Enterprise ICAM Architect
Booz Allen Hamilton
- Location
- McLean, VA
- Work model
- On-Site
- Level
- Mid
- H-1B history
- 9 approvals (FY2023)
- Posted
- Aug 31, 2026
Skills
About this role
Enterprise ICAM Architect The Opportunity: As an Enterprise ICAM Architect at Booz Allen, you’ll play a critical role in the world of identity and access management (IAM) and Zero T rus t. You’ll oversee large-scale IAM projects for our clients. You’ll directly interface with stakeholders and engineering teams to delve into the details and dependencies of critical processes and users’ roles within them. In this role, you'll design and direct the strategy, implementation, and governance of ICAM systems at the Department of Veterans Affairs ( VA ) , including IGA, SSO, PAM, and directory services. You'll lead an ICAM Program Office, as well as the support teams for all ICAM products. What You’ll Work On: Design and direct the enterprise ICAM target-state architecture across SSO such as Entra ID or Okta, IGA such as Saviynt, PAM such as CyberArk or PAMaaS, Master Person Index, and Enterprise Workforce Directory, aligned to Zero T rus t principles. Own security architecture engineering or design, security strategy, and regulatory compliance alignment, including STIGs, FIPS, and NIST 800-53, across the VA ICAM portfolio. Lead architecture reviews, technical validation, and vendor evaluations for Innovation Lab sessions and technology stack decisions. Lead multiple Kanban Agile support teams in a large Scaled Agile ( SAFe ) team. Co-lead quarterly increment planning. Partner with senior government stakeholders, including ICAM program owners and C-suite executives, on ICAM architecture discussions. Support DoW and other external partner federation architecture efforts. Leverage AI intelligently to drive efficiency and quality of output. Automate tasks wherever appropriate, and develop and consistently use ways of working which allow agents and automated processes to effectively assist. Apply today to help us deliver modern identity solutions that protect veterans, their data, and their access to critical VA services. Join us. The world can’t wait. You Have: Experience designing and directing enterprise-scale ICAM strategy, implementation, and governance, including Zero T rus t, cloud security, and compliance Experience leading integration of SSO, MFA, PAM, and directory services as an enterprise SME Experience with security architecture, RBAC or Access Certification implementation, and identity or role lifecycle management Knowledge of Federal ICAM mandates such as OMB M-19-17, NIST 800-63, EO 14028, and OMB M-22-09 Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements Bachelor's degree CISSP Certification, or Cyber or Identity Certification such as AWS Certified Cloud Practitioner, ICAgile Certified Professional, or CyberArk Certified Certification Nice If You Have: Experience with Electronic Health Record Modernization ( EHRM ) and DoW federated solution architecture across different user types Experience architecting hybrid identity solutions across AWS, Azure, VMWare, and leading ICAM platforms such as CyberArk, Saviynt, Okta, and PingIdentity Experience using AI agents to build things Vetting: Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client .
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage