
ICAM Engineer
Posted Sep 3

Posted Sep 3
This is a fully remote position, open to applicants in United States.
β’ Design, develop, and sustain ICAM solutions utilizing Okta Identity Cloud.
β’ Provide support for Workforce Identity, SSO, MFA, and adaptive authentication to meet federal identity requirements.
β’ Integrate Okta with client credential systems, certificate-based authentication, PKI validation, and government identity providers.
β’ Configure and assist with SAML, OIDC, and OAuth federation across government applications, platforms, and on-premises enterprise systems.
β’ Develop and oversee identity lifecycle processes that align with federal access control policies, RBAC/ABAC models, and authoritative identity sources.
β’ Implement Zero Trust identity principles, including robust authentication, device trust, continuous validation, and least-privilege access.
β’ Create automation and identity workflows using Okta Workflows, APIs, and scripting tools.
β’ Troubleshoot authentication workflows, PKI chains, SSO integrations, and SCIM provisioning.
β’ Ensure adherence to NIST 800-63, FICAM architecture standards, DoD IdAM policies, and FedRAMP security controls.
β’ Collaborate with cybersecurity teams, cloud engineers, and system owners on the secure integration of identity for mission systems.
β’ Contribute to ICAM modernization roadmaps, ATO support documentation, and ongoing enhancements to identity posture.
β’ Must be a US Citizen.
β’ 5β8+ years of experience in ICAM/IAM engineering within federal or governmental settings.
β’ 3β5+ years of direct experience in administering, integrating, and federating with Okta Identity Cloud.
β’ Practical knowledge of PIV/CAC-based authentication, PKI trust chains, certificate mapping, and federation with federal IdPs.
β’ Strong comprehension of SAML, OIDC, OAuth, SCIM provisioning, Active Directory, and Azure AD.
β’ Experience with identity policies, RBAC/ABAC, account lifecycle management, and enterprise identity governance.
β’ Proficient in PowerShell, Python, or Bash automation.
β’ Familiarity with Zero Trust identity architecture, particularly in federal or DoD settings.
β’ Excellent skills in documentation, communication, and collaboration.
β’ Preferred experience supporting ICAM modernization initiatives in federal agencies or DoD environments.
β’ Preferred certification as an Okta Professional or Consultant.
β’ Familiarity with NIST SP 800-63, NIST CSF, OMB ICAM guidance, DoD Zero Trust Strategy, and FedRAMP controls is preferred.
β’ Preferred experience in integrating identity services with Azure Government or on-premises mission systems.
β’ Competitive salary.
β’ Comprehensive health insurance coverage.
β’ Dental insurance.
β’ Vision insurance.
β’ Paid life insurance.
β’ Paid time off.
β’ 11 paid holidays.
β’ Performance bonuses.
β’ Tuition reimbursement.
β’ Unlimited training opportunities.
β’ A collaborative, flexible, and innovative work environment.
Mercor
RTX
Expel
Qualus
Get handpicked remote jobs straight to your inbox weekly.