обновлено 5 дней назад
SME Systems Engineer (Azure AD)
135 000 - 172 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
SME Systems Engineer (Azure AD) (ICAM/CIAM): Designing and engineering secure identity and access management frameworks for U.S. Coast Guard modernization with an accent on Azure AD B2C, federation, PKI, and Zero Trust principles. Focus on architecting identity lifecycles, integrating external-facing applications, managing authentication and authorization protocols, and enforcing secure access controls across enterprise networks.
Location: Alexandria, Virginia, United States; hybrid position
Salary: $135,000–$172,000 annually
Company
delivers IT services and technology solutions that support government agencies and modernize public-sector operations.
What you will do
- Design, modernize, and engineer enterprise Identity, Credential, and Access Management (ICAM) solutions.
- Manage directories, federation, authentication, authorization, single sign-on, identity lifecycles, provisioning, and privilege management.
- Own the Azure AD B2C / Customer Identity and Access Management platform, including custom policies, user flows, and integrations with external-facing applications.
- Apply Zero Trust identity principles based on NIST SP 800-207 across enterprise network hubs.
- Configure PKI systems, smart card and CAC authentication, credentials, authenticators, MFA, and PAM controls.
- Build federated identity services, perform root-cause analysis and privilege audits, tune system performance, and develop technical architectures, interfaces, data flows, and compliance documentation.
Requirements
- Active Secret clearance required.
- High school diploma with 10+ years of experience or equivalent experience.
- DoD 8570 IAT Level II certification or higher, such as Security+ CE, CySA+, or a vendor-specific identity certification.
- Deep knowledge of federated identity, including SAML, OAuth, OIDC, and Active Directory / LDAP architecture.
- Hands-on experience with smart card / CAC authentication and PKI certificate validation.
- Experience applying federal Zero Trust identity guidelines and NIST SP 800-207 in enterprise networks.
Nice to have
- Experience supporting U.S. Coast Guard or Department of Homeland Security identity management programs.
- Experience with SailPoint, Okta, Microsoft Entra ID, Ping Identity, DigiCert, or Power BI.
- Knowledge of data governance integration, RESTful API authorization, secure gateways, and data schema security standards.
Culture & Benefits
- Flexible work environment.
- Employee Assistance Program and corporate discounts.
- Learning and development platform with certification preparation content.
- Training, education, and certification assistance for full-time employees.
- Referral bonus, internal mobility program, and pet insurance.
Hiring process
- Virtual video interview with the hiring manager and/or team; camera use and presentation of a valid photo ID are required.
- Enhanced biometric identity verification and background screening, including criminal history, education, and employment verification.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Okta
10 дней назад
Staff Identity Engineer (Cybersecurity)
161 000 - 221 000$
12 дней назад
Staff Software Engineer, Identity & Access Management Platform (Cybersecurity)
200 000 - 300 000$
Okta
9 дней назад
Staff Identity Governance and Access Engineer (Cybersecurity)
161 000 - 221 000$
10 дней назад
Senior Active Directory Engineer (Cybersecurity)
97 100 - 161 800$
10 дней назад
Cybersecurity Staff Engineer (IAM)
6 дней назад
Senior Identity & Access Management (IAM) Engineer (Microsoft Entra ID)
165 000 - 185 000$