Назад
Company hidden
обновлено 5 дней назад

SME Systems Engineer (Azure AD)

135 000 - 172 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
SME Systems Engineer (Azure AD) (ICAM/CIAM): Designing and engineering secure identity and access management frameworks for U.S. Coast Guard modernization with an accent on Azure AD B2C, federation, PKI, and Zero Trust principles. Focus on architecting identity lifecycles, integrating external-facing applications, managing authentication and authorization protocols, and enforcing secure access controls across enterprise networks.

Location: Alexandria, Virginia, United States; hybrid position

Salary: $135,000–$172,000 annually

Company

hirify.global delivers IT services and technology solutions that support government agencies and modernize public-sector operations.

What you will do

  • Design, modernize, and engineer enterprise Identity, Credential, and Access Management (ICAM) solutions.
  • Manage directories, federation, authentication, authorization, single sign-on, identity lifecycles, provisioning, and privilege management.
  • Own the Azure AD B2C / Customer Identity and Access Management platform, including custom policies, user flows, and integrations with external-facing applications.
  • Apply Zero Trust identity principles based on NIST SP 800-207 across enterprise network hubs.
  • Configure PKI systems, smart card and CAC authentication, credentials, authenticators, MFA, and PAM controls.
  • Build federated identity services, perform root-cause analysis and privilege audits, tune system performance, and develop technical architectures, interfaces, data flows, and compliance documentation.

Requirements

  • Active Secret clearance required.
  • High school diploma with 10+ years of experience or equivalent experience.
  • DoD 8570 IAT Level II certification or higher, such as Security+ CE, CySA+, or a vendor-specific identity certification.
  • Deep knowledge of federated identity, including SAML, OAuth, OIDC, and Active Directory / LDAP architecture.
  • Hands-on experience with smart card / CAC authentication and PKI certificate validation.
  • Experience applying federal Zero Trust identity guidelines and NIST SP 800-207 in enterprise networks.

Nice to have

  • Experience supporting U.S. Coast Guard or Department of Homeland Security identity management programs.
  • Experience with SailPoint, Okta, Microsoft Entra ID, Ping Identity, DigiCert, or Power BI.
  • Knowledge of data governance integration, RESTful API authorization, secure gateways, and data schema security standards.

Culture & Benefits

  • Flexible work environment.
  • Employee Assistance Program and corporate discounts.
  • Learning and development platform with certification preparation content.
  • Training, education, and certification assistance for full-time employees.
  • Referral bonus, internal mobility program, and pet insurance.

Hiring process

  • Virtual video interview with the hiring manager and/or team; camera use and presentation of a valid photo ID are required.
  • Enhanced biometric identity verification and background screening, including criminal history, education, and employment verification.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →