Pillar Lead: Indentity Architect (R-00210)
Summary
Leads the Identity pillar to design Zero Trust identity architecture patterns, define authentication/authorization models, and integrate identity services across systems for a government-focused cybersecurity team.
True Zero is seeking an Identity Architect to lead the Identity pillar and establish reusable Zero Trust identity architecture patterns. The role defines identity relationships, authentication and authorization models, access policy, privileged access approaches, and integration requirements that enable identity-centric security decisions across VA systems.
The Identity Architect works closely with application, network, device, data, and automation specialists to ensure identity context is consistently incorporated into enterprise use cases and system implementations.
Position Responsibilities
- Develop identity-centric architecture patterns for enterprise Zero Trust Use Cases.
- Define authentication, authorization, federation, identity proofing, privileged access, conditional access, and lifecycle integration requirements.
- Map identity signals to policy decision and enforcement points across applications, networks, devices, and workloads.
- Assess existing identity technologies for interoperability, consolidation opportunities, and alignment to target-state Zero Trust capabilities.
- Support system implementation plans, pilots, testing, validation, and architecture reviews.
- Document identity dependencies, deviations, risks, and lessons learned for reuse across future implementation waves.
Job Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field.
- Seven or more years of identity and access management architecture or engineering experience.
- Deep knowledge of federation, SSO, MFA, conditional access, PKI, PAM, identity governance, and modern authentication protocols.
- Strong understanding of Zero Trust identity principles and policy-based access control.
- Experience integrating identity services across cloud, hybrid, and legacy environments.
- Experience with Microsoft Entra ID, Active Directory, PIV/CAC, PAM, IGA, or comparable enterprise identity platforms.
- Experience supporting Federal identity requirements.
- Experience with workload identity and machine-to-machine authentication patterns.
- CISSP
- Microsoft Identity and Access Administrator
- Okta certification
- Security+
As published by lever
Resume/CV, Full name, Email, Phone, Current location, Current company, LinkedIn URL, Twitter URL, GitHub URL, Portfolio URL, Other Relevant URL