Назад
Company hidden
6 дней назад

Senior Zero Trust Identity and ICAM Engineer

150 000 - 185 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Zero Trust Identity and ICAM Engineer (Cybersecurity): Designing and implementing Zero Trust Architecture and ICAM solutions for federal agency clients with an accent on identity, device, network, application, and data security. Focus on PIV-enabled access, Microsoft Entra conditional access, privileged access governance, policy enforcement, microsegmentation, and federal compliance across hybrid cloud and multi-tenant environments.

Location: Must be located in the DC Metro Area; hybrid work with onsite and remote support required.

Salary: $150,000–$185,000 per year

Company

hirify.global provides Zero Trust Architecture, identity, access, and cybersecurity solutions for federal agency clients.

What you will do

  • Lead Zero Trust Architecture assessments, gap analyses, roadmaps, and enterprise architecture design across identity, device, network, application, and data pillars.
  • Translate federal mandates and security frameworks into implementation plans, architecture artifacts, and operational controls.
  • Design and implement conditional access, privileged access governance, MFA, RBAC, JIT PAM, PIV/CAC authentication, and enterprise ICAM services.
  • Deploy and integrate Zero Trust, ZTNA, SASE, microsegmentation, endpoint security, DNS security, and device posture controls across enterprise and hybrid cloud environments.
  • Support RMF activities, SSP authoring, continuous monitoring, ATO maintenance, POA&Ms, security assessments, and audit-ready evidence.
  • Advise federal stakeholders and collaborate with cloud, networking, data analytics, and infrastructure teams.

Requirements

  • 7+ years of experience in cybersecurity engineering, network security, or IT infrastructure, including 5+ years designing or implementing Zero Trust Architecture.
  • Experience supporting federal government, DoD, or civilian agency environments and understanding NIST SP 800-207 and the CISA Zero Trust Maturity Model.
  • Deep expertise in at least one of Palo Alto Prisma, Zscaler, or the Microsoft Zero Trust stack.
  • Hands-on experience with Entra ID, Active Directory, LDAP, PKI, MFA, PAM, PIV/PIV-I smartcard credential lifecycle management, and Entra certificate-based authentication.
  • Hands-on experience designing, deploying, configuring, and operating Intercede MyID CMS Enterprise, including enrollment, certificate provisioning, renewal, revocation, and PKI integrations.
  • Knowledge of microsegmentation, ZTNA, DNS security, SD-WAN, next-generation firewalls, EDR/XDR, Azure or AWS, and SIEM/SOAR platforms.

Nice to have

  • Certifications such as PCCSE, PCNSE, Zscaler ZCCA, Microsoft SC-100, CISSP, CISM, CompTIA Security+, Cloud+, or relevant AWS/Azure security certifications.
  • Familiarity with RMF, NIST SP 800-37, SSP authoring, ATO preparation, ServiceNow, Salesforce, or federal IT service management tooling.
  • Multi-vendor Zero Trust integration experience, including combined Palo Alto and Zscaler architectures.

Culture & Benefits

  • Hybrid work with flexible work-from-home options.
  • 401(k), health, dental, and vision insurance.
  • Paid time off and competitive compensation.
  • Training and development opportunities.
  • Flexible working conditions focused on work-life balance, inclusion, collaboration, and continuous learning.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →