ICAM Identity Provider (IdP) Engineer – Enterprise Authentication Services

🕒 August 6

🇺🇸 United States – Remote

💵 $170k - $230k / year

⏰ Full Time

🟠 Senior

🔴 Lead

👷🏻‍♀️ Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 4%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of General Dynamics Information Technology

General Dynamics Information Technology

10,000+ employees

Founded 1954

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

General Dynamics Information Technology is a company at the forefront of technological innovation, offering a wide range of services including consulting, digital modernization, and application services. The company is heavily involved in implementing solutions related to artificial intelligence, cloud computing, cybersecurity, high-performance computing, and quantum technologies. GDIT is committed to supporting government and defense sectors, providing mission-critical services such as logistics and supply chain management, intelligence, and homeland security. The company also focuses on diverse and inclusive hiring practices and actively promotes employee well-being. Through its digital accelerator solutions and pioneering use of emerging technologies, GDIT aims to propel agencies' missions forward and address complex technological challenges.

📋 Description

• Design, develop, configure, and maintain enterprise Identity Provider (IdP) services supporting over 4 million enterprise identities • Engineer, administer, and sustain Microsoft Active Directory Federation Services (ADFS) infrastructure • Configure and maintain federation trust relationships with internal and external IdPs, SPs, and mission partners • Design, implement, and troubleshoot authentication solutions using SAML 2.0, OAuth 2.0, OIDC, WS-Federation, and certificate-based authentication • Support onboarding and integration of enterprise applications into the authentication and federation ecosystem • Develop authentication policies, claims rules, attribute mappings, token issuance policies, and authorization workflows • Support SSO, MFA, Conditional Access, and phishing-resistant authentication capabilities • Collaborate with cybersecurity, Active Directory, cloud, infrastructure, and application teams • Support Zero Trust Architecture through modern authentication, federation, and identity assurance capabilities • Monitor, troubleshoot, and resolve complex authentication, federation, trust, certificate, token, and identity assertion issues • Engineer highly available and resilient authentication services for mission-critical enterprise applications • Develop technical documentation including architecture diagrams, integration guides, SOPs, TTPs, operational procedures, and onboarding documentation • Participate in Agile development activities and continuous service improvement initiatives • Manage technical risks and contribute to enterprise identity modernization efforts

🎯 Requirements

• Active Secret Clearance; interim Secret Clearances are not allowed • Bachelor’s Degree in a related technical discipline, or equivalent combination of education, technical certifications or training, or work experience • DoD 8570/8140 IAT Level II certification, Security+ CE or higher • Minimum 8 years of experience supporting IAM, authentication, federation, or ICAM solutions in government or regulated environments • Strong experience designing, implementing, and supporting Microsoft ADFS • Extensive experience implementing enterprise IdP services for large user populations • Strong understanding of authentication, authorization, federation, and identity assurance • Experience with SAML 2.0, OAuth 2.0, OIDC, WS-Federation, and JWT • Experience with PKI, certificate-based authentication, smart card authentication, and MFA • Experience integrating applications, APIs, and enterprise services with federation platforms • Experience with Active Directory, LDAP directories, and enterprise identity repositories • Experience configuring claims, attribute mappings, policy enforcement, token transformations, and federation workflows • Experience supporting Linux and/or Windows Server environments • Experience deploying and supporting enterprise COTS products in secure customer environments • Experience working in Agile development environments and associated tools • Strong written and verbal communication skills • Ability to drive complex technical efforts to completion • Desired: highly available ADFS farms with WAP, load balancing, and disaster recovery • Desired: Microsoft Entra ID, PingFederate, PingAccess, PingDirectory, Okta, Keycloak, or similar platforms • Desired: DoD Enterprise ICAM, Federation Hub, or mission partner federation experience • Desired: coalition, partner, or cross-organizational federation experience • Desired: NIST 800-63 IAL, AAL, and FAL experience • Desired: phishing-resistant and passwordless authentication experience • Desired: Zero Trust Architecture and identity-centric security experience • Desired: PowerShell scripting and automation • Desired: enterprise monitoring, performance tuning, and capacity planning • Desired: Active Directory Certificate Services and enterprise PKI • Desired: Docker and Kubernetes • Desired: DoD PKI, CAC authentication, derived credentials, and certificate lifecycle management • Desired: highly available, mission-critical enterprise authentication environments • US Citizenship Required • Scheduled weekly hours: 40 • Travel required: less than 10%

🏖️ Benefits

• Comprehensive benefits and wellness packages • 401K with company match • Competitive pay • Paid time off • Full-flex work week • AI-powered career tool identifying career steps and learning opportunities • Internal mobility team focused on career goals • Award-winning culture of innovation • Military-friendly workplace • Medical plan options, some with Health Savings Accounts • Dental plan options • Vision plan • 401(k) contributions with pre-tax and post-tax options up to IRS annual limits and company match • Vacation, sick, personal, holiday, paid parental, military, bereavement, and jury duty leave • 15 days of paid leave per calendar year for new employees, prorated based on hire date • 10 paid holidays per year • Up to 160 hours of paid family leave in a rolling 12-month period for eligible employees • Short- and long-term disability benefits • Life insurance • Accidental death and dismemberment insurance • Personal accident insurance • Critical illness insurance • Business travel and accident insurance

Apply Now

Similar Jobs

🕒 August 6

Humana

10,000+ employees

🏥 Healthcare

🛡️ Insurance

⚕️ Healthcare Insurance

Senior Decision Intelligence Engineer improving reinforcement-learning policies for Humana's healthcare recommendation platform. Building and operating large-scale decision systems within clinical eligibility and program constraints.

PySpark

Python

PyTorch

Ray

Tensorflow

🕒 August 6

OpenAI

201 - 500

🤖 Artificial Intelligence

☁️ SaaS

🏢 Enterprise

PCBA Manufacturing Engineer sustaining printed circuit assembly production for OpenAI’s hyperscale AI infrastructure. Driving yield, quality, failure analysis, and manufacturing improvements with hardware and supplier teams.

🇺🇸 United States – Remote

💵 $209k - $365k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👷🏻‍♀️ Engineer

🦅 H1B Visa Sponsor

infoinfo

Assembly

🕒 August 6

RailWorks Corporation

1001 - 5000

🏗️ Construction

🚗 Transport

🤝 B2B

OCS Engineer managing overhead contact and traction power systems for RailWorks, North America’s rail maintenance and infrastructure provider. Overseeing design, procurement, construction, testing, and commissioning.

🇺🇸 United States – Remote

💵 $125k - $175k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

👷🏻‍♀️ Engineer

🦅 H1B Visa Sponsor

infoinfo

🕒 August 6

Miratech

501 - 1000

🤝 B2B

💼 Consulting

☁️ SaaS

Senior UC Engineer administering Webex, SIP, voice recording, and collaboration platforms for Miratech, a global IT services company. Managing incidents, vendors, monitoring, CDRs, and enterprise communications across the Americas.

🇺🇸 United States – Remote

💰 Private Equity Round on 2022-04

⏰ Full Time

🟠 Senior

👷🏻‍♀️ Engineer

Splunk

🕒 August 6

n8n

11 - 50

💼 Consulting

📦 Logistics

🏭 Manufacturing

Forward Deployed Engineer building production automation workflows for n8n, an open workflow orchestration platform. Embedding with enterprise customers, shaping reusable integrations, product features, and deployment playbooks.

🇺🇸 United States – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👷🏻‍♀️ Engineer