LED FastStart-posted 7 days ago
Full-time • Mid Level
Remote • Louisiana, MO

Advance how our customers operate while you advance your career. Join GDIT as an Identity, Credential, and Access Management (ICAM) Specialist and build an impactful career in enterprise IT, collaborating with people who are driven and resourceful like you. The Case Management Modernization (CMM) Program is an initiative to support the Administrative Office of the (AO) US Courts develop a modern cloud-based solution to support all federal courts across the United States which are grouped into three types, namely Appellate, District, and Bankruptcy. This modernized case management system will eventually replace the current Case Management and Electronic Case Filing (CM/ECF) system. The ICAM Specialist supports the CMM Program by designing, implementing, and managing secure authentication and authorization frameworks across modernized cloud-based applications. This role ensures compliance with federal identity governance, FedRAMP, and Zero Trust Architecture (ZTA) principles within an AWS environment. The ICAM Specialist collaborates with architecture, security, and DevSecOps teams to ensure access control, identity federation, and credential management are integrated seamlessly across all layers of the CMM application ecosystem. MEANINGFUL WORK AND PERSONAL IMPACT: As an ICAM Specialist, the work you’ll do at GDIT will be impactful to the mission of the Administrative Office (AO) of the US Courts. You will play a crucial role in the following areas:

  • Design and maintain the ICAM architecture for identity, access, and authentication management across AWS-hosted CMM applications
  • Implement federated identity and single sign-on (SSO) solutions using modern protocols (SAML, OAuth2.0, OIDC)
  • Integrate Multi-Factor Authentication (MFA) and role-based access control (RBAC) mechanisms within enterprise systems
  • Collaborate with Cloud and Security Architects to enforce Zero Trust Architecture (ZTA) across microservices and APIs
  • Configure and maintain directory services and identity providers (e.g., AWS Cognito, Azure AD, Ping, Okta)
  • Support ICAM compliance assessments, ensuring adherence to FISMA, NIST 800-63, and FedRAMP security controls
  • Develop and document identity lifecycle management processes—provisioning, deprovisioning, and access reviews
  • Conduct access audits, user entitlement reviews, and anomaly detection to ensure least-privilege compliance
  • Provide subject matter expertise in identity federation, PKI, certificate management, and secure API authorization
  • Collaborate with DevSecOps teams to embed ICAM policies within CI/CD pipelines and Infrastructure-as-Code (IaC) templates
  • Technical Training, Certificate, or Degree required; Bachelor's Degree in Computer Science, Computer Programming, Computer Engineering or relevant computer-based major strongly preferred
  • 10+ years of related experience in information systems, with 8+ years of that experience in identity and access management, including 5+ years in cloud-based federal environments
  • Strong knowledge of identity federation protocols (SAML, OAuth2.0, OIDC, SCIM) and modern authentication flows
  • Hands-on experience with AWS Cognito, Azure AD, Okta, Keycloak or PingFederate for SSO and MFA implementations
  • Expertise with RBAC/ABAC frameworks, policy-based access control, and least-privilege enforcement
  • Familiarity with NIST 800-63, FISMA, FedRAMP, and ZTA standards and compliance frameworks
  • Experience implementing ICAM solutions in Agile and DevSecOps environments
  • Working knowledge of PKI, digital certificates, and encryption technologies.
  • Strong analytical and troubleshooting skills with ability to resolve identity integration issues
  • Bachelor’s or Master’s degree in Cybersecurity, Information Systems, or related discipline
  • Excellent presentation and communication skills
  • Consultant mindset with the ability to work with high level customer stakeholders and build excellent customer relationships
  • Experience identifying and applying industry tools, solutions, methods best practices, and emerging technologies
  • Strong analytical skills and problem-solving skills with the ability to formulate and communicate recommendations for improvement
  • Demonstrated ability to work effectively, independently, and as part of a team
  • Certified Information Systems Security Professional (CISSP)
  • Security Clearance Level: Ability to pass a background check to obtain and maintain a position of Public Trust with the Administrative Office of the US Courts
  • Must be a US Person (Green Card Holder, US Permanent Resident Alien, Refugee, Asylee, US Citizen)
  • Experience supporting federal digital modernization or judiciary IT programs.
  • Knowledge of AWS IAM, KMS, CloudTrail, and integration of ICAM with containerized workloads (ECS, EKS)
  • Familiarity with Zero Trust Architecture and microsegmentation principles
  • Exposure to API gateway authentication (Kong, Apigee, AWS API Gateway)
  • Experience integrating identity governance tools (SailPoint, Saviynt)
  • AWS Certified Security – Specialty or Azure Identity & Access Administrator – strongly preferred
  • Certified Identity and Access Manager (CIAM) or Certified Identity Professional (CIP) – preferred
  • SAFe Practitioner (SPC/SSM) – preferred
  • Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match.
  • To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.
  • GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year.
  • Paid leave and paid holidays are prorated based on the employee’s date of hire.
  • The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees.
  • To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available.
  • We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service