Identity and Access Management Architect
Company: Guidehouse
Location: Atlanta
Posted on: March 10, 2026
|
|
|
Job Description:
Job Family: Cyber Consulting, Cyber Consulting (Digital), IT
Cyber Security, Systems Engineering Consulting, Technology
Consulting Travel Required: Up to 25% Clearance Required: None What
You Will Do: Identity Architecture & Engineering - Architect and
deploy enterprise Okta Identity Engine implementations, including
SSO, MFA policies, federation, lifecycle management, SCIM
provisioning, and Okta Workflows automation. - Implement
phishing?resistant MFA using FIDO2/WebAuthn, platform
authenticators, roaming security keys, passkeys, and
government?grade credentials per CISA/OMB guidance. - Design and
integrate IGA PAM capabilities (SailPoint IIQ/IDN, CyberArk,
Delinea/Thycotic, BeyondTrust) to enforce least privilege, JIT
access, and robust access governance. Directory, Data & Zero Trust
- Implement tools like Okta Universal Directory and Radiant Logic
to normalize & virtualize identity data across AD/Entra ID and
other authoritative sources. - Align IAM solutions to Zero Trust
and NIST SP 800?63?series standards for authentication, identity
assurance, and continuous risk evaluation. Technical Leadership &
Delivery - Produce engineering deliverables: architecture diagrams,
configuration standards, build/run books, migration plans, and
cutover strategies. - Mentor engineers and consultants; lead
workshops with business & technical stakeholders; support pursuit
teams with solutioning and orals. What You Will Need: - Due to
nature of client engagement, must be a US Citizen - High School
Diploma AND Fourteen (14) plus years relevant paid professional
experience; Or Associate’s degree AND Twelve (12) plus years
relevant paid professional experience; Or Bachelor’s degree AND Ten
(10) plus years relevant paid professional experience - Total paid
professional work experience MUST include 8 years in IAM AND 5
years engineering and architecting Okta solutions at enterprise
scale - Deep experience with Okta (OIE policies, FastPass,
integration network, federation, logs), authentication standards
(SAML, OIDC, OAuth2, SCIM, directory integrations). - Hands?on
implementation experience with IAM tools such as SailPoint,
CyberArk, Delinea, BeyondTrust, Radiant Logic, and Microsoft Entra
ID/AD. - Strong engineering skills: APIs/SDKs, Terraform, CI/CD,
Python/PowerShell, troubleshooting complex identity and access
problems. - Ability to travel - Ability to work onsite in a
Guidehouse Office or Client Office location What Would Be Nice To
Have: - Ability to OBTAIN and MAINTAIN a Federal or DoD Public
Trust - Preference will be given to candidates within reasonable
driving distance of a Guidehouse Office or Client Office location -
Experience integrating identity signals (Okta, SailPoint, PAM
tools, directory telemetry) with Zero Trust analytics platforms and
security operations ecosystems, including SIEM (e.g., Splunk,
Microsoft Sentinel, Elastic), UEBA/XDR (CrowdStrike Falcon,
InsightIDR, Exabeam), and threat intelligence pipelines to enrich
detections, correlate anomalous identity behavior, and enable
automated response. - Vendor certifications including Okta
Certified Professional, Okta Certified Administrator, Okta
Certified Consultant, Okta Certified Developer, Okta Certified
Technical Architect, Okta Workflows, Okta Access Gateway -
Additional vendor certifications from SailPoint, Microsoft,
CyberArk, BeyondTrust, etc. - One or more Cybersecurity related
certifications such as CISSP, CISM, CISA, Security, CRISC, OSCP
LI-DNI The annual salary range for this position is
$155,000.00-$259,000.00. Compensation decisions depend on a wide
range of factors, including but not limited to skill sets,
experience and training, security clearances, licensure and
certifications, and other business and organizational needs. What
We Offer: Guidehouse offers a comprehensive, total rewards package
that includes competitive compensation and a flexible benefits
package that reflects our commitment to creating a diverse and
supportive workplace. Benefits include: - Medical, Rx, Dental &
Vision Insurance - Personal and Family Sick Time & Company Paid
Holidays - Position may be eligible for a discretionary variable
incentive bonus - Parental Leave and Adoption Assistance - 401(k)
Retirement Plan - Basic Life & Supplemental Life - Health Savings
Account, Dental/Vision & Dependent Care Flexible Spending Accounts
- Short-Term & Long-Term Disability - Student Loan PayDown -
Tuition Reimbursement, Personal Development & Learning
Opportunities - Skills Development & Certifications - Employee
Referral Program - Corporate Sponsored Events & Community Outreach
- Emergency Back-Up Childcare Program - Mobility Stipend About
Guidehouse Guidehouse is an Equal Opportunity Employer–Protected
Veterans, Individuals with Disabilities or any other basis
protected by law, ordinance, or regulation. Guidehouse will
consider for employment qualified applicants with criminal
histories in a manner consistent with the requirements of
applicable law or ordinance including the Fair Chance Ordinance of
Los Angeles and San Francisco. If you have visited our website for
information about employment opportunities, or to apply for a
position, and you require an accommodation, please contact
Guidehouse Recruiting at 1-571-633-1711 or via email at
RecruitingAccommodation@guidehouse.com. All information you provide
will be kept confidential and will be used only to the extent
required to provide needed reasonable accommodation. All
communication regarding recruitment for a Guidehouse position will
be sent from Guidehouse email domains including @guidehouse.com or
guidehouse@myworkday.com. Correspondence received by an applicant
from any other domain should be considered unauthorized and will
not be honored by Guidehouse. Note that Guidehouse will never
charge a fee or require a money transfer at any stage of the
recruitment process and does not collect fees from educational
institutions for participation in a recruitment event. Never
provide your banking information to a third party purporting to
need that information to proceed in the hiring process. If any
person or organization demands money related to a job opportunity
with Guidehouse, please report the matter to Guidehouse’s Ethics
Hotline. If you want to check the validity of correspondence you
have received, please contact recruiting@guidehouse.com. Guidehouse
is not responsible for losses incurred (monetary or otherwise) from
an applicant’s dealings with unauthorized third parties. Guidehouse
does not accept unsolicited resumes through or from search firms or
staffing agencies. All unsolicited resumes will be considered the
property of Guidehouse and Guidehouse will not be obligated to pay
a placement fee.
Keywords: Guidehouse, Cleveland , Identity and Access Management Architect, IT / Software / Systems , Atlanta, Tennessee