Senior Identity and Access Management Engineer
Listed on 2026-06-03
-
Engineering
Systems Engineer, Data Engineering, Cybersecurity -
IT/Tech
Systems Engineer, Data Engineering, Cybersecurity
Position: Senior Identity and Access Management Engineer
Location: Knoxville, TN
Job : 524
# of Openings: 1
Senior Identity and Access Management EngineerFounded in 1999 in the beautiful Smoky Mountains of East Tennessee, Cadre5 provides innovative technical solutions to our customers locally and nationally. Our Cadre5 Lab Partners division has partnered with the National Center for Computational Sciences (NCCS) at Oak Ridge National Laboratory (ORNL) to recruit a qualified Senior Identity and Access Manager Engineer for the American Science Cloud (AmSC) initiative.
AmSC is a first-of-its-kind, federally funded cloud infrastructure and API platform designed to accelerate AI model development, data sharing, and large-scale computational science across the U.S. Department of Energy (DOE). ORNL is a premier research institution delivering breakthroughs in energy, national security, and advanced computing.
ORNL delivers scientific discoveries and technical breakthroughs needed to realize solutions in energy and national security and provides economic benefit to the nation. This premier research institution located near Knoxville in Oak Ridge, TN, addresses national needs through impactful research and world-leading research centers.
*
* Please note:
The first step in the interview process requires candidates to join a Microsoft Teams meeting with the video turned on.**
This is a full-time position that can telecommute. Occasional travel to the Oak Ridge facility may be required.
Why Cadre5?- Working with highly talented team members
- Excellent medical insurance, including employer-paid benefits
AmSC is a secure, federated, and science-optimized cloud environment that integrates the DOE’s world-leading computing and experimental facilities, data resources, and high-performance networks. The AmSC platform enables DOE scientists to create, access, and integrate world-class AI-ready datasets, run scalable model training on leadership-class systems, perform distributed simulations, control instruments, and move data efficiently across sites.
The project is a multi-Lab and Public-Private Partnership endeavor, working in tandem with the Models Consortium (Mod Con) who will deploy transformative AI models and services to the platform. Key DOE capabilities, such as the Frontier (ORNL), Aurora (ANL), Perlmutter (NERSC, at LBL), Energy Services Network (ESnet, at LBL), and the High Performance Data Facility (HPDF, at JLab) will be directly integrated, allowing multi-site workflows.
TheTeam:
As an Identity and Access Management Engineer you will work within the L2 Infrastructure Services group of AmSC to support identity management solution architecture, deployment and administration on our multi‑cloud central hub infrastructure. The AmSC identity infrastructure supports teams from many different DOE labs and locations deploying a variety of AI and HPC services both on‑prem and in cloud environments.
Your primary responsibilities will be to design and build an Identity Management platform and federation hub that promote collaboration within the AmSC, enabling researchers to seamlessly leverage AmSC infrastructure and services for their projects. You will be one of the first full‑time AmSC staff members, and this presents a unique opportunity to build something new and exciting.
Job Responsibilities:- Lead the architecture, development and implementation of an Identity and Access Management platform using the Ping suite of products
- Contribute to workflow design, API development, and collaborate with application developers and owners to establish robust integrations
- Plan, execute and document application onboarding of a diverse and growing application set
- Collaborate with IAM personnel from other organizations to design, build and administer a federation hub, allowing users to access resources at any participating facility
- Build out and enable ABAC, RBAC, least privilege access and other common IAM standards
- Deploy, configure and support identity and access management services such as single sign on (SSO), OAuth, MFA, zero trust, etc….
- Lead incident response, providing advanced troubleshooting and building out of…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).