SME Systems Engineer (Azure AD)

GovCIO
Alexandria
Workplace: HybridFull timeUSD 135,000 - 172,000 annuallyFunction: IT Operations (Systems/Network Admin)Experience: 10+ yearsEducation: high_schoolSkills: []

Own and modernize enterprise Customer Identity and Access Management (CIAM) capabilities using Azure AD B2C to support ICAM modernization for the U.S. Coast Guard. Serve as technical authority for federation and interoperability, designing secure identity lifecycles, provisioning workflows, privilege management, and Zero Trust access controls. Configure PKI and credential systems, implement MFA/SSO/PAM, perform root-cause analysis, and develop custom identity interfaces and integration documentation.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GovCIO
GovCIO
1 week ago

SME Systems Engineer (Azure AD)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Own and modernize enterprise Customer Identity and Access Management (CIAM) capabilities using Azure AD B2C to support ICAM modernization for the U.S. Coast Guard. Serve as technical authority for federation and interoperability, designing secure identity lifecycles, provisioning workflows, privilege management, and Zero Trust access controls. Configure PKI and credential systems, implement MFA/SSO/PAM, perform root-cause analysis, and develop custom identity interfaces and integration documentation.
Location: Alexandria
Workplace: Hybrid
Employment Type: Full time
Job Function: IT Operations (Systems/Network Admin)
Seniority: Mid level

Key Responsibilities

  • •Lead modernization of legacy access controls into robust, secure ICAM solutions.
  • •Manage enterprise directories, federation, authentication, authorization, and SSO protocols.
  • •Architect identity lifecycles, user provisioning workflows, and privilege management controls.
  • •Design and deploy Zero Trust identity principles (NIST SP 800-207) across network hubs.
  • •Configure and manage PKI systems and implement access control systems including MFA, SSO, and PAM.

Pay and Benefits

Salary: USD 135,000 - 172,000 annually

Key Requirements

  • •Certifications: DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).
  • •Deep technical understanding of federated identity concepts including SAML, OAuth, OIDC, and Active Directory/LDAP architecture.
  • •Hands-on engineering experience managing Smart Card/Common Access Card (CAC) authentication and PKI certificate validation.
  • •Proven experience designing and applying federal Zero Trust identity guidelines (NIST SP 800-207) within enterprise networks.
  • •Must have an active Secret clearance.
Experience:10+ years
Education:High School
Certifications:DoD 8570 IAT Level IISecurity+ CECySA+Vendor-specific identity certifications
Languages:English
Tech Stack:Azure AD B2CCIAMFederation & InteroperabilitySAMLOAuthOIDCActive DirectoryLDAPSmart CardCommon Access Card (CAC)PKIMFASSOPAMZero TrustNIST SP 800-207RESTful API authorizationPower BISailPointOkta

Eligibility

Security Clearance:Secret

Company Brief

GovCIO
Provides IT modernization, cloud, cybersecurity, data analytics, and managed services to U.S. federal civilian and defense agencies, delivering technology solutions and mission support to improve government operations and security.
Industry: Professional Services
Growth: Established Company
Headquarters: Herndon, United States
WebsiteLinkedIn