refresh

Trending companies

Trending companies

Jobs

JobsLeidos

Senior Identity Governance and Administration (IGA) Engineer (SailPoint)

Leidos

Senior Identity Governance and Administration (IGA) Engineer (SailPoint)

Leidos

Tampa, FL

·

On-site

·

Full-time

·

3w ago

Required skills

Azure

Leidos is seeking a highly skilled Senior Identity Governance and Administration (IGA) Engineer to join the Zero Trust execution team at U.S. Special Operations Command (USSOCOM). In a Zero Trust architecture, identity is the new perimeter, and this role is responsible for building and maintaining the "source of truth" that governs access to the Command's most critical data.

As the IGA Engineer, you will lead the implementation and configuration of Sail Point across the NIPR, SIPR, and Top-Secret networks. You will move beyond basic account provisioning to implement a sophisticated Attribute-Based Access Control (ABAC) model. You will be responsible for defining and managing the lifecycle of "Trust Attributes" (such as clearance level, training status, and job role) that are consumed by downstream enforcement tools like Microsoft Purview and Kiteworks. Your work ensures that when a user’s status changes, their access to sensitive data is updated instantly—even in air-gapped environments

Responsibilities

  • Sail Point Architecture & Configuration: Lead the design, deployment, and ongoing management of Sail Point Identity Now (or IIQ) to automate the full identity lifecycle (Joiner, Mover, Leaver) across hybrid and on-premises environments.
  • ABAC Attribute Management: Define and manage the schema for "Trust Attributes" (e.g., Clearance, COI, Project Codes) within Sail Point, ensuring they align with the NIST 8112 metadata standard for consumption by policy decision points.
  • Air-Gapped Identity Operations: Manage the offline instance of Sail Point on the Top-Secret network, developing the workflows to import "Attribute Manifests" and ensure that identity data remains synchronized with the low-side source of truth.
  • Access Certification: Configure and execute automated access certification campaigns for critical data repositories and privileged roles, ensuring compliance with DoD audit requirements.
  • Role Modeling: Work with mission owners to define Technical Roles and Business Roles within Sail Point, replacing broad, static Active Directory groups with granular, policy-driven access roles.

Qualifications

  • BS and 12 – 15 years of prior relevant experience or Masters with 10 – 13 years of prior relevant experience. Additional 4 years experience can be substituted without a degree.
  • Active Top-Secret clearance with SCI eligibility.

Required Experience & Skills

  • 10+ years hands-on experience designing, implementing, and administering Sail Point (Identity Now or IdentityIQ) in a large enterprise environment.
  • Experience working on high-visibility or mission critical aspects of a given program and performs all functional duties independently
  • Deep understanding Identity Lifecycle Management, the Joiner-Mover-Leaver (JML) process and experience automating provisioning/deprovisioning workflows connected to HR systems and Active Directory.
  • Strong knowledge of Active Directory, LDAP, and Azure Active Directory (Entra ID) structures and management.
  • Proven experience of Governance Principles, working with Role-Based Access Control (RBAC) modeling, Separation of Duties (SoD) policy creation, and access certification
  • experience overseeing the efforts of less senior staff and/or be responsible for the efforts of all staff assigned to a specific job.
  • CompTIA Security+ CE (or higher) to meet DoD 8570 IAT Level II requirements.

Preferred Experience & Skills

  • Experience implementing Attribute-Based Access Control (ABAC) strategies.
  • Familiarity with DoD Identity, Credential, and Access Management (ICAM**)** reference designs.
  • Knowledge of integration protocols such as REST, SCIM, and SOAP.
  • Experience supporting USSOCOM or other DoD agencies.

Certifications (Preferred)

  • Sail Point Certified Identity Now Engineer or Sail Point Certified IdentityIQ Engineer.
  • Certified Identity and Access Manager (CIAM) or CISA.

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.

Original Posting:

March 23, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Total Views

0

Apply Clicks

0

Weekly mock applicants

0

Bookmarks

0

About Leidos

Leidos

Leidos

Public

Leidos Holdings, Inc. is an American defense, aviation, information technology, and biomedical research company headquartered in Reston, Virginia, that provides scientific, engineering, systems integration, and technical services.

10,001+

Employees

Reston

Headquarters

$14.2B

Valuation

Reviews

3.7

9 reviews

Work-life balance

3.0

Compensation

2.5

Culture

4.0

Career

3.0

Management

3.5

65%

Recommend to a friend

Pros

Flexible work arrangements and hours

Supportive management and colleagues

Good health benefits

Cons

Limited career advancement opportunities

Poor work-life balance and high workload

Uncompetitive pay and salary

Salary Ranges

29 data points

Junior/L3

Junior/L3 · Energy Market Analyst

1 reports

$112,700

total per year

Base

$98,000

Stock

-

Bonus

-

$112,700

$112,700

Interview experience

3 interviews

Difficulty

3.0

/ 5

Duration

14-28 weeks

Offer rate

67%

Experience

Positive 67%

Neutral 0%

Negative 33%

Interview process

1

Application Review

2

Recruiter Screen

3

Technical Phone Screen

4

Hiring Manager Interview

5

Team Interview

6

Offer

Common questions

Technical Knowledge

Behavioral/STAR

Past Experience

Security Clearance

Government Contract Experience