ICAM Specialist - Remote
Fairfax, Fairfax County, Virginia, 22032, USA
Listed on 2026-01-02
-
IT/Tech
Cybersecurity, Data Security
Req : RQ211397
Type of Requisition: Regular
Clearance Level Must Be Able to Obtain: None
Public Trust/Other
Required:
BI Full 6C (T4)
Job Family: IT Infrastructure and Operations
Skills:
Access Management, Identity Governance, Secure Authentication
Experience:
10+ years of related experience
Job DescriptionAdvance how our customers operate while you advance your career. Join GDIT as an Identity, Credential, and Access Management (ICAM) Specialist and build an impactful career in enterprise IT, collaborating with people who are driven and resourceful like you.
The Case Management Modernization (CMM) Program is an initiative to support the Administrative Office of the (AO) US Courts develop a modern cloud-based solution to support all federal courts across the United States which are grouped into three types, namely Appellate, District, and Bankruptcy. This modernized case management system will eventually replace the current Case Management and Electronic Case Filing (CM/ECF) system.
The ICAM Specialist supports the CMM Program by designing, implementing, and managing secure authentication and authorization frameworks across modernized cloud-based applications. This role ensures compliance with federal identity governance, FedRAMP, and Zero Trust Architecture (ZTA) principles within an AWS environment. The ICAM Specialist collaborates with architecture, security, and Dev Sec Ops teams to ensure access control, identity federation, and credential management are integrated seamlessly across all layers of the CMM application ecosystem.
MeaningfulWork and Personal Impact
As an ICAM Specialist
, the work you’ll do at GDIT will be impactful to the mission of the Administrative Office (AO) of the US Courts. You will play a crucial role in the following areas:
- Design and maintain the ICAM architecture for identity, access, and authentication management across AWS-hosted CMM applications
- Implement federated identity and single sign-on (SSO) solutions using modern protocols (SAML, OAuth
2.0, OIDC) - Integrate Multi-Factor Authentication (MFA) and role-based access control (RBAC) mechanisms within enterprise systems
- Collaborate with Cloud and Security Architects to enforce Zero Trust Architecture (ZTA) across microservices and APIs
- Configure and maintain directory services and identity providers (e.g., AWS Cognito, Azure AD, Ping, Okta)
- Support ICAM compliance assessments
, ensuring adherence to FISMA, NIST 800-63, and FedRAMP security controls - Develop and document identity lifecycle management processes — provisioning, deprovisioning, and access reviews
- Conduct access audits, user entitlement reviews, and anomaly detection to ensure least-privilege compliance
- Provide subject matter expertise in identity federation, PKI, certificate management
, and secure API authorization - Collaborate with Dev Sec Ops teams to embed ICAM policies within CI/CD pipelines and Infrastructure-as-Code (IaC) templates
- IAM & Federation: AWS Cognito, Azure AD, Okta, Keycloak, Ping Federate
- Access & Compliance: SailPoint, Cyber Ark, Hashi Corp Vault
- Cloud: AWS IAM, KMS, Cloud Trail, Lambda
- Protocols: SAML, OAuth
2.0, OIDC, SCIM - Monitoring & Audit: ELK Stack, Splunk, Datadog, Power BI
- Jira, Confluence, SharePoint, MS Teams
- Technical Training, Certificate, or Degree required;
Bachelor's Degree in Computer Science, Computer Programming, Computer Engineering or relevant computer-based major strongly preferred - 10+ years of related experience in information systems, with 8+ years of that experience in identity and access management, including 5+ years in cloud-based federal environments
- Strong knowledge of identity federation protocols (SAML, OAuth
2.0, OIDC, SCIM) and modern authentication flows - Hands‑on experience with AWS Cognito, Azure AD, Okta, Keycloak or Ping Federate for SSO and MFA implementations
- Expertise with RBAC/ABAC frameworks
, policy-based access control, and least‑privilege enforcement - Familiarity with NIST 800-63, FISMA, FedRAMP, and ZTA standards and compliance frameworks
- Experience implementing ICAM solutions in Agile and Dev Sec Ops environments
- Working knowledge of PKI,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).