Role OverviewGDIT has an opportunity for an ICAM Engineer supporting a large line of business that delivers enterprise-scale Identity, Credential, and Access Management (ICAM) capabilities. This role supports the DoD ICAM mission by designing, developing, integrating, and maintaining enterprise Identity Provider (IdP) services that provide secure authentication and federation for more than 4 million enterprise identities across the Department of Defense. This is an onsite position at Ft Meade, MD.
What You Will Do
Design, develop, configure, and maintain enterprise Identity Provider (IdP) services supporting over 4 million enterprise identities. Engineer, administer, and sustain Microsoft Active Directory Federation Services (ADFS) infrastructure supporting enterprise authentication and federation. Configure and maintain federation trust relationships with internal and external Identity Providers (IdPs), Service Providers (SPs), and mission partners. Support onboarding and integration of enterprise applications into the authentication and federation ecosystem.
Why It Might Be a Fit
The ideal candidate is a senior hands-on identity engineer with expertise in Microsoft Active Directory Federation Services (ADFS), enterprise authentication, federation technologies, and modern identity protocols. This role focuses on delivering highly available authentication services, federation trust management, single sign-on (SSO), multi-factor authentication (MFA), and secure application integration across a large-scale enterprise environment. The likely salary range for this position is $153,000 - $207,000.
Requirements
- Active Secret Clearance at minimum. Interim Secret Clearances are not allowed.
- Bachelor’s Degree in a related technical discipline, or the equivalent combination of education, technical certifications or training, or work experience.
- DoD 8570/8140 IAT Level II certification (Security+ CE or higher)
- Minimum of 8 years of experience supporting Identity and Access Management (IAM), Authentication, Federation, or ICAM solutions within government or regulated environments
- Strong experience designing, implementing, and supporting Microsoft Active Directory Federation Services (ADFS).
- Extensive experience implementing enterprise Identity Provider (IdP) services supporting large user populations.
- Strong understanding of authentication, authorization, federation, and identity assurance concepts
- Experience implementing and troubleshooting SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and JWT technologies
- Experience supporting PKI, certificate-based authentication, smart card authentication, and MFA solutions
- Experience integrating applications, APIs, and enterprise services with federation platforms
- Experience with Active Directory, LDAP directories, and enterprise identity repositories
- Experience configuring claims, attribute mappings, policy enforcement, token transformations, and federation workflows
- Experience supporting Linux and/or Windows Server environments
- Experience deploying and supporting enterprise COTS products in secure customer environments
- Experience working in Agile development environments and utilizing associated tools
- Strong written and verbal communication skills
- Self-starter capable of driving complex technical efforts to completion
Benefits
- Medical plan options with Health Savings Accounts
- Dental plan options
- Vision plan
- 401(k) plan with company match
- Full flex work weeks
- Paid time off including vacation, sick, personal time, holidays
- Paid parental leave
- Paid military leave
- Paid bereavement leave
- Paid jury duty leave
- Short-term disability benefits
- Long-term disability benefits
- Life insurance
- Accidental death and dismemberment insurance
- Personal accident insurance
- Critical illness insurance
- Business travel and accident insurance
]]>