CACI International Inc Logo

CACI International Inc

IAM Architect

Posted One Month Ago
Be an Early Applicant
Remote
Hiring Remotely in USA
115K-252K Annually
Expert/Leader
Remote
Hiring Remotely in USA
115K-252K Annually
Expert/Leader
Designs enterprise IAM solutions for a government customer using SailPoint IdentityIQ, Azure Entra ID, modern authentication protocols, PKI, PIV, FIDO2, RBAC, and privileged access management. Provides technical leadership, architecture guidance, stakeholder advising, and integration support for applications and third parties. Defines access roles, identity lifecycle workflows, and automation opportunities while collaborating with Azure, network, security, and vendor teams. Supports risk reduction, resiliency, certificate lifecycle management, and next-generation IAM service delivery.
The summary above was generated by AI
Job Title: IAM Architect

Job Category: Information Technology

Time Type: Full time

Minimum Clearance Required to Start: None

Employee Type: Regular

Percentage of Travel Required: None

Type of Travel: None

* * *

The Opportunity:
CACI is seeking a skilled SailPoint Identity and Access Management (IAM) Architect to join a dynamic, high-performing team. This team is responsible for operating and maintaining an IdentityIQ platform for a government customer. As an IAM architect, you will provide technical leadership and guidance to program managers and key stakeholders, focusing on enterprise-level projects and solutions.
In this capacity, the IAM Architect will design solutions that are to be executed by the IAM engineer team. The Architect plays a pivotal role on the team, helping to deliver next-generation IAM services. The responsibilities include defining IAM solutions aimed at reducing organizational risk, increasing resiliency, and supporting the acceleration of business initiatives.
The IAM Architect will work collaboratively alongside Microsoft Azure, Network, and Security Architects to ensure comprehensive integration and alignment across platforms. Additionally, the Architect will coordinate with vendors to evaluate, test, and implement new technology solutions to enhance the IAM environment.

Responsibilities:
• Design IAM solutions to support PIV/Certificate Base Authentication, FIDO 2.
•  Facilitate and support IAM integration into business applications and third parties, including Single Sign On enablement using modern protocols (SAML, OAuth, Open ID Connect)
• Collaborate with customers to define organization constructs/naming conventions and user access roles
•  Provide guidance with the development of process and workflows to support IAM operation activities such as user onboarding, user lifecycle management and privilege access management
•  Engage with, and advise stakeholders within the business on Identity and Access Management best practices
• Define, improve, and support Azure Entra ID, Certificate Lifecycle Management and Privileged Access Management within the organization
•  Identify areas for delivery of automated solutions (e.g. onboarding/offboarding) and maturation of existing process.

Qualifications:
Required: 
Ability to obtain Department of Homeland Security (DHS) Entry On Duty (EOD) - Active EOD preferred
•  BA/BS + 10 years of applicable experience; AA + 15 years’ applicable experience
•  Experience in the Identity space with a background in identity management tools
• Strong knowledge of HSPD12 and implementation of government smart card authentication
•  Expert knowledge of authentication with SAML, OAuth, OpenID, WSO2, and Kerberos
•  Prior experience in providing RBAC solutions for clouds solutions (e.g. Azure)
•  Strong scripting and automation abilities including PowerShell
•  Understanding of Microsoft Azure PIM, Access Reviews, Service Principles, Managed Identities and ABAC
•  Strong knowledge of enterprise PKI integration with SCEP and ACME clients
•   Experience in creating technical architecture documentation
•   Strong communication and written skills
.
Desired:
ITILv3 or v4 Foundation’s certification
•  Previous DHS or DoD experience
•  Microsoft Azure Fundamentals
•   CompTIA A+, or Network+, or Security+
Experience with Azure Cloud, scripting, and automation

-

What You Can Expect:

 A culture of integrity.

At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust.

CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.

A focus on continuous growth.

Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.

Pay Range:

There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.

Since this position can be worked in more than one location, the range shown is the national average for the position.

The proposed salary range for this position is:

$114,600-$252,100

CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Similar Jobs

2 Days Ago
Remote
United States
Senior level
Senior level
Information Technology • Consulting • Infrastructure as a Service (IaaS)
Lead enterprise non-human identity and IAM architecture engagements, including NHI discovery, lifecycle architecture, governance, integrations, security diagrams, platform evaluations, and SailPoint implementations. Lead design sessions, proofs of concept, architecture reviews, client communications, roadmap development, and knowledge transfer. Apply expertise across workforce, customer, and non-human identities while addressing machine identities, service accounts, API credentials, workloads, bots, and AI agents.
Top Skills: AWSAzureBeyondtrustC1Certificate Lifecycle ManagementConductoroneCyberarkDelineaGCPHashicorp VaultIamMfaMicrosoft Entra IdNon-Human Identity (Nhi)OasisOktaPing IdentitySailpoint Identity Security CloudSailpoint IdentityiqSaviyntSecrets ManagementVezaZero Trust
17 Days Ago
Remote
US
115K-145K Annually
Mid level
115K-145K Annually
Mid level
Greentech • Social Impact • Industrial
Architects, implements, administers, and continuously improves identity and access management controls across enterprise applications and infrastructure. Manages provisioning, deprovisioning, entitlement reviews, role-based access, authentication, MFA, Active Directory, and identity platforms. Partners with HR, IT, audit, compliance, vendors, and business stakeholders to support employee lifecycle controls, resolve IAM incidents, maintain regulatory compliance, document processes, and improve security architecture. Provides operational guidance, troubleshooting, training, and support for IAM technologies and security controls.
Top Skills: Active DirectoryAttribute-Based Access Control (Abac)Azure AdGrcIdentity Management (Idm)JavaScriptJSONMicrosoft EntraMulti-Factor Authentication (Mfa)PowershellRest ApisRole-Based Access Control (Rbac)Sailpoint IdentitynowSoap ApisSsoTypescript
One Month Ago
Remote
USA
Senior level
Senior level
Information Technology • Consulting
Designs, implements, and maintains identity and access management solutions, with a focus on Saviynt implementations. Develops IAM policies and standards, integrates access controls with enterprise systems, conducts risk assessments and security audits, advises stakeholders, evaluates IAM technologies, and leads implementation projects. Serves as an IAM subject matter expert while supporting compliance, identity governance, authentication, authorization, and access management initiatives.
Top Skills: Active DirectoryForgerockIamLdapMfaMicrosoft Identity ManagerOauthOktaPing IdentityPkiRbacSAMLSaviyntSso

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account