Identity Solution Architect SME
Listed on 2026-01-01
-
IT/Tech
Cybersecurity, Systems Engineer
Your growth matters to us - explore our career development opportunities.
BE EMPOWERED TO SUCCEEDConnect with others in our people-first culture and enhance our collective ingenuity.
SUPPORT YOUR WELLBEINGLearn how we’ll support you as you pursue a balanced, fulfilling life.
YOUR CANDIDATE JOURNEYDiscover what to expect during your journey as a candidate with us.
At a certain level of expertise, designing secure, scalable, and adaptive identity solutions becomes second nature. With extensive experience across identity governance, identity providers, and privileged access management, you not only solve complex problems but also anticipate and mitigate future vulnerabilities. That’s the hallmark of an Identity Solution Architect—an innovative leader ensuring access and identity infrastructures adhere to zero trust principles.
As an Identity Solution Architect within the Department of War, you'll craft solutions that strengthen national defense and safeguard mission‑critical assets while championing a zero trust strategy. Using your expertise, you'll design scalable architectures, govern access policies, and enable seamless integration across a vast IT ecosystem. You’ll develop solutions across Identity Providers (IdPs) to enhance authentication and SSO, Identity Governance and Administration (IGA) to enforce access controls, and Privileged Access Management (PAM) to protect privileged accounts from exploitation.
Your leadership will modernize identity strategies, support secure collaboration, and ensure resilience against cyber threats.
- Design and implement identity architectures aligned with zero trust principles.
- Secure identity life cycles across on‑prem, cloud, and hybrid environments.
- Create architecture products, design specs, and technical requirements for identity and access strategies.
- Evaluate and integrate technologies for IdPs, IGA, and PAM systems like PING, SailPoint, Cyber Ark, and Beyond Trust.
- Transform legacy identity systems into scalable, secure, and efficient platforms.
- Mentor and develop engineers, fostering innovation and technical excellence.
- 5+ years of experience designing and deploying Identity and Access Management systems.
- Experience designing, implementing, and integrating identity federation, access management, directory, and policy‑based authorization solutions using protocols such as SAML, OAuth 2.0, and OIDC across on‑premises, cloud, and hybrid environments.
- Experience with IAM concepts such as Role‑Based Access Control (RBAC), Attribute‑Based Access Control (ABAC), Zero Trust, Federation, and single sign‑on (SSO).
- Experience with IAM protocols such as SAML, OAuth, or OIDC.
- TS/SCI clearance.
- Security+ Certification.
- Experience with Ping Federate or similar for identity federation and SSO, including SAML and OIDC integrations, token mapping, and IdP configuration supporting cloud identity architectures and zero trust security models.
- Experience with identity governance processes and entitlement management programs.
- Knowledge of system, network, application, and security architectures and cybersecurity solutions.
- Ability to collaborate with professional confidence and credibility to effectively engage and interact with technologists and leaders across the enterprise.
- Ability to quickly comprehend complex problems, draw logical conclusions, make sound decisions, develop solutions, and drive closure.
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well‑being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work‑life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full‑time and part‑time employees working at least 20 hours a week on a regular basis are eligible to participate…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).