Cyber Engineer - Identity Management Lead
Guidehouse
- Location
- US VA Arlington
- Work model
- On-Site
- Level
- Senior
- Posted
- Aug 19, 2026
Skills
About this role
Job Family : IT Cyber Security Travel Required : None Clearance Required : Active Secret What You Will Do : Our Cybersecurity Consultants are a team of business integrators with extensive consulting and industry experience who help our clients solve their complex business issues from strategy through execution. A career in an integrated team of developers and consultants provides the opportunity to grow and contribute to our clients' business issues every day, applying a collection of security spectrum capabilities, including security strategy and governance, IT risk, security technologies, and cybercrime and breach response. We are seeking an experienced Cyber Engineer - Identity Management Lead to lead the design, assessment, and implementation of projects to advance the identity pillar for the Zero Trust Architecture. This role is ideal for a strategic thinker and hands-on technologist who thrives in dynamic environments and is passionate about advancing cybersecurity maturity across complex organizations. Must bring deep expertise in ICAM /IAM principles, with hands-on experience on industry-leading security platforms, and a strong understanding of emerging trends and government-driven maturity frameworks (CISA Zero Trust Maturity Model(s) and DoD Zero Trust Strategy). This role will be responsible for guiding enterprise identity transformation initiatives, conducting detailed maturity assessments, and providing architectural leadership to ensure secure, scalable, and resilient solutions for our federal government clients.
Key Responsibility
Areas include, but are not limited to: ICAM Architecture & Strategy Design, document, and maintain enterprise ICAM architectures, strategies and policies. Define strategic roadmaps and reference architecture aligned with organizational objectives and mission requirements. Partner with cross-functional teams to embed Zero Trust principles into technology modernization efforts, cloud transitions, and cybersecurity initiatives. Partner with cybersecurity, network engineering, cloud, DevSecOps, and governance teams to ensure cohesive implementation and maturity. Perform organizational assessments using the CISA Zero Trust Maturity Model. Produce gap analyses and prioritized remediation plans aligned with maturity expectations. Technology Expertise & Implementation Evaluate and architect solutions leveraging leading Zero Trust technologies, particularly: CrowdStrike (endpoint detection and response, identity protection). Zscaler (Zero Trust access, secure web gateway, private access). Okta (identity and access management, MFA, lifecycle management). Automate Zero Trust processes to improve scalability, efficiency, and compliance while adhering to established security policies. Support solution engineering, configuration guidance, integration patterns, and proof-of-concept deployments across hybrid and multi-cloud environments. Industry Research & Thought Leadership Continuously monitoring emerging Zero Trust trends, frameworks, technologies, and threat intelligence. Advise senior leadership on advancements and evolving best practices in Zero Trust architecture and secure-by-design methodologies. Develop documentation, whitepapers, or briefings to support executive decision-making.
What You Will Need
Minimum of EIGHT (8) years of experience in IT or managing large-scale deployments and cross-functional technical teams with five (5) years of US Federal government consulting experience. An ACTIVE and MAINTAINED "SECRET" Federal or DoD security clearance . Experience working in federal civilian, defense contractor, or highly regulated environments. Experience leading teams for ICAM / IAM operations, including ICAM/IAM system requirements, design, implementation, integration, testing, or change management. Hands-on experience with Zero Trust technology platforms (e.g., Okta, EntraID, SailPoint, Radiant Logic). Deep understanding of identity-centric security, segmentation,