ICAM Engineer

Booz Allen Hamilton•Reston, VA
•Onsite

About The Position

As an ICAM Engineer, you’ll integrate commercial cloud environments with agency enterprise services and identity architectures in secure, regulated, and mission-focused environments. You’ll design, deploy, secure, and operate OCI solutions while supporting identity federation, access management, Zero Trust, and cloud onboarding. You’ll work with Oracle personnel, government stakeholders, security teams, and technical delivery teams to implement secure identity solutions, support authorization activities, and transition cloud capabilities into reliable operations.

Requirements

  • 8+ years of experience in identity and access management, cloud security engineering, or cybersecurity
  • Experience integrating commercial cloud environments with agency-specific enterprise services and identity architectures
  • Experience designing, deploying, securing, and operating OCI solutions
  • Experience integrating applications and cloud services with enterprise IAM platforms such as GEOAxIS
  • Experience implementing federation, SSO, MFA, identity lifecycle management, RBAC, ABAC, and least-privilege access
  • Experience with SAML 2.0, OpenID Connect, OAuth 2.0, SCIM, LDAP, Active Directory, token claims, attribute mapping, certificates, and metadata exchange
  • Experience applying Zero Trust principles and supporting secure identity designs, control implementation, testing, and operating procedures
  • Knowledge of RMF, ICD 503, and authorization processes
  • Active TS/SCI clearance; willingness to take a polygraph exam
  • Bachelor’s degree

Nice To Haves

  • Experience supporting security assessments, authorization packages, control validation, or remediation tracking
  • Experience integrating cloud and identity logs with enterprise monitoring or SIEM platforms
  • Experience with Terraform, OCI Resource Manager, or comparable infrastructure-as-code and automated configuration tools
  • Experience with Ping Identity, Microsoft Entra ID, Okta, or ADFS
  • Experience supporting ICAM or cloud onboarding in classified, regulated, or other mission environments
  • Possession of excellent stakeholder communication and troubleshooting skills
  • Architecture, Security, Networking, or Cloud Operations Associate- or Professional-level OCI Certifications

Responsibilities

  • Design, deploy, secure, and operate OCI solutions involving identity, audit logging, network security, secrets and key management, and privileged access.
  • Integrate cloud applications and services with agency enterprise IAM platforms, including NGA GEOAxIS or comparable capabilities.
  • Implement federation, SSO, MFA, identity lifecycle provisioning and deprovisioning, RBAC, ABAC, and least-privilege access models.
  • Configure and troubleshoot SAML 2.0, OpenID Connect, OAuth 2.0, SCIM, LDAP, and Active Directory integrations.
  • Manage token claims, attribute mapping, certificates, metadata exchange, and authentication-flow troubleshooting.
  • Apply Zero Trust principles and develop secure identity designs, control implementations, test evidence, and operating procedures.
  • Support RMF, ICD 503, and NGA A&A activities, including security-control implementation and assessment evidence.
  • Coordinate solution architectures, resolve technical issues, and communicate identity, security, and operational risks to stakeholders.

Benefits

  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service