
ICAM Automation Engineer
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in United States.
• Design and automate ICAM workflows, which encompass user lifecycle management, MFA enrollment, and the automation of conditional access policies.
• Develop and sustain integrations across Okta, CyberArk, AWS IAM Identity Center, and Active Directory environments.
• Create and improve SOC and Zero Trust automation, including the formulation of Splunk ES detection rules and Splunk SOAR playbooks.
• Automate security actions such as session revocation, access removal, credential rotation, and the generation of incident tickets.
• Assist with log source onboarding, along with parsing and enhancement for IAM and security platforms.
• Design and execute Zero Trust policies involving Zscaler ZPA/ZIA, AWS Verified Access, and device trust signals.
• Collaborate with engineering, SOC, and identity teams to enhance automation, consistency, and security outcomes.
• Contribute to Cyber 2 operations as an Automation Engineer/Tester in a mission-driven cybersecurity team.
• Interim Secret clearance (minimum requirement).
• DoD 8140 – Foundational Intermediate – 671 System Testing and Evaluation Specialist (tentative).
• One or more of the following certifications: CEH, CFR, Cloud+, GSEC, PenTest+, Security+, SSCP.
• Over 4 years of experience in IAM automation, security orchestration, or SOC operations.
• Proficiency in Okta automation, including API integrations, lifecycle events, MFA workflows, and conditional access.
• Experience with CyberArk PAM automation, specifically in onboarding, credential rotation, and PSM session automation.
• Familiarity with AWS IAM Identity Center permission set automation and account assignments.
• Knowledge of AWS Managed Microsoft AD delegated administration and group management.
• Experience with AD LDS for partner/external identity stores.
• Competence in creating and tuning Splunk ES rules.
• Development of Splunk SOAR playbooks for ICAM and Zero Trust actions.
• Onboarding log sources for Okta, CyberArk, Zscaler, and related technologies.
• Understanding of PDP/PEP/PIP/PAP components.
• Experience in automating Zscaler ZPA (ZTNA) and ZIA (SWG) policies.
• Development of AWS Verified Access policies.
• Integration of device trust and posture signals.
• Proficiency in Python and/or PowerShell for automation and API development.
• Troubleshooting experience with SAML 2.0 / OIDC federation.
• Familiarity with FIDO2, CAC/PIV, and hardware token authentication workflows.
• Knowledge of ABAC models, including SAP-specific attributes.
• Acquainted with myAuth (okta.mil) and DoD IdP integrations.
• Flexible time off benefit.
• Robust learning resources.
• Healthcare benefits.
• Wellness benefits.
• Financial benefits.
• Retirement benefits.
• Family support benefits.
• Continuing education benefits.
• Time off benefits.
• Competitive compensation.
• Opportunities for learning and development.
Spacedome Media GmbH
Koniag Government Services
Quid Solutions
Zayo Group
Get handpicked remote jobs straight to your inbox weekly.