Identity Management/Directory Services; IDMS) Subject Matter Expert; SME
Listed on 2026-10-01
-
IT/Tech
Cybersecurity, Systems Engineer
US CItizenship Required
Position Summary:
The IDMS Subject Matter Expert will provide senior technicalexpertisein enterprise identity, directory, authentication, authorization, federation, and access-management services supporting the Government Agency's modernization initiatives. The role will support current-state assessment, target-state architecture, modernization, integration, and operational-readiness activities performed under the Government Agency contract.
The SME will work across Government Agency enterprise architecture, cybersecurity, infrastructure, cloud, application, mobility, and project teams to ensure identity services are securely integrated into enterprise and field solutions. A major focus will be supporting the identity architecture required for large-scale field operations, including integration between Government Agency identity services, Microsoft Entra / Intune, Government Agency applications, and USPS-operated Android mobile devices.
The role will help enable secure transitions between USPS and Government Agency applications while meeting SSO, MFA, device-identity, and Zero Trust requirements.
- Serve as the senior technical SME for enterprise identity-management and directory-service architecture, engineering, integration, modernization, and troubleshooting.
- Assess current identity and directory architectures, configurations, integrations, security controls, operational processes, dependencies, scalability, and technical debt.
- Develop andmaintaincurrent-state, target-state, and transition architectures for identity-management capabilities supporting Government Agency enterprise and field solutions.
- Design and support enterprise SSO, federation, authentication, authorization, MFA, and identity lifecycle-management capabilities.
- Support Microsoft Entra n, Conditional Access, MFA, RBAC, identity lifecycle management, device identity, risk-based access, compliance checks, automated remediation, and other Zero Trust controls associated with the Government Agency endpoint environment.
- Design identity and access patterns supporting Government Agency applicationsoperatingon USPS Android devices, including secure transitions between USPS and Government Agency application contexts.
- Support identity integration between Microsoft Intune / Entra , USPS UEM capabilities, Government Agency applications, APIs, enterprise directories, PKI, cloud environments, and security-monitoring platforms.
- Design and troubleshoot federation using SAML 2.0, OAuth 2.0, OpenID Connect, and related identity standards.
- Support certificate-based authentication, PIV/CAC integration, application certificates, PKI, secrets, service identities, and non-human identities as required.
- Define and evaluate RBAC, least-privilege, privileged-access, service-account, and administrative-access models.
- Evaluate identity dependencies during cloud, application, mobile, and infrastructure modernization initiatives.
- Develop identity architecture diagrams, interface definitions, technical standards, security patterns, operating procedures, and integration documentation.
- Participate in architecture reviews, technical design reviews,eARBactivities, engineering working groups, requirements sessions, and solution assessments.
- Perform root-cause analysis for complex authentication, authorization, provisioning, federation, directory, synchronization, and application-access issues.
- Provide technical guidance, mentoring, and knowledge transfer to engineering, application, security, cloud, and operations teams.
- 8+ years of progressive experience in enterprise IAM, directory services, identity engineering, cybersecurity, systems engineering, ora related discipline.
- Strong hands-on experience with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).