SME Systems Engineer (Entra)

GovCIO
Alexandria
Workplace: HybridFull timeUSD 135,000 - 172,000 annuallyFunction: IT Operations (Systems/Network Admin)Experience: 10+ yearsEducation: high_schoolSkills: []

Serve as a primary technical authority for enterprise identity management and access control, leading ICAM modernization supporting the U.S. Coast Guard. Architect and deploy Zero Trust identity principles, design identity lifecycles and privileged access controls, and manage federated authentication/authorization (SSO, MFA, PAM). Own Microsoft Entra tenant engineering and Entra Connect Sync, conduct root-cause analysis and privilege audits, and configure PKI and secure interoperability for mission partners.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GovCIO
GovCIO
1 week ago

SME Systems Engineer (Entra)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Serve as a primary technical authority for enterprise identity management and access control, leading ICAM modernization supporting the U.S. Coast Guard. Architect and deploy Zero Trust identity principles, design identity lifecycles and privileged access controls, and manage federated authentication/authorization (SSO, MFA, PAM). Own Microsoft Entra tenant engineering and Entra Connect Sync, conduct root-cause analysis and privilege audits, and configure PKI and secure interoperability for mission partners.
Location: Alexandria
Workplace: Hybrid
Employment Type: Full time
Job Function: IT Operations (Systems/Network Admin)
Seniority: Mid level

Key Responsibilities

  • •Lead the modernization of legacy access controls into robust, secure ICAM solutions.
  • •Manage enterprise directories, federation, authentication, authorization, and SSO protocols.
  • •Architect identity lifecycles, user provisioning workflows, and privilege management controls.
  • •Design and deploy Zero Trust identity principles (NIST SP 800-207) across network hubs.
  • •Serve as the definitive technical owner for the Microsoft Entra tenant, including security policies, conditional access architecture, Entra Connect Sync, and Entra ID Governance (PIM and Access Reviews).

Pay and Benefits

Salary: USD 135,000 - 172,000 annually

Key Requirements

  • •High School with 10+ years (or commensurate experience).
  • •DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).
  • •Deep technical understanding of federated identity concepts including SAML, OAuth, OIDC, and Active Directory/LDAP architecture.
  • •Hands-on experience managing Smart Card/CAC authentication and PKI certificate validation.
  • •Must have an active Secret clearance.
Experience:10+ years
Education:High School
Certifications:DoD 8570 IAT Level IISecurity+ CECySA+
Languages:English
Tech Stack:Identity Management (IdM)Microsoft EntraEntra Connect SyncEntra ID GovernancePrivileged Identity Management (PIM)Access ReviewsZero TrustNIST SP 800-207Zero Trust identity principlesSAMLOAuthOIDCActive DirectoryLDAPSmart CardCommon Access Card (CAC)PKIMFASSOPAM

Eligibility

Security Clearance:Secret

Company Brief

GovCIO
Provides IT modernization, cloud, cybersecurity, data analytics, and managed services to U.S. federal civilian and defense agencies, delivering technology solutions and mission support to improve government operations and security.
Industry: Professional Services
Growth: Established Company
Headquarters: Herndon, United States
WebsiteLinkedIn