Jobs Companies Ignite IT Identity Management / Directory Services (IDMS) Subject Matter Expert (SME)

Sobre este puesto de Identity Management / Directory Services (IDMS) Subject Matter Expert (SME) en Ignite IT

Ignite IT · Híbrido · Suitland, Maryland, United States

US CItizenship Required

Position Summary:

The IDMS Subject Matter Expert will provide senior technical expertise in enterprise identity, directory, authentication, authorization, federation, and access-management services supporting the Government Agency's modernization initiatives. The role will support current-state assessment, target-state architecture, modernization, integration, and operational-readiness activities performed under the Government Agency contract. 

The SME will work across Government Agency enterprise architecture, cybersecurity, infrastructure, cloud, application, mobility, and project teams to ensure identity services are securely integrated into enterprise and field solutions. A major focus will be supporting the identity architecture required for large-scale field operations, including integration between Government Agency identity services, Microsoft Entra ID / Intune, Government Agency applications, and USPS-operated Android mobile devices. The role will help enable secure transitions between USPS and Government Agency applications while meeting SSO, MFA, device-identity, and Zero Trust requirements. 

Key Responsibilities 

  • Serve as the senior technical SME for enterprise identity-management and directory-service architecture, engineering, integration, modernization, and troubleshooting. 
  • Assess current identity and directory architectures, configurations, integrations, security controls, operational processes, dependencies, scalability, and technical debt. 
  • Develop and maintain current-state, target-state, and transition architectures for identity-management capabilities supporting Government Agency enterprise and field solutions. 
  • Design and support enterprise SSO, federation, authentication, authorization, MFA, and identity lifecycle-management capabilities. 
  • Support Microsoft Entra ID integration, Conditional Access, MFA, RBAC, identity lifecycle management, device identity, risk-based access, compliance checks, automated remediation, and other Zero Trust controls associated with the Government Agency endpoint environment. 
  • Design identity and access patterns supporting Government Agency applications operating on USPS Android devices, including secure transitions between USPS and Government Agency application contexts. 
  • Support identity integration between Microsoft Intune / Entra ID, USPS UEM capabilities, Government Agency applications, APIs, enterprise directories, PKI, cloud environments, and security-monitoring platforms. 
  • Design and troubleshoot federation using SAML 2.0, OAuth 2.0, OpenID Connect, and related identity standards. 
  • Support certificate-based authentication, PIV/CAC integration, application certificates, PKI, secrets, service identities, and non-human identities as required. 
  • Define and evaluate RBAC, least-privilege, privileged-access, service-account, and administrative-access models. 
  • Evaluate identity dependencies during cloud, application, mobile, and infrastructure modernization initiatives. 
  • Develop identity architecture diagrams, interface definitions, technical standards, security patterns, operating procedures, and integration documentation. 
  • Participate in architecture reviews, technical design reviews, eARB activities, engineering working groups, requirements sessions, and solution assessments. 
  • Perform root-cause analysis for complex authentication, authorization, provisioning, federation, directory, synchronization, and application-access issues. 
  • Provide technical guidance, mentoring, and knowledge transfer to engineering, application, security, cloud, and operations teams. 

Requirements

Required Qualifications 

  • 8+ years of progressive experience in enterprise IAM, directory services, identity engineering, cybersecurity, systems engineering, or a related discipline. 
  • Strong hands-on experience with Microsoft Active Directory and Microsoft Entra ID. 
  • Strong knowledge of SAML, OAuth 2.0, OpenID Connect, LDAP, MFA, SSO, RBAC, federation, and identity lifecycle management. 
  • Experience designing IAM solutions across enterprise, cloud, hybrid-cloud, mobile, and application environments. 
  • Experience integrating identity services with enterprise applications, APIs, cloud platforms, mobile-device management / UEM, and security services. 
  • Demonstrated knowledge of Zero Trust identity principles, least privilege, privileged access, device identity, and risk-based authentication. 
  • Experience troubleshooting complex enterprise authentication and authorization issues. 
  • Experience developing architecture diagrams, technical requirements, integration specifications, standards, and operational documentation. 
  • Working knowledge of NIST security controls and federal cybersecurity environments. 
  • Strong written and verbal communication skills with the ability to collaborate across engineering, security, architecture, application, and program teams. 

Preferred Qualifications 

  • Experience with Okta Workforce Identity, Adaptive MFA, federation, lifecycle management, or comparable Identity-as-a-Service capabilities. 
  • Experience with OpenText / NetIQ Identity Manager, eDirectory, Identity Console, or comparable enterprise identity-orchestration platforms. 
  • Experience with Microsoft Intune and device-based Conditional Access. 
  • Experience with PIV/CAC and federal PKI environments. 
  • Experience supporting identity services hosted in AWS GovCloud or Azure Government. 
  • PowerShell, Python, Java, REST API, or other identity automation and integration experience. 
  • ServiceNow integration and ITIL-based operations experience. 
  • Experience supporting a federal statistical agency, large civilian agency, or comparably complex federal environment. 
  • Relevant certifications in Microsoft Identity, Okta, cloud security, IAM, cybersecurity, or identity governance. 

Core Competencies 

  • Enterprise identity architecture and engineering 
  • Identity lifecycle and account orchestration 
  • SSO, federation, MFA, and PIV integration 
  • Cloud and hybrid IAM modernization 
  • Mobile and device identity integration 
  • Complex identity troubleshooting 
  • Security, compliance, and Zero Trust 
  • Automation, integration, and technical documentation 

Benefits

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Flexible spending account
  • Health insurance
  • Life insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Tuition reimbursement
  • Vision insurance
¿Listo para postularte en Ignite IT?
Postúlate en Ignite IT

Sobre Ignite IT

At Ignite IT, we work to Win the Future Together with you!
  • We help our customers win – delivering breakthrough digital innovations that transform large federal agencies.
  • We position our employees to win – embracing a culture of advancement and growth through excellence and executing the best ideas.
  • We ensure our partners win – providing the capabilities that earn the most valuable contracts.
Join the Ignite IT Team and work alongside some of the best and brightest professionals in the GovCon industry delivering world-class cybersecurity, Agile, DevSecOps, Cloud, AI, Low code/No code, and Human Centered Design solutions. Office in Virginia and Florida, Ignite IT holds CMMI-SVC/3, ISO 20000-1:2018, ISO 27001:2013, and ISO 9001:2015 certifications. Learn more at www.igniteitservices.com

Ver todos los empleos en Ignite IT →

Empleos similares

Ignite IT
Senior ITSM Engineer Subject Matter Expert (SME)
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 20h
Ignite IT
Senior USPS Android Mobility & UEM Integration SME
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 20h
Ignite IT
Senior Technical Lead
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 4d
Ignite IT
Senior Data Scientist
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 4d
Ignite IT
Senior Model Evaluation Analyst
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 6d
Ignite IT
Senior AI/ML Engineer
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 6d
Ignite IT
Senior MLOps Engineer
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 6d
Ignite IT
Jr. AI Prompt Engineer
Ignite IT
⚡ Postúlate pronto Ashburn, Virginia, United Stat... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 1sem
Ignite IT
Program Manager
Ignite IT
⚡ Postúlate pronto Suitland, Maryland, United Sta... Presencial
● Nuevo 👁 Visto ✓ Postulado hace 1 mes

Regístrate para recibir sugerencias adaptadas a los empleos que abres y las búsquedas que guardas.

Más empleos en Ignite IT

Ver todos los empleos en Ignite IT →

Postúlate ahora
🤖

Un momento — para

JobsRadar se creó para personas reales que están pasando un mal momento en su búsqueda de empleo — no para solicitudes automatizadas. Estás haciendo clic demasiado rápido y ahora estás bloqueado temporalmente.

Vuelve más tarde. Si de verdad estás buscando empleo, cuentas con nosotros — solo compórtate como una persona.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Toma ventaja en tu búsqueda de empleo.

Únete a nuestro canal de Telegram para lo que te ayuda a conseguir el puesto — referencias salariales, el pulso semanal del mercado y avisos de nuevas funciones. Sin spam, solo señal.

Únete al canal — es gratis