
ICAM Identity Provider Engineer – Enterprise Authentication Services
Posted 56 min ago

Posted 56 min ago
This is a fully remote position, open to applicants in Virginia.
• Assist in the design, configuration, and ongoing support of enterprise Identity Provider services utilized by millions of Department of Defense users.
• Oversee and preserve the Microsoft Active Directory Federation Services infrastructure.
• Establish federation trust relationships with both internal and external Identity Providers, Service Providers, and mission partners.
• Implement and resolve issues related to authentication solutions employing SAML, OAuth 2.0, OpenID Connect, WS-Federation, and certificate-based authentication.
• Onboard and integrate applications into the authentication and federation ecosystem.
• Maintain policies for authentication, claims rules, attribute mappings, and configurations for token issuance.
• Provide support for enterprise Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, and phishing-resistant authentication.
• Collaborate with teams focused on cybersecurity, Active Directory, cloud, infrastructure, and application development.
• Contribute to the objectives of Zero Trust Architecture.
• Monitor, troubleshoot, and address issues related to authentication, federation, trust, certificates, and tokens.
• Ensure robust, highly available authentication services for mission-critical workloads.
• Create technical documentation, architecture diagrams, standard operating procedures, integration guides, and operational workflows.
• Engage in Agile development practices and continuous improvement initiatives.
• Identify technical risks and assist in identity modernization efforts.
• Must possess an Active Secret Clearance; Interim Secret is not acceptable.
• US Citizenship is mandatory.
• A Bachelor’s degree in a relevant technical field, or an equivalent combination of education, certifications, and experience is required.
• DoD 8570/8140 IAT Level II certification, such as Security+ CE or higher, is necessary.
• At least 3 years of experience in supporting Identity and Access Management (IAM), authentication, federation, or Identity, Credential, and Access Management (ICAM) technologies.
• Proven experience in supporting or implementing Microsoft ADFS in enterprise settings.
• Strong knowledge of authentication, authorization, and federation principles.
• Familiarity with SAML, OAuth, OIDC, WS-Federation, and related identity technologies is essential.
• Experience with Public Key Infrastructure (PKI), certificate-based authentication, smart cards, or MFA.
• Background in supporting application or API integrations with identity and federation platforms.
• Knowledge of Active Directory, LDAP, and enterprise identity repositories.
• Capability to configure or assist with claims rules, attribute mappings, or token policies.
• Experience with Windows or Linux server environments is required.
• Ability to document technical findings clearly and communicate effectively.
• Self-motivated with a desire to learn and advance in enterprise identity operations.
• Travel is required, but it will be less than 10% of the time.
• Comprehensive benefits and wellness packages.
• 401(k) plan with company matching.
• Competitive salary.
• Paid time off.
• Flexible work week.
• Medical plan options, some eligible for Health Savings Accounts.
• Dental plan options.
• Vision plan options.
• Opportunity to contribute both pre-tax and post-tax to a 401(k) up to IRS annual limits.
• Various leave options including vacation, sick, personal, holiday, paid parental, military, bereavement, and jury duty leave.
• 15 days of paid leave granted per calendar year for new employees.
• 10 paid holidays annually.
• Eligible employees can receive up to 160 hours of paid family leave within a rolling 12-month period.
• Short- and long-term disability benefits.
• Life insurance coverage.
• Accidental death and dismemberment insurance.
• Personal accident insurance.
• Critical illness insurance.
• Business travel and accident insurance.
• AI-driven career tool that identifies career paths and learning opportunities.
• Internal mobility team to support career movement.
• Opportunities for professional growth and development.
• A full-flex work week designed to promote work/life balance.
Databricks
Tailscale
Get handpicked remote jobs straight to your inbox weekly.