IAM Engineer
CACI International Inc · Vienna, VA · Yesterday
OTHR$113k–$238k/yrFull-time
About the role
CACI is seeking an experienced SailPoint IAM Engineer to join a dynamic, high-performing team responsible for operating and maintaining the Identity IQ platform for a government customer. In this role, the Identity and Access Management (IAM) engineer will provide technical guidance to the program manager and key stakeholders, specifically focusing on enterprise-scale projects and solutions. The IAM Engineer will play a critical role in implementing solutions designed by the IAM architect, ensuring that these solutions meet organizational needs and standards.
Responsibilities
- Implement IAM solutions to support PIV/Certificate Base Authentication and FIDO
- Engineer and maintain a secure and robust enterprise access management solution
- Facilitate and support IAM integration into business applications and third parties, including Single Sign On enablement using modern protocols (SAML, OAuth, Open ID Connect)
- Collaborate with customers to define organization constructs/naming conventions and user access roles
- Assist with the development of process and workflows to support IAM operation activities such as user onboarding, user lifecycle management and privilege access management
- Provide assistance with the integration of an Enterprise PKI solution
- Engage with, and advise stakeholders within the business on Identity and Access Management best practices
- Define, improve, and support Azure Entra ID and Privileged Access Management within the organization
- Identify areas for delivery of automated solutions (e.g. onboarding/offboarding) and maturation of existing processes by leveraging scripting
Qualifications
- Ability to obtain Department of Homeland Security (DHS) Entry On Duty (EOD) - Active EOD preferred
- BA/BS + 8 years of applicable experience; AA + 10 years’ applicable experience
- Experience in the Identity space with a background in identity management tools
- Strong knowledge of HSPD12 and implementation of government smart card authentication
- Expert knowledge of authentication with SAML, OAuth, OpenID, WSO2, and Kerberos
- Prior experience in providing RBAC solutions for cloud solutions (e.g. Azure)
- Strong scripting and automation abilities including PowerShell
- Understanding of Microsoft Azure PIM, Access Reviews, Service Principles, Managed Identities and ABAC
- Strong knowledge of enterprise PKI integration with SCEP and ACME clients
- Experience in creating technical architecture documentation
- Strong communication and written skills
Desired
- ITILv3 or v4 Foundation’s certification
- Previous DHS or DoD experience
- Microsoft Azure Fundamentals
- CompTIA A+, or Network+, or Security+
- Experience with Azure Cloud, scripting, and automation
Pay
The Proposed Salary Range For This Position Is $113,200 - $237,800