高级技术负责人 - IAM数据集成与迁移
Senior Technical Lead - IAM Data Integration and Migration
职责
Peraton 正在寻找一名高级技术主管 – IAM 数据集成与迁移,该职位将负责现有的身份和访问管理(IAM)数据环境,并领导身份数据到现代 IAM 解决方案的规划、工程、验证和迁移。此职位确保在整个迁移生命周期中,身份、账户、角色、权限、策略和访问数据保持准确、安全且可审计。
理想的候选人应具备数据迁移工程、身份数据分析师、数据库工程和以安全为导向的架构方面的实战经验,有支持 AWS GovCloud、联邦或高度监管环境中的企业 IAM 现代化、Oracle 和 DB2 环境以及传统 IBM IAM 平台的经验。
你将负责:
IAM 迁移领导
- 领导从传统 IBM IAM 解决方案到新目标 IAM 平台的数据迁移策略。
- 制定并维护端到端的数据迁移路线图,包括发现、分析、清洗、映射、转换、测试迁移、验证、切换、回滚和迁移后支持。
- 定义 IBM IAM 数据结构与新目标数据模型之间的源到目标映射。
- 在整个迁移过程中保留身份到账户、账户到权限、组到角色、角色到策略以及用户到访问的关系。
- 使用 SQL、脚本、ETL 工具、API 或平台原生迁移工具设计可重复且可审计的迁移流程。
- 支持与企业身份和访问管理(IAM)平台组件的集成,包括目录服务、联合服务、访问管理、授权和多因素认证(MFA)解决方案,视情况而定。
- 确保迁移后的数据支持认证、授权、联合、配置、治理、访问审查和符合零信任的访问控制模型。
安全、合规与数据保护
- 确保身份数据在提取、暂存、转换、迁移和验证过程中得到保护。
- 支持数据保留、数据存储、数据加密和敏感身份数据(包括个人身份信息和特权账户信息)的安全处理。
- 使数据迁移和 IAM 现代化活动符合联邦和企业安全要求,包括 NIST、FISMA、FedRAMP、DISA STIG、零信任和机构特定的控制措施。
技术领导与项目执行
- 监督系统工程
查看英文原文
Responsibilities
Peraton is looking for a Senior Technical Lead – IAM Data Integration and Migration who will will oversee the existing Identity and Access Management (IAM) data environment while leading the planning, engineering, validation, and migration of identity data to a modern IAM solution. This role ensures that identity, account, role, entitlement, policy, and access data remains accurate, secure, and auditable throughout the migration life-cycle.
The ideal candidate brings hands-on expertise in data migration engineering, identity data analysis, database engineering, and security-minded architecture, with experience supporting AWS GovCloud, enterprise IAM modernization in federal or highly regulated environments, Oracle and DB2 environments, and legacy IBM IAM platforms.
What will you do:
IAM Migration Leadership
- Lead the data migration strategy from the legacy IBM IAM solution to the new target IAM platform.
- Develop and maintain the end-to-end data migration roadmap, including discovery, profiling, cleansing, mapping, transformation, test migration, validation, cutover, rollback, and post-migration support.
- Define source-to-target mappings between IBM IAM data structures and new target data models.
- Preserve identity-to-account, account-to-entitlement, group-to-role, role-to-policy, and user-to-access relationships throughout migration.
- Design repeatable and auditable migration pipelines using SQL, scripting, ETL tools, APIs, or platform-native migration utilities.
- Support integration with enterprise Identity and Access Management (IAM) platform components, including directory services, federation services, access management, authorization, and multi-factor authentication (MFA) solutions, as applicable.
- Ensure migrated data supports authentication, authorization, federation, provisioning, governance, access reviews, and Zero Trust-aligned access control models.
Security, Compliance, and Data Protection
- Ensure identity data is protected throughout extraction, staging, transformation, migration, and validation.
- Support data retention, data storage, data encryption, and secure handling of sensitive identity data, including PII and privileged account information.
- Align data migration and IAM modernization activities with federal and enterprise security requirements, including NIST, FISMA, FedRAMP, DISA STIG, Zero Trust, and agency-specific controls.
Technical Leadership and Project Execution
- Oversee systems engineering and data engineering activities across multiple concurrent workstreams with strict deadlines.
- Lead technical planning, cost/schedule input, execution planning, technical performance metrics, and risk mitigation strategies.
- Coordinate across IAM, database, cloud, infrastructure, cybersecurity, application, testing, and business teams.
- Manage technical risks related to data loss, incorrect access assignments, migration defects, cutover timing, security exposure, and operational disruption.
- Support Agile/Scrum teams by assessing how enhancements, defects, data issues, or migration requests impact the IAM architecture and downstream systems.
- Communicate technical progress, risks, dependencies, and decision points clearly to both technical and non-technical stakeholders.
Legacy IAM Operations and Data Oversight
- Oversee engineering and operational support for the IBM IAM solution, including identity repositories, account data, entitlement data, access control data, and associated database platforms.
- Support the stability, integrity, and efficient operation of existing IAM systems, data bases, directories, integrations, and supporting infrastructure.
- Analyze existing identity data models, schemas, attributes, roles, groups, entitlements, privileged accounts, and access relationships.
- Identify data quality issues, duplicate identities, orphaned accounts, inactive accounts, stale entitlements, missing attributes, and broken role or group mappings.
Qualifications
Required Qualifications
- Must be a U.S. Citizen with the ability to obtain and maintain the required Public Trust level clearance
- Bachelor’s Degree and 12 years of experience, or a High School diploma or equivalent and 16 years of experience
- 10+ years supporting Information Technology in enterprise environments.
- 7+ years hands-on with IBM products, Oracle products, and cloud-based products.
- Training and certification (mandatory) in target IAM database products preferred, especially Oracle and DB2.
- Strong technical knowledge of IT systems, IAM, and AWS GovCloud services.
- Demonstrated experience with the planning, management, leadership, and coordination of multiple concurrent tasks with strict deadlines for large-scale, highly available systems integrated with business-critical platforms.
- Demonstrated expertise in data encryption, data storage, and retention policies in secure federal environments.
- Proven ability to perform complex technical tasks in a highly secure environment.
- Strong understanding of software development, enhancement, and maintenance life-cycles.
- Experience with agile/scrum methodologies.
- Expert knowledge of recent advances in computer science and engineering.
Preferred Skills
- Prior experience with federal IT programs, regulatory compliance, and federal acquisition documentation.
- Familiarity with Zero Trust Architecture principles, federal mandates (OMB M-22-09, EO 14028), and enterprise data governance and security frameworks (NIST, FISMA, FedRAMP).
- Knowledge of cloud-native database and data warehousing technologies on AWS GovCloud.
- Experience supporting ATO processes, System Security Plans (SSPs), and continuous monitoring activities.
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
Target Salary Range
$146,000 - $234,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEO
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Originally posted on Himalayas