
Migration Engineer
Posted 18 hours ago

Posted 18 hours ago
This is a fully remote position, open to applicants in Virginia.
• Implement the integration of designated NIPRNet applications into the ICAM technical framework utilizing Okta IdP and SailPoint IGA.
• Evaluate applications, analyze identity states, identify integration deficiencies, document risks, and establish enablement pathways.
• Set up and execute identity federation and SSO integrations using SAML, OAuth 2.0, OIDC, and SCIM.
• Create and deploy custom tools, scripts, connectors, and middleware for legacy systems.
• Provide guidance to Application Owners regarding authentication, authorization, RBAC, and ABAC configurations.
• Assist with application registration, credential issuance, non-PKI credential configuration, enrollment workflows, and redesign of access controls.
• Support Application Owners during UAT by providing sample code, reusable libraries or middleware, troubleshooting assistance, and defect resolution.
• Document findings from triage, configurations, risks, engagement activities, and application statuses in the Enablement Tracking Database.
• Execute the Application Owner Escalation Matrix and escalate unresolved cases to the Migration Team Lead.
• Collaborate with engineers, integration specialists, and the Migration Team Lead to address technical issues.
• Develop and enhance enablement playbooks, integration manuals, standard operating procedures, and technical documentation.
• Keep documentation updated regarding integration solutions, configurations, and architectural decisions.
• Assist with test plans, integration testing, software test reports, and UAT observations.
• Ensure adherence to DoD security standards, CUI handling, OPSEC, Section 508, and cybersecurity certification requirements.
• Stay informed about ICAM capabilities, identity protocols, and Zero Trust requirements.
• Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Information Systems, or a related discipline from an accredited institution.
• A minimum of 4 years of practical experience in information technology.
• At least 2 years of direct experience in identity and access management, enterprise application integration, or related cybersecurity fields.
• Proven experience in configuring and troubleshooting SSO integrations using SAML, OAuth 2.0, or OIDC in an enterprise setting.
• Experience working with Identity Provider (IdP) or Identity Governance and Administration (IGA) platforms in a technical integration role.
• Active Secret clearance.
• Ability to meet requirements for CAC-card issuance and NIPRNet access, including annual DoD CyberAwareness training and certification.
• Excellent technical communication skills in English, both written and verbal.
• Hands-on experience configuring Okta for SSO, MFA, and application integration, including Okta application integrations, Universal Directory, and identity federation.
• Practical experience with SailPoint IdentityIQ (IIQ), including connector configuration, automated provisioning and deprovisioning workflows, entitlement management, and access certification.
• Familiarity with SAML, OAuth 2.0, OIDC, and SCIM identity protocols through practical implementation experience.
• Experience in developing custom integration solutions, including scripts, connectors, APIs, or middleware.
• Knowledge of RBAC and ABAC design and implementation principles.
• Experience supporting or conducting UAT, including test case development, defect tracking, and resolution support.
• Ability to evaluate application integration readiness, identify technical gaps, and document findings effectively.
• Capability to maintain accurate, real-time documentation across multiple concurrent tasks.
• Familiarity with DoD security requirements, including CUI handling, OPSEC, DFARS 252.204-7012, and DoDM 8140.03.
• Ability to work independently and collaboratively under the supervision of a technical lead.
• Proficiency in Microsoft Office Suite and Microsoft Teams.
• Ability to acquire and maintain necessary DoD cybersecurity certifications as per DoDM 8140.03, such as Security+ for IAT II or its equivalent.
• Previous experience in DoD IT, federal contracting, Okta/SailPoint production, SOD, Zero Trust, technical documentation, enterprise migration, SCIM, Section 508, CDRL, Agile methodologies, and white-glove support is preferred or desired.
• Medical, dental, and vision insurance.
• 401(k) retirement plan.
• Paid time off.
• Paid parental leave.
• Life and disability insurance.
• Flexible spending accounts.
• Commuter benefits.
• Tuition reimbursement.
• Remote work arrangement.
• Potential occasional travel to Government facilities.
Canadian Solar Inc.
Canadian Solar Inc.
TOPPAN Group
Canadian Solar Inc.
Get handpicked remote jobs straight to your inbox weekly.