About The Position

CACI is seeking an experienced Azure ICAM Engineer to be part of a dynamic and high performing team integrating and transitioning a government customer to the Microsoft Azure platform. As an Identify and Access Management engineer you will provide technical guidance to program manager and key stakeholders on enterprise scale projects and solutions. The ICAM Engineer is responsible for implementing the solutions designed by the ICAM architect. This engineer will be a key member on a team delivering next generation ICAM services. In this role the Engineer will assist with defining, developing, and implementing an ICAM solution that reduces risk and provides resiliency, while accelerating business initiatives. This ICAM engineer will be working collaboratively with Azure Active Directory, Network and Security Architects. Additionally, the engineer will coordinate with vendors to evaluate, test, and deploy new technology solutions.

Requirements

  • Ability to obtain Department of Homeland Security (DHS) Entry On Duty (EOD) - Active EOD preferred
  • BA/BS + 7 years of applicable experience; AA + 12 years’ applicable experience, MA + 7 or 16 years experience no degree
  • Experience and knowledge in building out SailPoint IDAM solutions
  • Experience in the Identity space with a background in Active Directory or similar LDAP stores
  • Strong knowledge of HSPD12 and implementation of government smart card authentication
  • Expert knowledge of authentication with SAML, OAuth, OpenID, WSO2, and Kerberos
  • Prior experience in providing RBAC solutions for clouds solutions (e.g. Azure)
  • Strong scripting and automation abilities including PowerShell
  • Understanding of Microsoft Azure PIM, Access Review, Service Principles, Managed Identities and ABAC
  • Strong knowledge of enterprise PKI integration with SCEP and ACME clients
  • Experience creating technical architecture documentation
  • Strong communication and written skills

Nice To Haves

  • ITILv3 or v4 Foundation’s certification
  • Previous DHS or DoD experience
  • CompTIA A+, or Network+, or Security+
  • Experience with Azure Cloud, scripting, and automation

Responsibilities

  • Implement ICAM solutions to support PIV, Certificate Base Authentication, FIDO 2.
  • Engineer and build a secure and robust enterprise identify and access management solution
  • Responsible for installing, customizing, configuration and supporting SailPoint Identity and Access Management tool and processes. This includes automated provisioning/deprovisioning to downstream applications.
  • Facilitate and support ICAM integration to business applications and third parties, including Single Sign On enablement and management
  • Collaborate with customer to define organization constructs/naming conventions and user access roles
  • Assist with the development of process and workflows to support ICAM operation activities such as user onboarding, user lifecycle management and privilege access management
  • Provide assistance with the integration of an Enterprise PKI solution.
  • Engage with, and advise stakeholders within the business on Identity and Access Management best practices
  • Define, improve, and support Active Directory, Azure Active Directory and Privileged Access Management within the organization
  • Identify areas for delivery automated solutions (e.g. onboarding/offboarding) and maturation of existing processes by leveraging scripting

Benefits

  • flexible time off benefit
  • robust learning resources
  • comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service