2

Remote Okta Iam Jobs in Reston, VA (NOW HIRING)

Job Location: This is a remote-friendly position with occasional onsite requirements in the ... Architect, configure, andmaintainidentity platforms including Entra ID, Entra External ID, and Okta ...

ICAM Architect

Mclean, VA · On-site +1

$86K - $198K/yr

Remote Work: Hybrid Job Number: R0238565 Location: McLean,VA,US Share job via: Share ICAM Architect ... As an Identity and Access Management (IAM) specialist, you have the skills and experience to keep ...

Experience with commercial or enterprise IAM platforms such as Okta, ForgeRock, Oracle Identity ... privileged access management, remote identity verification, and credential management.

Experience with commercial or enterprise IAM platforms such as Okta, ForgeRock, Oracle Identity ... privileged access management, remote identity verification, and credential management.

... g., Okta or similar IAM tools, Active Directory, or LDAP). - Proven ability to manage access ... remote Minimum Requirements TCS217, T1, Band 4 #TSTECH EEO Statement Maximus is an equal ...

ICAM Security Engineer

Mclean, VA · On-site +1

$86K - $198K/yr

Remote Work: No Job Number: R0239449 Location: McLean,VA,US Share job via: Share ICAM Security ... You'll expand your IAM experience to design, deploy, and support systems that verify appropriate ...

ICAM Solutions Engineer

Mclean, VA · On-site +1

$86K - $198K/yr

Knowledge of using AWS IAM, Microsoft Entra ID, or Okta tools * Ability to design, implement, and ... Remote : If this position is listed as remote, there may still be occasions when you are required ...

Remote Okta Iam information

See Reston, VA salary details

$21.8K

$121.1K

$196.6K

How much do remote okta iam jobs pay per year?

As of Aug 12, 2026, the average yearly pay for remote okta iam in Reston, VA is $121,129.00, according to ZipRecruiter salary data. Most workers in this role earn between $99,400.00 and $148,800.00 per year, depending on experience, location, and employer.

What is a Remote Okta IAM specialist?

A Remote Okta IAM (Identity and Access Management) specialist is a professional who manages and oversees identity, authentication, and access controls for organizations using the Okta platform, all while working remotely. Their responsibilities typically include configuring Okta services, integrating applications, managing user permissions, and ensuring secure access to company resources. They also troubleshoot access issues, implement security policies, and help organizations maintain compliance with identity management best practices. The remote aspect means all tasks are performed off-site, often from home or another remote location.

What are the key skills and qualifications needed to thrive as a Remote Okta IAM specialist, and why are they important?

To thrive as a Remote Okta IAM Specialist, you need a solid understanding of identity and access management (IAM) principles, Okta platform administration, and relevant security best practices, typically supported by a degree in IT or cybersecurity and Okta certifications. Experience with Okta workflows, integration APIs, SSO, and multi-factor authentication systems is essential. Strong analytical thinking, problem-solving skills, and effective communication are crucial for collaborating with remote teams and addressing complex identity challenges. These skills ensure secure, efficient access management and support organizational compliance in distributed environments.

What are some common challenges faced by Remote Okta IAM professionals and how can they be addressed?

Remote Okta IAM professionals often encounter challenges such as managing secure access for distributed teams, integrating Okta with a variety of applications, and staying updated with evolving security protocols. Effective communication with cross-functional teams is crucial, as is proactively monitoring and troubleshooting identity and access issues. Regular training, leveraging Okta's documentation, and participating in user communities can help address these challenges while ensuring security best practices are maintained.

What is the difference between Remote Okta Iam vs Remote Identity and Access Management Specialist?

AspectRemote Okta IamRemote Identity and Access Management Specialist
CredentialsOkta certifications, IAM knowledgeIAM certifications, security credentials
Work EnvironmentRemote, tech-focused companiesRemote, cybersecurity or IT firms
Industry UsageTech, SaaS, enterprise ITCybersecurity, IT services
Search IntentImplementing Okta solutions remotelyManaging access security remotely

Remote Okta Iam specialists focus on deploying and managing Okta identity solutions, often requiring specific certifications. In contrast, Remote Identity and Access Management Specialists have broader roles in securing access across various platforms. Both roles are remote, industry-specific, and involve security expertise, but Okta Iam roles are more specialized in Okta products.

What are the most commonly searched types of Okta Iam jobs in Reston, VA? The most popular types of Okta Iam jobs in Reston, VA are:
What are popular job titles related to Remote Okta Iam jobs in Reston, VA? For Remote Okta Iam jobs in Reston, VA, the most frequently searched job titles are:
What job categories do people searching Remote Okta Iam jobs in Reston, VA look for? The top searched job categories for Remote Okta Iam jobs in Reston, VA are:
What cities near Reston, VA are hiring for Remote Okta Iam jobs? Cities near Reston, VA with the most Remote Okta Iam job openings:

IAM Lead

ICF

Washington, DC • Remote

Full-time

Posted 15 days ago


Job description

This role is contingent upon a contract award.

ICF is seeking an IAM Lead to architect, implement, andoperatethe identity and access management platform for a federal technology program.Reporting toengineering leadership, this role is the subjectmatterauthority on how users, devices, and applications authenticate and are authorized across a cloud-first, Zero Trust environment. The IAM Lead owns the full identity lifecycle, from onboarding automation to privileged access controls to external identity federation.

The ideal candidate is a senior identity engineer who has built and operated IAM programs in federal cloud environments. This is a deeply technical role. The right candidate understands not just the tooling but the underlying standards, can implement NIST identity assurance requirements, and can hold their own with cybersecurity and enterprise architecture teams on access policy design.

Job Location:This is a remote-friendly position with occasional onsite requirements in the Washington, DC Metro area.

This position requires that the job be performed in the United States.If you accept this position, you should note that ICF does monitor employee work locations and blocks access from foreign locations/foreign IP addressesand alsoprohibits personal VPN connections.

What You'll Be Doing

  • Architect, configure, andmaintainidentity platforms including Entra ID, Entra External ID, and Okta, covering authentication, authorization, provisioning, and lifecycle management across all users, applications, and devices.

  • Configure and enforce phishing-resistant authentication for all users, including passkeys, FIDO2 security keys,WebAuthn, and biometrics. Drive the transition away from legacy authentication methods toward a fullypasswordlessposture.

  • Define and implement Zero Trust access rules based on user risk, device health, location, and behavior using risk-based and conditional access policies.

  • Design, configure, andoperateauthorization models including RBAC, PBAC, and ABAC, with fine-grained permissions and attribute-based access rules aligned to job function and least-privilege principles.

  • Manage privileged accounts and administrative roles using privileged access management (PAM) and just-in-time elevation, ensuring that standing admin access isminimizedand all elevated access is logged and time-bound.

  • Build andmaintainHR-driven joiner, mover, and leaver automation, including automated provisioning, license assignment, role changes, access revocation, and data archival triggered by HR system events.

  • Federate external identities including partners, contractors, and external collaborators using Entra External ID or equivalent, including self-service registration,verificationworkflows, and consent management.

  • Configure identity proofing and verification to NIST IAL and AAL levels whererequired, coordinating with cybersecurity and compliance teams on assurance requirements.

  • Integrate applications and APIs with identity platforms using OIDC, OAuth2, SAML, and SCIM for single sign-on and automated provisioning.

  • Monitor sign-in activity, risk signals, and anomalies. Respond to identity-related incidents including account takeover, phishing, access abuse, and fraud in coordination with the cybersecurity team.

  • Maintain identity data quality and consistency across directories, HR systems, and applications, including synchronization, schema management, and attribute mapping.

  • Support compliance and audit activities by producing access reports, certifications, attestations, and evidence of controls.

  • Documentidentity architectures, configurations, standards, and runbooks. Provide guidance to application teams on how toonboard tocentral identity platforms and implement authentication best practices.

MinimumRequirements

  • Bachelor's degree or equivalent

  • 7+ years of experience in identity and access management engineering or a related discipline

  • 3+ years of hands-on experience designing and operating Entra ID or Okta in production environments, including conditional access, lifecycle management, and federation

  • 2+ years implementing PAM solutions and just-in-time elevation controls for privileged accounts

  • 2+ years configuring authorization models including RBAC, PBAC, or ABAC in enterprise environments

  • 2+ years supporting federal IT programs in HHS, NIH, FDA, or other health-focused agencies

  • U.S. Citizenshiprequireddue to federal contract requirements

  • Ability to obtain andmaintaina Public Trust background investigation

  • Candidate mustresidein the US,be authorized towork in the US, and work must be performed in the US

Preferred Qualifications

  • Experience implementing NIST SP 800-63 identity assurance levels (IAL/AAL) in a federal context

  • Experience federating external identities using Entra External ID, including self-service registration and consent workflows

  • Familiarity with FISMA, NIST 800-53, and Zero Trust architecture requirements as they apply to identity and access

  • Experience integrating identity platforms with HR systems for automated joiner, mover, and leaver workflows

  • Relevant certifications such as Microsoft Certified: Identity and Access Administrator, Okta Certified Administrator, or equivalent

  • Experience supporting identity incident response including account takeover, phishing, and access abuse investigations

Working at ICF

ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future.

We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer.Together, our employees are empowered to share theirexpertiseand collaborate with others to achieve personal and professional goals. For more information, please read ourEEOpolicy.

We will consider for employment qualified applicants with arrest and conviction records.

Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals withsincerely heldreligious beliefs, in all phases of the application and employment process. To requestan accommodation,please emailCandidateaccommodation@icf.comand we will be happy toassist. All information you provide will be kept confidential and will be used only to the extentrequiredto provide needed reasonable accommodations.

Read more aboutworkplacediscriminationrightsor our benefit offerings which are included in theTransparency in (Benefits) CoverageAct.

Candidate AI Usage Policy

At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate orassistwith responses during interviews (whether in-person or virtual) is notpermitted. This policy is in place tomaintainthe integrity and authenticity of the interview process.

However, we understand that some candidates may require accommodationthat involves the use of AI. Ifsuch anaccommodation is needed, candidates are instructed to contact us in advance atcandidateaccommodation@icf.com. Weare dedicated to providingthe necessary support to ensure that all candidates have an equal opportunity to succeed.


Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position.

The pay range for this position based on full-time employment is:

$108,006.00 - $183,610.00DC Remote Office (DC99)