SME Systems Engineer; Azure AD
Job in
Alexandria, Fairfax County, Virginia, 22336, USA
Listed on 2026-10-09
Listing for:
Govcio
Full Time
position Listed on 2026-10-09
Job specializations:
-
IT/Tech
Cybersecurity, Systems Engineer, Information Security & Data Protection
Job Description & How to Apply Below
GovCIO is currently hiring a highly experienced SME Systems Engineer specializing in Federation & Interoperability (FI) with a primary focus on Customer Identity and Access Management (CIAM) via Azure AD B2C. This technical role supports critical Identity, Credential, and Access Management (ICAM) modernization activities for the U.S. Coast Guard (USCG). This position focuses on designing, engineering, and executing secure, identity-centric access control frameworks across legacy and modern enterprise architectures.
This position will be located in Alexandria, VA, and will be a hybrid position.
Responsibilities The SME Systems Engineer / ICAM Engineer will serve as a primary technical authority for the enterprise identity management and access control framework. Core responsibilities include:
Lead Modernize legacy access controls into robust, secure ICAM solutions.
Manage enterprise directories, federation, authentication, authorization, and SSO protocols.
Architect identity life cycles, user provisioning workflows, and privilege management controls.
Design and deploy strict Zero Trust identity principles (NIST SP 800-207) across network hubs.
Configure and manage enterprise-grade PKI systems, credentials, and authenticators.
Implement logical and physical access control systems, including MFA, SSO, and PAM.Build federated identity services to enable secure interoperability with mission partners.
Conduct technical root cause analysis, privilege audits, and system performance tuning.
Develop custom technical interfaces, architectures, data flows, and compliance documentation.
Provide advanced engineering and architecture ownership across the following specialization:
Azure AD B2C / CIAM (Primary Product Area:
Federation & Interoperability (FI)):
Own the technical lifecycle of the Customer Identity and Access Management (CIAM) platform. Engineer all custom policies and user flows, architect the integration of new external-facing applications, and seQualifications
High School with 10+ years (or commensurate experience)
Clearance Level: Must have an active Secret clearance
Required Skills & Experience
Certifications:
DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).Deep technical understanding of federated identity concepts, including SAML, OAuth, OIDC, and Active Directory / LDAP architecture.
Hands-on engineering experience managing Smart Card / Common Access Card (CAC) authentication and PKI certificate validation.
Proven experience designing and applying federal Zero Trust identity guidelines (NIST SP 800-207) within enterprise networks.
Preferred Skills & Experience Prior experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) identity management programs.
Familiarity with integrating data governance frameworks with ICAM solutions to enforce data-level access controls.
Direct experience with enterprise identity tools such as SailPoint, Okta, Microsoft Entra , Ping Identity, Digi Cert, or Power BI.Advanced knowledge of RESTful API authorization protocols, secure gateways, and data schema security standards.
#USCG #DICEPosted Salary RangeUSD $ - USD $ /Yr.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×