Senior ICAM Engineer

Trinity Global ConsultingChantilly, VA

About The Position

Implement ICAM modernization designs for PEP/PIP, EMS, and RPMS components, ensuring alignment with architectural patterns and modernization goals, including transition from the legacy PDP to JBlocks. Develop and integrate microservices supporting identity, attributes, authorization, resource registration, and policy distribution. Collaborate with the Architect to translate high-level designs into detailed engineering tasks, technical artifacts, and system interfaces. Support the Technical Lead by providing technical input during Program Increment (PI) planning, backlog refinement, work estimation, and risk identification. Develop new PEP/PIP patterns, including enforcement endpoints, policy decision integrations, and attribute retrieval mechanisms. Enhance EMS and RPMS services by implementing automation for resource/role lifecycle management, attribute orchestration, and policy ingestion workflows. Coordinate with DevOps engineers on CI/CD, containerization, infrastructure automation, and deployment to Kubernetes or the government's currently installed application platform. Troubleshoot complex identity, authentication, authorization, and policy-related issues across legacy and modernized components. Produce engineering documentation, including design specifications, data flow diagrams, configuration standards, and interface definitions. Ensure modernization activities reduce operational overhead and improve system reliability, maintainability, and observability. Participate in integration testing, operational readiness testing, and deployment validation across multiple environments and security domains. Mentor junior engineers and promote best practices in secure coding, microservices development, and ICAM integration.

Requirements

  • Bachelor's degree in a Science, Technology, Engineering, and Mathematics (STEM) field and 8+ years of relevant experience, or equivalent experience.
  • Hands-on experience developing or integrating systems related to identity, authentication, authorization, or enterprise security.
  • Experience implementing distributed systems or microservices architectures on modern platforms.
  • Experience supporting Agile teams and contributing to iterative delivery of new capabilities.
  • Ability to interpret architectural guidance and convert designs into high-quality, maintainable engineering solutions.
  • Ability to obtain CompTIA Security+ within 90 days of hire.
  • Active Top Secret security clearance upon hire with SCI eligibility.
  • U.S. citizenship.

Nice To Haves

  • Experience with Kubernetes or OpenShift for deployment and container orchestration.
  • Programming experience with Java and/or Python.
  • Familiarity with GitOps tools.
  • Experience with Amazon Web Services (AWS), Linux, or containerization technologies.
  • Knowledge of identity and access standards: X.509, SAML, OAuth2, OIDC, LDAP.
  • Experience with Oracle products or similar ICAM vendor technologies.
  • Experience implementing ABAC/RBAC models, policy-based access controls, and Zero Trust–aligned authorization patterns.
  • Experience supporting Intelligence Community (IC) or Department of War (DoW) systems, particularly authorization and identity-centric services.

Responsibilities

  • Implement ICAM modernization designs for PEP/PIP, EMS, and RPMS components, ensuring alignment with architectural patterns and modernization goals, including transition from the legacy PDP to JBlocks.
  • Develop and integrate microservices supporting identity, attributes, authorization, resource registration, and policy distribution.
  • Collaborate with the Architect to translate high-level designs into detailed engineering tasks, technical artifacts, and system interfaces.
  • Support the Technical Lead by providing technical input during Program Increment (PI) planning, backlog refinement, work estimation, and risk identification.
  • Develop new PEP/PIP patterns, including enforcement endpoints, policy decision integrations, and attribute retrieval mechanisms.
  • Enhance EMS and RPMS services by implementing automation for resource/role lifecycle management, attribute orchestration, and policy ingestion workflows.
  • Coordinate with DevOps engineers on CI/CD, containerization, infrastructure automation, and deployment to Kubernetes or the government's currently installed application platform.
  • Troubleshoot complex identity, authentication, authorization, and policy-related issues across legacy and modernized components.
  • Produce engineering documentation, including design specifications, data flow diagrams, configuration standards, and interface definitions.
  • Ensure modernization activities reduce operational overhead and improve system reliability, maintainability, and observability.
  • Participate in integration testing, operational readiness testing, and deployment validation across multiple environments and security domains.
  • Mentor junior engineers and promote best practices in secure coding, microservices development, and ICAM integration.

Benefits

  • Medical, Dental & Vision Coverage – Coverage for eligible employees and family through CareFirst and VSP.
  • Paid Time Off – PTO granted in accordance with contract requirements.
  • Paid Holidays – 11 federal holidays observed annually.
  • Disability & Life Insurance – Short-term/long-term disability, life insurance, and AD&D coverage included.
  • 401(k) Retirement Plan – Competitive plan managed through Ameritas.
  • Professional Training – Formal training provided as required, with additional learning opportunities based on role.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service