Identity & Directory Management Services Senior Engineer- Okta
- Vision , Medical , Dental , Paid Time Off , Life Insurance , Retirement
- Full-Time
Years of Experience: 7-12 years
Education Requirements: Bachelor's Degree
Position Description: DIGIT is seeking a Identity and Directory Management Services (IDMS) Senior Engineer with expertise with Okta to support the design, administration, management, execution & maintenance of GSA's Identity & Directory Management Services (IDMS) and Identity, Credential, and Access Management (ICAM) solutions to meet the needs of the enterprise users & the enterprise architecture. These services, systems, and capabilities include, but are not limited to, directory services management, ICAM, privileged account management, Single Sign-On (SSO), Active Directory (AD) Domain Name System (DNS) services, Public Key Infrastructure (PKI), Multi-Factor Authentication (MFA), auditing and log management, Continuous Diagnostics and Mitigation/Dynamic, Evolving Federal Enterprise Network Defense (CDM/DEFEND), and the management of appliances. GSA IT currently leverages Microsoft (MS) AD as the authoritative account management system.
Responsibilities:
The Identity and Directory Management Services Senior Engineer shall perform the following (to include but not limited to) activities:
Troubleshoot advanced problems within the Okta IdP by using tools such as SAML tracer, Fiddler and other similar tools.
Provide advanced support for IAM/SSO/MFA by troubleshooting a variety of difficult software problems, implementing bug fixes, and performing root cause analysis using agile methodologies.
Strong communication skills with customers over phone, email, or ticketing system.
Implement technical capabilities including IAM solutions and application integrations, to enhance enterprise security risk posture.
Intimately familiar with IAM related protocols such as SAML, SPML, XACML, SCIM, OAuth, OIDC, OpenID and REST APIs, and other security interfaces.
Strong experience with Directories, SSO, Federation, Delegated administration, API gateways, SOA services.
Manage, administer, and support the GSA IT MFA environment.
Manage, administer, and support ICAM systems and related support activities.
Utilize automation and role-based management to ensure availability of access and continuity of services.
Ensure requirements are gathered, processes defined, and use cases documented.
Test and certify new product versions, bug fix and provide detailed reports.
Providing on-call rotation support on a routine basis.
Identifying process improvement opportunities for review and subsequent implementation.
Providing positive customer service interactions for all levels of the organization up to and include senior executive staff.
Performing root cause analysis, risk identification, and risk mitigation.
Provide support and administration of the GSA IT AD environment, systems, and associated data.
Continuously review and assess the GSA IT ICAM environment and provide recommendations for how to manage and administer the environment more efficiently.
Ensure that all Group Policy Management (GPM) changes are controlled and documented.
Other operational support duties as assigned.
Provide Proof of Concepts and Pilots for Advancing Zero Trust and final implementation to transfer Zero Trust integration to infrastructure engineering support.
Developing new technologies to support existing applications or creating new applications using new technologies
Participating in meetings with executives to discuss technical issues and propose solutions
Collaborating with other members of the engineering team to design new features or improve existing ones
Escalate issues to vendor and third-party entities, as necessary and directed by the Government.
Requirements
Required Skills:
- Public Trust Clearance or ability to obtain.
- ITILv4 Foundation Training and ITILv4 Foundation Certification, may be obtained within 120 days after hire.
- Subject matter expertise engineering and supporting Okta.
- Possesses and applies a comprehensive knowledge across key tasks and high impact assignments.
- Plans and leads major technology assignments.
- Evaluates performance results and recommends major changes affecting short-term project growth and success.
- Functions as a technical expert across multiple project assignments.
- Design and develop solutions to complex applications problems, system administration issues, or network concerns.
- Perform systems management and integration functions
- Proven ability to work independently in a full and/or partial remote environment with limited supervision and may supervise/lead others.
- Possess the ability to communicate in both oral and written forms, demonstrating an ability to communicate effectively with all levels of staff as well as clients.
- Maintain standard working hours per the DIGIT contract and to be available for meetings, and other collaborative efforts during working hours.
- Demonstrated ability to apply comprehensive knowledge across key tasks and high impact assignments with the ability to use practical experience and training to determine how to accomplish tasks.
Preferred Skills:
Strong knowledge of the different identity and access management (IAM) concepts, technologies and authentication protocols.
Active Directory including but not limited to:
o Microsoft Active Directory
o Azure Active Directory
o NetIQ DRA
o NetIQ Group Policy Administrator (GPA)
o Active Directory Lightweight Directory Services
o Vulnerability Mitigation
Identity Management services operations including but not limited to:
o SailPoint IdentityIQ
o SecureAuth
o SAML 2.0
o Forefront Identity Manager/Microsoft Identity Manager
o Active Directory Federation Services
Experience with Splunk engineering and administration.
Experience with privileged access management (PAM) systems such as CyberArk.
Hands-on experience with cloud computing services (O365/Microsoft Azure/AWS).
Experience with SailPoint IdentityIQ integration and operations.
Experience with network architecture.
Powershell, java and .NET scripting.
An understanding of Zero Trust concepts.
Okta certification preferred.
Proficiency in the Google Suite (Gmail, Calendar, Chat, Meet, Docs, Slides, Sheets), Microsoft Office (Word, Excel, PowerPoint, Outlook), Slack, and ServiceNow.
Must be willing to work a variety of shifts, including holidays as scheduled.
Benefits
SES provides a competitive salary and the following benefits:
- Medical
- Dental
- Vision
- AD&D
- STD
- LTD
- Company paid Life Insurance
- 401k with employer contribution
- Paid Time Off
Address
Systems Engineering Solutions Corporation
Washington, DCIndustry
Technology
Get fresh Identity & Directory Management Services Senior Engineer- Okta jobs daily straight to your inbox!
You Already Have an Account
We're sending an email you can use to verify and access your account.
If you know your password, you can go to the sign in page.