentication and authorization protocols: SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), SCIM, Kerberos.
  • Extensive hands-on experience with Microsoft identity solutions (Entra ID, AD FS, Microsoft 365, MIM).
  • Proven experience in large-scale, multi-forest Active Directory and Entra ID architectures.
  • Advanced knowledge of identity protocols (SAML, OAuth 2.0, OpenID Connect, WS-Federation, CBA).
  • Strong experience with Entra B2B and B2C for external identity management.
  • Experience with Entra AD Connect, including custom synchronization rules.
  • Strong proficiency in PowerShell and Graph API for identity management automation.
  • Familiarity with Zero Trust architecture and identity-related security best practices.


Preferred Qualifications:
  • Relevant certifications, hold at least one or two of the following, aligned to seniority:
    • CIAM (Certified Identity and Access Manager) or CIGE (Certified Identity Governance Expert)
    • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
    • CyberArk Defender/Sentry/Guardian
    • Okta Certified Professional/Consultant/Administrator
    • Ping Identity Certified Professional
    • CompTIA Security+
  • Knowledge of identity-related compliance standards (e.g., NIST, FISMA, SOC, FedRamp).
  • Experience with Azure AD Verifiable Credentials and decentralized identity concepts.
  • Understanding of biometric authentication methods and their Azure AD integration.

Original Posting:
August 5, 2026

Pay Range:
Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

About Leidos Holding

Leidos Holding Careers

Joining Leidos Holding presents an unparalleled opportunity to advance one's career with a leader in innovation and technology. The company offers a plethora of job opportunities aimed at fostering professional growth and development in a diverse and inclusive environment.

Explore Career Opportunities

Leidos Holding is actively seeking skilled professionals who are passionate about leveraging their expertise to drive innovation and leadership in their fields. With a variety of open positions, Leidos Holding provides a platform for individuals to challenge themselves in a dynamic work environment.

Innovation and Professional Growth

At Leidos Holding, innovation is at the core of everything they do. Employees are encouraged to think creatively and push boundaries. The company supports this drive for innovation through comprehensive professional development and diversity training programs that are designed to enhance skills and foster leadership.

Commitment to Diversity and Inclusion

Leidos Holding is committed to creating a workplace where diversity is not only recognized but celebrated. With a culture that values and promotes diversity, Leidos Holding ensures that all team members have the opportunity to contribute, learn, and grow.

Internship Programs

For those starting their career, Leidos Holding offers internship programs that provide a robust foundation in the industry. Internships are a great way to develop essential skills, gain valuable work experience, and build professional networks.

Benefits and Culture

Employees at Leidos Holding enjoy a range of benefits designed to support their professional and personal lives. The company culture is built on a foundation of respect and integrity, providing a supportive and collaborative environment where every team member is valued.

Join the Team

Leidos Holding is hiring! Explore job opportunities that match your skills and interests. Leidos Holding looks for driven, curious, and innovative individuals to join their team. Positions are available across various disciplines and experience levels.

Stay Connected

Stay informed with the latest career tips, industry insights, and company news from Leidos Holding. Subscribe to receive updates and be the first to know about new job opportunities, company developments, and more.

Prepare for Your Interview

To prepare for an interview at Leidos Holding, candidates should familiarize themselves with the company's missions and values, update their resumes, and be ready to discuss how their background and skills align with the position they are applying for.

Networking and Career Advancement

Leidos Holding encourages its employees to engage in networking within the company to discover new opportunities for career advancement. The leadership team at Leidos Holding is dedicated to supporting employees in their career paths with ample opportunities for networking and growth.

Explore Leidos Holding Jobs and Careers

Discover the exciting career opportunities at Leidos Holding today. With a commitment to employee growth, innovation, and diversity, Leidos Holding is the perfect place to advance your career. Check out the latest job listings and find your perfect fit at Leidos Holding.

SEARCH LEIDOS HOLDING JOBS

READ CAREERS BLOG

Job Alert Emails

Customize your subscription to receive job alerts and insider tips tailored to your preferences from Leidos Holding. See what exciting and rewarding opportunities await in your professional journey.
Learn more about Leidos Holding

Similar Jobs

More Jobs at Leidos Holding

  • Java Developer
    $87K — $157K *
    Bethesda, MD 20817 (Montgomery County)
    Information Technology
    In-Person
  • Mid/Sr. System Administrator
    $92K — $166K *
    Annapolis Junction, MD 20701 (Howard County)
    Information Technology
    In-Person
  • Mid/Sr. System Administrator
    $92K — $166K *
    Annapolis, MD 21401 (Anne Arundel County)
    Information Technology
    In-Person
  • Senior Test Engineer
    $107K — $195K *
    Tucson, AZ 85705 (Pima County)
    Information Technology
    In-Person
  • Senior Test Engineer
    $107K — $195K *
    Gaithersburg, MD 20878 (Montgomery County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Lead Identity and Access Management (ICAM) Engineer jobs: