PING Engineer
Listed on 2026-01-01
-
IT/Tech
Cybersecurity, Systems Engineer -
Engineering
Cybersecurity, Systems Engineer
The Opportunity:
You know that the user is the last frontier for cybersecurity. It’s where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals. As an Identity and Access Management (IAM) specialist, you have the skills and experience to keep hackers from taking data and breaking processes. We’re looking for someone like you to help our clients meet their missions without disruption.
Responsibilities:As an IAM engineer at Booz Allen, you’ll play a critical role in the world of IAM and zero trust. In this role, you’ll support large-scale IAM projects for our clients. You’ll interface with stakeholders and engineering teams to delve into the details and dependencies of critical processes and users’ roles within them.
You’ll analyze the identity lifecycle, articulating access requirements and defining enterprise identity records. You’ll use your experience in IAM to design, deploy, and support systems that verify appropriate user privileges and manage credentials for accessing our clients’ most valuable assets. From single sign-on to privileged access systems, you’ll have the chance to implement enterprise-class solutions and stop adversaries in their tracks.
YouHave:
5+ years of experience with Ping Federate, Okta, Entra , or ADFS
Experience with SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC)
Experience with Identity federation and Single Sign-On (SSO)
Experience with access control models such as RBAC and ABAC
Experience integrating IdPs with directory services, such as Active Directory (AD) and LDAP, including synchronization and authentication workflows
Knowledge of Zero Trust architectures and implementation of password-less authentication or multifactor authentication (MFA) within the IdP environment
Ability to resolve complex identity and federation issues, including token validation errors, assertion mismatches, and connectivity problems
Ability to design and operate IdP solutions across on-premises, hybrid, and cloud infrastructures, including AWS, Azure, or Google Cloud
Active TS/SCI clearance; willingness to take a polygraph exam
HS diploma or GED
Experience implementing System for Cross-domain Identity Management (SCIM) protocols for automated user provisioning and lifecycle management between identity providers and applications
Experience with advanced platform features such as Okta Workflows, Ping Identity Suite advanced policy scripting, adaptive authentication, and the development of custom login pages
Experience with scripting languages such as Python, Power Shell, or Bash to automate IdP configuration, monitoring, and remediation tasks
Knowledge of cloud-native IAM services, including Azure Active Directory, AWS IAM, or Google Cloud Identity
TS/SCI clearance with a polygraph
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
CompensationAt Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs.
Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).