
Cloud ICAM Engineer
Leidos
full-time
Posted on:
Location Type: Remote
Location: Remote • Virginia • 🇺🇸 United States
Visit company websiteSalary
💰 $107,900 - $195,050 per year
Job Level
SeniorLead
Tech Stack
AWSAzureCloudCyber SecurityPythonTerraformVault
About the role
- Design, implement, and maintain ICAM solutions across AWS and Azure cloud platforms
- Integrate cloud identity services with on-premises systems such as Active Directory and Azure AD
- Develop and enforce role-based access control (RBAC), attribute-based access control (ABAC), and policy-based access models
- Implement and manage identity federation using SAML, OAuth2, and OpenID Connect
- Automate identity lifecycle processes including provisioning, de-provisioning, and access reviews
- Securely manage credentials, secrets, and tokens using tools like AWS Secrets Manager and Azure Key Vault
- Support the implementation of Zero Trust Architecture in accordance with NIST standards
- Conduct access audits, generate compliance reports, and support FISMA, FedRAMP, and DoD RMF requirements
- Collaborate with cybersecurity, cloud engineering, and application teams to ensure secure and seamless access across systems
- Maintain documentation, diagrams, and standard operating procedures for ICAM systems
- Support cross-functional coordination across engineering, cybersecurity, and program management teams
- Promote continuous improvement through feedback loops and process refinement
- Ensure alignment with USCG mission priorities and Leidos delivery standards
Requirements
- Bachelor’s degree in a related field (e.g., Computer Science, Information Systems, Business)
- 8 + years of experience in ICAM or cloud security engineering
- Hands-on experience with AWS IAM, Azure AD, and cloud-native access control services
- Proficiency in identity federation protocols and integration with enterprise identity providers
- Experience with scripting and automation (e.g., PowerShell, Python, Terraform)
- Familiarity with federal cybersecurity frameworks including NIST 800-53, 800-63, and 800-207
- Strong understanding of Zero Trust principles and cloud security best practices
- Excellent facilitation, communication, and stakeholder engagement skills
- Ability to work in a fast-paced, mission-driven environment
- Certifications such as AWS Security Specialty, Microsoft Certified: Identity and Access Administrator, or CISSP
- Must be a U.S. Citizen have a Public Trust and be able to obtain a Secret Clearance.
Benefits
- Health and Wellness programs
- Income Protection
- Paid Leave
- Retirement
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
ICAM solutionsAWS IAMAzure ADrole-based access controlattribute-based access controlpolicy-based access modelsidentity federationSAMLOAuth2OpenID Connect
Soft skills
facilitationcommunicationstakeholder engagementcollaborationcontinuous improvementprocess refinementability to work in fast-paced environment
Certifications
AWS Security SpecialtyMicrosoft Certified: Identity and Access AdministratorCISSP