Applications Architect

Reston, VA

Criterion Systems is currently staffing for an Applications Architect to support at both the Application and System level for Identity Access and Credentials Management (ICAM) services. At the Application level, architecture support is required for services in the Customer’s Authentication, Attribute, and Common Services workspace. Close coordination of cross-system activities and addressing new or emerging COTS products that align with ICAM standards are performed in this area, as well as validation of a system’s ability to integrate with other ICAM systems. Technologies used include Public Key Infrastructure (PKI), Security Assertion Markup Language (SAML), Open Authorization (OAuth), Multi factor Authentication (MFA), Lightweight Directory Access Protocol (LDAP), Universal Attribute and Authorization Service (UAAS) and Application Programming Interfaces (API).

Mandatory Skills:

  • Demonstrated experience as a lead tactical and strategic technical integrator researching and integrating design strategies, which include product specifications, compliance standards, and user expectations, into delivered capabilities.
  • Demonstrated extensive experience with the Customer’s partners’ application services solutions.
  • Extensive demonstrated experience with all access control security services, including dependencies on other capabilities.
  • Demonstrated experience adjudicating competing priorities.
  • Demonstrated experience adding user requirements to technical project roadmaps and schedules.
  • Demonstrated experience assisting Customer decision making by conducting alternatives analyses of capability enhancements.
  • Demonstrated experience conducting information systems security analyses or reviews.
  • Demonstrated experience dealing with security vulnerabilities associated with cross-domain operational environments.
  • Demonstrated experience participating in customer forums that address key areas such as strategy, architecture, policy, roadmaps, key processes, dependencies, interoperability, technology, and governance.
  • Demonstrated experience recommending architectural enhancements to enterprise ICAM services
  • Demonstrated experience evaluating and applying new technologies to enterprise ICAM services. Applications Architect
  • Demonstrated extensive experience one or more of the following ICAM architectures or capabilities: Authentication technologies, Attribute Services, or Micro services architecture.
  • Demonstrated experience working with multiple teams across interrelated projects to ensure joint deliverables are met.
  • Demonstrated experience contributing to architectural and engineering documentation.
  • Demonstrated experience with cloud services such as Load Balancing and Reserved Instances.
  • Demonstrated experience with web servers such as Apache and Tomcat.
  • Must have an active TS/ISSA clearance walking in the door - No Exceptions.
  • US Citizenship required.

Certification Requirements:

  • N/A

Optional Skills:

  • Demonstrated experience with development and maintenance of large-scale enterprise programs with integrated COTS solutions
  • Demonstrated experience with the Customer’s PKI infrastructure and related tools such as x.509, OpenSSL, OAuth, and LDAP
  • Demonstrated experience with the Customer’s Directory Services such as Virtual Directories, LDAP Directories, and Full-Service Directory
  • Demonstrated experience with Ping Identity products such as Ping Federate and Ping Directory Demonstrated experience with Micro Services such as API Management and API Gateways
  • Demonstrated experience in the area of Information security.
  • Demonstrated familiarity with the sponsor's tools and processes for auditing and monitoring
  • Demonstrated familiarity with the Sponsor’s AuthA services such as VDE, FSD, and UAAS
  • Demonstrated familiarity with the various identity and access management at other IC Agencies. Demonstrated familiarity with the Federal ICAM program (FICAM)
  • Demonstrated familiarity with NIST standards and guidance such as NIST SP 800-63 Demonstrated familiarity with Multi-Factor Authentication such as RSA SecurID, Risk based Authentication, smart cards
  • Demonstrated familiarity with identity and attribute federation
  • Demonstrated familiarity with container technologies such as Docker, Kubernetes, OpenShift
  • Certifications: one or more of the following security or cloud certifications: AWS Solution Architect, CISSP, Security+



Criterion offers comprehensive health benefits including medical, dental, vision, life and disability insurance. Most of our plans are available at no cost for employee only coverage.

Time Off

Employees begin accruing PTO at 15 days per year and acquire more based on seniority. In addition to PTO, Criterion provides 10 holidays and bereavement, military, jury duty, and family medical leave.


  • Roth and Traditional 401(k) Plans with company matching contributions
  • Health Care and Dependent Care Flexible Spending Accounts
  • Health Savings Accounts
  • Commuter Benefits


All employees are eligible to use up to $3,000 annually for approved professional development, including trainings, memberships, seminars, and degree programs.

Employee Testimonials

Pets of Criterion

We love our furry friends!

Equal Employment Opportunity and Affirmative Action Employer

Criterion Systems, Inc. is committed to equal employment opportunity and non-discrimination at all levels of our organization. We believe in treating all applicants and employees fairly and make decisions without regard to an individual’s protected status: race/ethnicity, color, national origin, ancestry, sex/gender, gender identity/expression, sexual orientation, marital/parental status, pregnancy/childbirth or related conditions, religion, creed, age, disability, genetic information, veteran status, or any other protected status.

Know Your Rights

Applicants have rights under Federal Employment Laws: Family and Medical Leave Act | Equal Employment Opportunity | Employee Polygraph Protection Act. Criterion participates in E-Verify. Review Right to Work information.

Need an Accommodation?

Criterion is committed to Equal Employment Opportunity and providing reasonable accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for a position with Criterion and need special assistance or an accommodation to apply, please send an email with your request to or call us at 703-942-5800. Determination on requests for reasonable accommodation are made on a case-by-case basis.