Principal IAM-Zero Trust Solutions Architect
1. General Program Information / Position Overview
Serve as a principal technical leader for the Leidos Mission Operations Division CTO Team supporting the Defense Information Systems Agency and other Department of War and federal customers.
The Principal IAM / Zero Trust Solutions Architect will lead the development and integration of complex enterprise technology and cybersecurity solutions spanning identity, cloud, infrastructure, networking, automation, security, and mission systems. The successful candidate will bring broad enterprise architecture experience with strength in Identity and Access Management (IAM) and Zero Trust principles.
This role requires the ability to assess complex customer environments, translate mission and cybersecurity requirements into practical technical solutions, evaluate alternative technologies, and lead multidisciplinary engineering teams through solution development and integration. The position will also support customer engagement, technical demonstrations, modernization initiatives, proposal development, and other business growth activities.
2. Primary Responsibilities
- Lead the architecture, design, and integration of complex enterprise infrastructure and cybersecurity solutions across cloud, on-premises, classified, and mission environments.
- Develop integrated IAM and Zero Trust solution architectures aligned with customer mission requirements and applicable DoW, NIST, and federal cybersecurity guidance.
- Assess existing technology environments, identify architectural and operational gaps, and develop modernization strategies and implementation roadmaps.
- Design and integrate identity, cloud, infrastructure, networking, security, automation, monitoring, and related enterprise capabilities.
- Apply IAM principles including authentication, authorization, federation, identity lifecycle management, privileged access, PKI, and access policy as part of broader enterprise solutions.
- Incorporate Zero Trust principles such as least privilege, continuous verification, segmentation, policy enforcement, and risk-based access into solution architectures.
- Evaluate commercial and government technologies, conduct technical trade studies and Analyses of Alternatives, and develop solution recommendations.
- Define architectural interfaces, integration dependencies, implementation approaches, and transition strategies across multiple technical domains.
- Develop architecture diagrams, technical approaches, implementation plans, test strategies, modernization roadmaps, and customer briefings.
- Provide technical leadership and direction to multidisciplinary engineering and integration teams.
- Engage directly with government customers and mission stakeholders to understand technical challenges, shape requirements, and develop practical solutions.
- Research emerging enterprise, cybersecurity, cloud, IAM, and Zero Trust technologies and assess their applicability to customer missions.
- Support technical demonstrations, solution development, capture, proposals, and on-contract growth activities.
3. Basic Qualifications
Enterprise Solutions Architecture
- Significant experience designing, integrating, and modernizing complex enterprise infrastructure, cybersecurity, or mission technology environments.
- Ability to translate customer mission and technical requirements into architectures, implementation approaches, and modernization roadmaps.
- Experience evaluating technologies, conducting technical trade studies or Analyses of Alternatives, and developing solution recommendations.
- Experience leading complex technical integrations across multiple infrastructure and cybersecurity domains.
Identity, Security & Zero Trust
- Strong working knowledge of enterprise IAM/ICAM concepts including authentication, authorization, federation, identity lifecycle management, privileged access, PKI, directory services, and access policy.
- Experience incorporating IAM capabilities into enterprise cloud, infrastructure, or cybersecurity solutions.
- Understanding of Zero Trust principles and the interaction among identity, devices, applications, networks, workloads, data, and security policy.
- Familiarity with DoD, NIST, RMF, and related federal cybersecurity frameworks and requirements.
Cloud, Infrastructure & Integration
- Experience with cloud and hybrid enterprise environments such as AWS, Azure, or comparable platforms.
- Broad understanding of enterprise infrastructure technologies including networking, virtualization, automation, configuration management, monitoring, and cybersecurity technologies.
- Familiarity with modern automation, DevSecOps, containers, and infrastructure-as-code concepts.
- Ability to understand and define integration requirements across infrastructure, cybersecurity, IAM, cloud, and operations technologies.
Technical Leadership & Customer Engagement
- Experience providing technical leadership to multidisciplinary engineering teams.
- Ability to communicate complex technical concepts to government customers, technical teams, and senior stakeholders.
- Strong written, verbal, technical briefing, and customer-facing communication skills.
- Experience developing technical architectures, solution concepts, recommendations, or implementation plans.
Education, Experience, Clearance & Certification
- Bachelor's degree in Computer Science, Information Technology, Systems Engineering, Cybersecurity, or a related field and approximately 15+ years of relevant professional experience.
- Additional relevant experience may be considered in lieu of a technical degree.
- Active DoD Secret clearance or higher.
- DoD 8140-aligned cybersecurity certification appropriate to the role, such as Security+ CE or higher.
4. Preferred Qualifications
- Experience supporting DoD, Intelligence Community, or other federal mission environments.
- TS/SCI eligibility or active TS/SCI clearance.
- Experience architecting solutions across classified, multi-domain, hybrid-cloud, or distributed enterprise environments.
- Experience with enterprise IAM platforms such as Microsoft Entra ID, Active Directory, Okta, Ping Identity, SailPoint, CyberArk, RadiantLogic, or comparable technologies.
- Experience with Zero Trust modernization initiatives or applying Zero Trust principles within enterprise architectures.
- Experience with automation, infrastructure-as-code, DevSecOps, or configuration-management technologies.
- Experience with enterprise network, monitoring, observability, or cybersecurity platforms.
- Experience supporting federal security accreditation and authorization processes.
- Experience conducting vendor technology evaluations or Analyses of Alternatives.
- Experience supporting capture, proposals, technical solution development, or customer demonstrations.
If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
Original Posting:
September 25, 2026For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $154,050.00 - $278,475.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.