ICAM Identity Provider (IdP) Engineer – Enterprise Authentication Services

Job not on LinkedIn

🔥 0 minutes ago

⚔️ Virginia – Remote

info

💵 $255k - $345k / year

⏰ Full Time

🟠 Senior

🔴 Lead

👷🏻‍♀️ Engineer

🦅 H1B Visa Sponsor

info
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of General Dynamics Information Technology

General Dynamics Information Technology

10,000+ employees

Founded 1954

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

General Dynamics Information Technology is a company at the forefront of technological innovation, offering a wide range of services including consulting, digital modernization, and application services. The company is heavily involved in implementing solutions related to artificial intelligence, cloud computing, cybersecurity, high-performance computing, and quantum technologies. GDIT is committed to supporting government and defense sectors, providing mission-critical services such as logistics and supply chain management, intelligence, and homeland security. The company also focuses on diverse and inclusive hiring practices and actively promotes employee well-being. Through its digital accelerator solutions and pioneering use of emerging technologies, GDIT aims to propel agencies' missions forward and address complex technological challenges.

📋 Description

• Serve as the enterprise technical lead and architect for Identity Provider services across the Department of Defense • Drive long-term ICAM strategy, modernization, and architectural governance • Architect, build, and evolve large-scale ADFS and modern IdP platforms • Define enterprise trust architectures, federation models, and cross-boundary identity integration patterns • Lead design and architecture of authentication solutions using SAML, OAuth, OIDC, WS-Federation, JWT, and certificate-based technologies • Set technical direction for onboarding applications, APIs, and enterprise services into the authentication ecosystem • Develop enterprise-wide policies, claims rule frameworks, token issuance patterns, identity assurance levels, and authorization logic • Provide principal-level oversight for MFA, phishing-resistant authentication, Conditional Access, and passwordless identity technologies • Act as senior escalation point for complex trust, certificate, federation, and token issues • Architect highly available, fault-tolerant authentication platforms with load balancing, multi-region resiliency, failover, and operational continuity • Produce architecture roadmaps, engineering standards, reference architectures, integration guides, and operational frameworks • Lead and mentor engineering teams during Agile development cycles • Identify enterprise risks, drive mitigation strategies, and advise senior leadership on authentication posture, ICAM modernization, and Zero Trust progress

🎯 Requirements

• Active Secret Clearance at minimum; interim Secret Clearances are not allowed • U.S. citizenship required • Bachelor’s Degree in a related technical discipline, or equivalent combination of education, technical certifications or training, or work experience • DoD 8570/8140 IAT Level II certification, Security+ CE or higher • 15+ years of experience in enterprise identity architecture, ICAM engineering, authentication platforms, or federation technologies • Deep expertise designing and leading enterprise-scale ADFS and IdP solutions • Experience architecting identity systems for large regulated environments supporting millions of users • Advanced understanding of authentication, authorization, identity assurance, federation protocols, and Zero Trust identity pillars • Strong experience with SAML, OAuth, OIDC, WS-Federation, JWT, PKI, smart card authentication, and MFA architectures • Architecture-level experience integrating mission applications and APIs with enterprise IdP and federation platforms • Expert-level proficiency with Active Directory, LDAP directories, identity repositories, and claims-based identity systems • Experience designing enterprise token rules, claims mappings, federation workflows, and trust policies • Expertise with Windows and Linux server platforms in identity contexts • Experience deploying identity COTS products in secure environments • Excellent communication skills and ability to guide engineers and influence leadership • Proven success driving large-scale identity initiatives from architecture through implementation • Desired experience with highly available ADFS farms, Web Application Proxy, load balancing, and disaster recovery • Desired experience with Microsoft Entra ID, PingFederate, PingAccess, PingDirectory, Okta, Keycloak, or similar platforms • Desired experience supporting DoD Enterprise ICAM, Federation Hub, or mission partner federation initiatives • Desired experience with coalition, partner, or cross-organizational federation environments • Desired experience with NIST 800-63 IAL, AAL, and FAL • Desired experience implementing phishing-resistant and passwordless authentication • Desired experience supporting Zero Trust Architecture and identity-centric security initiatives • Familiarity with PowerShell scripting, Docker, Kubernetes, enterprise monitoring, performance tuning, capacity planning, AD CS, enterprise PKI, DoD PKI, CAC authentication, derived credentials, and certificate lifecycle management

🏖️ Benefits

• Comprehensive benefits and wellness packages • 401K with company match • Competitive pay • Paid time off • Full-flex work week • AI-powered career tool identifying career steps and learning opportunities • Internal mobility team focused on career goals • Medical plan options, some with Health Savings Accounts • Dental plan options • Vision plan options • 401(k) contributions with company match • Vacation, sick, personal time, holiday, paid parental, military, bereavement, and jury duty leave • Typically 15 days of paid leave per calendar year • Additional 10 paid holidays per year • Up to 160 hours of paid family leave in a rolling 12-month period for eligible employees • Short- and long-term disability benefits • Life insurance • Accidental death and dismemberment insurance • Personal accident insurance • Critical illness insurance • Business travel and accident insurance • Award-winning culture of innovation • Military-friendly workplace

Apply Now

Similar Jobs

🔥 50 minutes ago

Gannett Fleming

1001 - 5000

🏗️ Construction

Principal Substation Engineer leading high-voltage substation design and project delivery. Supporting GFT’s power and utility engineering projects across the United States.

🔥 57 minutes ago

Guidehouse

10,000+ employees

🏥 Healthcare

🎖️ Defense

📦 Logistics

SailPoint Engineer designing and implementing enterprise IAM solutions for Guidehouse’s government and commercial clients. Developing IdentityIQ applications, integrations, and secure cloud-based services.

🔥 1 hour ago

PSC Biotech Corporation

201 - 500

💼 Consulting

🏥 Healthcare

🧬 Biotechnology

Validation Engineer I supporting computer systems validation and product releases for PSC Biotech’s life-sciences clients. Testing regulated systems, writing validation documentation, and ensuring compliance.

🔥 1 hour ago

Ryder System, Inc.

10,000+ employees

🚘 Automotive

💼 Consulting

🏥 Healthcare

Lead continuous improvement, engineering, and automation initiatives for Ryder, a transportation and supply chain services company. Improve warehouse operations across safety, quality, delivery, cost, and growth metrics.

🔥 3 hours ago

Miratech

501 - 1000

🤝 B2B

💼 Consulting

☁️ SaaS

Senior UC Engineer supporting Cisco Webex, SIP trunking, voice recording, and E911 platforms for Miratech’s enterprise IT clients. Managing incidents, vendors, monitoring, and collaboration services across the Americas.