Identity Governance and Administration (IGA) Engineer

platinum technologies • United State
Relocation
Apply
AI Summary

Join Platinum Technologies as an Identity Governance and Administration (IGA) Engineer to lead the implementation and configuration of SailPoint across the NIPR, SIPR, and Top-Secret networks. You will design, deploy, and manage SailPoint IdentityNow (or IIQ) to automate the full identity lifecycle. This role requires expertise in SailPoint, Attribute-Based Access Control (ABAC), and DoD Identity, Credential, and Access Management (ICAM) reference designs.

Key Highlights
Implement SailPoint across NIPR, SIPR, and Top-Secret networks
Design and deploy SailPoint IdentityNow (or IIQ)
Manage SailPoint to automate the full identity lifecycle
Technical Skills Required
SailPoint Attribute-Based Access Control (ABAC) DoD Identity, Credential, and Access Management (ICAM) reference designs Active Directory LDAP Azure Active Directory (Entra ID) REST SCIM SOAP
Benefits & Perks
Competitive sign-on bonus
Relocation assistance
Active Top-Secret clearance with SCI eligibility

Job Description


Who We Are.

Platinum Technologies is a Northern Virginia based integrated solutions firm that specializes in Cybersecurity, Cloud and Digital Services to the Public Sector. Our team solves hard problems and helps our Mission Partners achieve their goals. If you are self-motivated, possess demonstrated learning agility, and are passionate about delivering high-quality work products – we want to hear from you.

We lead with technical expertise, but that is just the tip of the iceberg – the ‘Why’ matters. At Platinum, we don’t hire people to do a job. We provide professional and leadership development to complement our self-motivated domain experts. Our teammates are dot-connecting leaders that operate in a mutually accountable environment to deliver thought leadership, expert technical analysis, and quality execution for our clients

You.

Platinum Technologies is seeking a highly skilled Identity Governance and Administration (IGA) Engineer to join the Zero Trust execution team at U.S. Special Operations Command (USSOCOM). In a Zero Trust architecture, identity is the new perimeter, and this role is responsible for building and maintaining the "source of truth" that governs access to the Command's most critical data.

As the IGA Engineer, you will lead the implementation and configuration of SailPoint across the NIPR, SIPR, and Top-Secret networks. You will move beyond basic account provisioning to implement a sophisticated Attribute-Based Access Control (ABAC) model. You will be responsible for defining and managing the lifecycle of "Trust Attributes" (such as clearance level, training status, and job role) that are consumed by downstream enforcement tools like Microsoft Purview and Kiteworks. Your work ensures that when a user’s status changes, their access to sensitive data is updated instantly—even in air-gapped environments.

We are offering a competitive sign-on bonus and relocation assistance for qualified candidates.

Located at MacDill AFB in Tampa, Florida. Candidates must hold an active TS/SCI clearance.

Responsibilities

  • SailPoint Architecture & Configuration: Lead the design, deployment, and ongoing management of SailPoint IdentityNow (or IIQ) to automate the full identity lifecycle (Joiner, Mover, Leaver) across hybrid and on-premises environments
  • ABAC Attribute Management: Define and manage the schema for "Trust Attributes" (e.g., Clearance, COI, Project Codes) within SailPoint, ensuring they align with the NIST 8112 metadata standard for consumption by policy decision points
  • Air-Gapped Identity Operations: Manage the offline instance of SailPoint on the Top-Secret network, developing the workflows to import "Attribute Manifests" and ensure that identity data remains synchronized with the low-side source of truth
  • Access Certification: Configure and execute automated access certification campaigns for critical data repositories and privileged roles, ensuring compliance with DoD audit requirements
  • Role Modeling: Work with mission owners to define Technical Roles and Business Roles within SailPoint, replacing broad, static Active Directory groups with granular, policy-driven access roles


Qualifications

  • Minimum Clearance Required to Start: Active Top-Secret clearance with SCI eligibility


Required Experience & Skills ("Must-Haves")

  • SailPoint Expertise: Extensive (5+ years) hands-on experience designing, implementing, and administering SailPoint (IdentityNow or IdentityIQ) in a large enterprise environment
  • Identity Lifecycle Management: Deep understanding of the Joiner-Mover-Leaver (JML) process and experience automating provisioning/deprovisioning workflows connected to HR systems and Active Directory
  • Directory Services: Strong knowledge of Active Directory, LDAP, and Azure Active Directory (Entra ID) structures and management
  • Governance Principles: Proven experience with Role-Based Access Control (RBAC) modeling, Separation of Duties (SoD) policy creation, and access certification campaigns


Journeyman

  • Education: BA/BS or MA/MS
  • Years Exp: 3-10
  • A Journeyman labor category has 3 to 10 years of experience and a BA/BS or MA/MS degree. A Journeyman labor category typically performs all functional duties independently


Senior

  • Education: MA/MS
  • Years: 10+
  • A Senior labor category has over 10 years of experience and a MA/MS degree. A Senior labor category typically works on high-visibility or mission critical aspects of a given program and performs all functional duties independently


A Senior labor category may oversee the efforts of less senior staff and/or be responsible for the efforts of all staff assigned to a specific job.

Preferred Experience & Skills ("Nice-to-Haves")

  • Experience implementing Attribute-Based Access Control (ABAC) strategies
  • Familiarity with DoD Identity, Credential, and Access Management (ICAM) reference designs
  • Knowledge of integration protocols such as REST, SCIM, and SOAP
  • Experience supporting USSOCOM or other DoD agencies


Certifications

  • Required: CompTIA Security+ CE (or higher) to meet DoD 8570 IAT Level II requirements
  • Preferred: SailPoint Certified IdentityNow Engineer or SailPoint Certified IdentityIQ Engineer
  • Preferred: Certified Identity and Access Manager (CIAM) or CISA


The Company is an Equal Opportunity/Affirmative Action employer. All qualified candidates will receive consideration for employment without regard to disability, protected veteran status, race, color, religious creed, national origin, citizenship, marital status, sex, sexual orientation/gender identity, age, or genetic information.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Similar Jobs

Explore other opportunities that match your interests

Senior IT Auditor

Networking
•
1h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Bath & Body Works

United State

SCA Aircraft Mechanic 1 (Structures)

Networking
•
5h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Northrop Grumman

United State
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

The Home Depot

United State

Subscribe our newsletter

New Things Will Always Update Regularly