Privileged Account Management Architect
Alabama, USA
Listed on 2026-01-05
-
Engineering
Cybersecurity, Systems Engineer -
IT/Tech
Cybersecurity, Systems Engineer
Overview
Your growth matters to us - explore our career development opportunities.
As an Identity and Access Management (IAM) specialist, you have the skills and experience to keep hackers from taking data and breaking processes. We’re looking for someone like you to help our clients meet their missions without disruption.
As an IAM engineer at Booz Allen, you’ll play a critical role in the world of IAM and Zero Trust. In this role, you’ll support large-scale IAM projects for our clients. You’ll interface with stakeholders and engineering teams to delve into the details and dependencies of critical processes and users’ roles within them.
You’ll analyze the identity lifecycle, articulate access requirements and define enterprise identity records. You’ll use your experience in IAM to design, deploy, and support systems that verify appropriate user privileges and manage credentials for accessing our clients’ most valuable assets. From single sign-on to privileged access systems, you’ll have the chance to implement enterprise-class solutions and stop adversaries in their tracks.
Join us. The world can’t wait.
ResponsibilitiesSupport large-scale IAM projects for clients. Interface with stakeholders and engineering teams to understand dependencies of critical processes and user roles. Analyze the identity lifecycle, define access requirements, and design/implement systems that verify privileges and manage credentials across enterprise assets. Implement solutions spanning single sign-on, privileged access, and related IAM capabilities.
Qualifications- 5+ years of experience with IAM
- Experience with privileged access management (PAM) solutions supporting secrets management, endpoint privilege elevation, and server-level session control, with a focus on compliance requirements such as NIST, CIS, and HIPAA, and securing access in cloud-native and hybrid infrastructures
- Experience implementing key PAM capabilities such as credential vaulting, just-in-time (JIT) access provisioning, session monitoring and recording, and automated credential rotation, to minimize attack surface and support least privilege access models
- Experience with ICAM technologies such as SSO, MFA, PAM, IGA, AD, or LDAP
- Experience with federation technologies such as SAML 2.0, OAuth 2.0, and OpenID Connect
- Knowledge of PAM concepts, including just-enough access and behavioral analytics
- Knowledge of service account lifecycle management, privileged behavior analytics, managing credentials, VPN-less access to Windows, Linux, and UNIX servers
- Active TS/SCI clearance; willingness to take a polygraph exam
- HS diploma or GED
- Experience architecting and deploying Delinea Secret Server, Cyber Ark, or Beyond Trust PAM with a focus on vault configuration, role-based access controls, automated password rotation, API integrations for seamless workflow automation, and designing high availability (HA) architectures for mission-critical environments
- Experience with identity governance processes and entitlement management programs
- Knowledge of system, network, application, and security architectures, cybersecurity solutions, key cyber processes such as incident handling, risk measurement, and change management, and key cyber threats
- Ability to collaborate with professional confidence and credibility to effectively engage and interact with technologists and leaders across the enterprise
- Ability to quickly comprehend complex problems, draw logical conclusions, make sound decisions, develop solutions, and drive closure
- Excellent problem-solving skills
- Excellent verbal and written communication skills
- TS/SCI clearance with a polygraph
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).