Other Jobs To Apply
No other job posts for this day.
<span style="font-size:11pt;"><span style="line-height:normal;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;">cFocus Software seeks an ICAM SME to join our program supporting the United States Citizenship and Immigration Services (USCIS). This position is 100% remote. This position requires a Public Trust clearance.</span></span></span></span><br><br><span style="font-size:11pt;"><span style="line-height:normal;"><span style="font-family:'Times New Roman', serif;"><b><span style="font-size:10pt;">Qualifications:</span></b></span></span></span><ul><li class="Default" style="margin-left:8px;"><span style="font-size:12pt;"><span><span style="font-family:'Times New Roman', serif;"><span style="color:#000000;"><span style="font-size:10pt;">5+ years of ICAM experience</span></span></span></span></span></li><li class="Default" style="margin-left:8px;"><span style="font-size:12pt;"><span><span style="font-family:'Times New Roman', serif;"><span style="color:#000000;"><span style="font-size:10pt;">The ICAM Subject Matter Expert must have in-depth knowledge of federal ICAM standards and the Federal ICAM Roadmap and Implementation Guidance. </span></span></span></span></span></li><li class="Default" style="margin-left:8px;"><span style="font-size:12pt;"><span><span style="font-family:'Times New Roman', serif;"><span style="color:#000000;"><span style="font-size:10pt;">The ICAM SME will need knowledge of the capabilities, strengths, and weaknesses of current commercial and open-source ICAM products. </span></span></span></span></span></li><li class="Default" style="margin-left:8px;"><span style="font-size:12pt;"><span><span style="font-family:'Times New Roman', serif;"><span style="color:#000000;"><span style="font-size:10pt;">Experience with AWS, Azure, GCP identity services, PKI, certificate lifecycle management, identity governance, privileged access architectures, AD/LDAP, OAuth2, OIDC, SAML, DevSecOps.</span></span></span></span></span></li><li class="Default" style="margin-left:8px;"><span style="font-size:12pt;"><span><span style="font-family:'Times New Roman', serif;"><span style="color:#000000;"><span style="font-size:10pt;">SME must be certified in one of the following recognized identity, access, and security certifications: Certified Identity and Access Manager (CIAM), Certified Information Systems Security Professional (CISSP), GIAC Defensible Identity and Access Management (GDA), Certified Access </span><span style="font-size:10pt;">Management Specialist (CAMS), Comp TIA+ Security, or FICAM related training</span></span></span></span></span></li></ul><span style="font-size:12pt;"><span style="font-family:'Times New Roman', serif;"><span style="color:#000000;"><b><span style="font-size:10pt;">Duties:</span></b></span></span></span><br> <ul style="margin-bottom:11px;"><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Provide in-depth expertise on federal ICAM standards and the Federal ICAM Roadmap and Implementation Guidance. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Advise government leadership on ICAM strategy, policy, implementation, best practices, and technology enhancements. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Evaluate commercial and open-source ICAM products to recommend solutions that meet agency requirements. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Support program governance, compliance, and integration across ICAM service areas (SSO, PAM, PKI, ePACS, OAuth/OIDC).</span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Support development and operational sustainment of PIV-based authentication services and SSO integration. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Implement ABAC and RBAC models for enterprise access control. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Assist in deploying scalable authentication and authorization microservices.</span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Provide guidance on CyberArk-based PAM solutions, credential vaulting, rotation, privileged session management, and multi-cloud privileged access governance. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Support privileged access monitoring, auditing, and compliance with federal security standards. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Lead technical PKI efforts including device certificate lifecycle management, Person-Centric PKI, and NPE PKI. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Ensure compliance with DHS PKI Interface Specifications and COPG guidelines. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Support Active Directory architecture, tiering, permissions, and cybersecurity best practices. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Oversee account provisioning, de-provisioning, and identity lifecycle automation.</span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Recommend and design new technology solutions aligned with ICAM modernization initiatives, cloud migrations, Zero Trust, and enterprise architecture. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Support DevSecOps teams to implement secure ICAM features and integrations.</span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Provide Tier 2+ SME support during system outages, degradation, and critical incidents involving SSO, PKI, PAM, AD, OAuth/OIDC, and physical access systems. </span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Assist Duty Officers with severity determination, triage, root-cause analysis, and mitigation.</span></span></span></span></span></span></li><li style="margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Develop SOPs, training materials, system documentation, and technical guidance. </span></span></span></span></span></span></li><li style="margin-bottom:11px;margin-left:8px;"><span style="font-size:11pt;"><span style="line-height:107%;"><span style="font-family:'Times New Roman', serif;"><span style="font-size:10pt;"><span style="line-height:107%;"><span style="color:#000000;">Ensure compliance with DHS 4300A, OMB directives, Section 508, and audit requirements.</span></span></span></span></span></span></li></ul>