
ICAM Operations Engineer – Enterprise Authentication Services
Posted 6 days ago

Posted 6 days ago
This is a fully remote position, open to applicants in United States.
• Deliver Tier III operational support for enterprise Identity Provider services utilized by millions of DoD users.
• Conduct daily operations, monitoring, and troubleshooting of Microsoft ADFS infrastructure.
• Investigate and resolve incidents related to authentication, federation trust, certificates, tokens, claims rules, and identity assertions.
• Manage ITSM incident, problem, and change tickets in collaboration with engineering, cybersecurity, and infrastructure teams.
• Assist with enterprise onboarding and integrations by validating application configurations and federation behavior.
• Troubleshoot issues involving SAML, OAuth 2.0, OpenID Connect, WS-Federation, and certificate-based authentication.
• Execute certificate lifecycle management, configuration updates, monitoring reviews, health checks, and patch validations.
• Maintain authentication policies, claims rules, attribute mappings, and token issuance settings.
• Support enterprise SSO, MFA, Conditional Access, and phishing-resistant authentication mechanisms.
• Contribute to the operational readiness of Zero Trust initiatives.
• Engage in Agile support and continuous improvement efforts.
• Document processes, incident resolutions, troubleshooting steps, and system behaviors.
• Active Secret Clearance is required; Interim Secret Clearances are not permitted.
• U.S. citizenship is mandatory.
• Bachelor’s Degree in a related technical field, or an equivalent combination of education, technical certifications, training, or work experience.
• DoD 8570/8140 IAT Level II certification (Security+ CE or a higher credential).
• A minimum of 5 years of experience, including at least 3 years in supporting IAM, Authentication, Federation, or ICAM-related technologies.
• Hands-on experience with Microsoft ADFS in enterprise operational settings.
• Strong comprehension of authentication, authorization, and federation principles.
• Knowledge of SAML, OAuth, OIDC, WS-Federation, certificates, and associated identity technologies.
• Experience with PKI, certificate-based authentication, smart cards, or MFA.
• Experience in supporting application integrations with identity/federation platforms.
• Familiarity with Active Directory, LDAP, and enterprise identity repositories.
• Strong troubleshooting abilities for identity/ADFS issues and Tier III diagnostics.
• Proficient in documenting findings and effectively communicating technical issues.
• Desired: experience with ADFS farms, WAP, load balancers, disaster recovery, modern identity platforms, DoD ICAM, NIST 800-63, phishing-resistant/passwordless authentication, PowerShell, monitoring, performance tuning, PKI/certificate services, CAC authentication, DoD credentialing, Docker, or Kubernetes.
• Comprehensive medical plan options, including plans with Health Savings Accounts.
• Dental plan options available.
• Vision plan included.
• 401(k) plan with company matching contributions.
• Flexible work weeks.
• Paid vacation, sick, personal, holiday, parental, military, bereavement, and jury duty leave.
• Typically 15 days of paid leave per calendar year.
• 10 paid holidays each year.
• Up to 160 hours of paid family leave in a rolling 12-month period for eligible employees.
• Short- and long-term disability benefits provided.
• Life insurance coverage.
• Accidental death and dismemberment insurance.
• Personal accident insurance offered.
• Critical illness insurance available.
• Business travel and accident insurance included.
• AI-driven career tool to identify career steps and learning opportunities.
• Internal mobility team available to support career aspirations.
• Recognized for an innovative culture and a military-friendly workplace.
Vitable Health
The Cigna Group
AmpiFire
Worldwide Clinical Trials
Get handpicked remote jobs straight to your inbox weekly.