Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Amentum

Senior IdAM Engineer – IRES

Amentum

. Engineer, deploy, automate, secure, and sustain the IdAM/ICAM ecosystem supporting the Missile Defense Agency’s unified digital environment .

Posted 9/28/2026full-timeUnited StatesSenior💰 $175,000 - $220,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in Identity, Credential, and Access Management (IdAM/ICAM) solutions, including SailPoint IdentityIQ and PingFederate, while implementing secure identity architectures across hybrid multi-cloud environments. Proficient in developing automation scripts and managing enterprise identity solutions within DoD compliance frameworks.

Highest-signal resume keywords
Identity, Credential, And Access Management (IdAM/ICAM)SailPoint IdentityIQPingFederate Federation And SSO ServicesMicrosoft Entra ID And AWS IAMDoD/NSS PKI Components

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Identity Lifecycle WorkflowsRBAC/ABACJava RulesSAML 2.0OAuth 2.0OIDCPowerShellBashPythonAutomation Scripts
Soft Skills
Technical LeadershipMentoringCollaboration
Tools & Technologies
Active Directory Domain Services (AD DS)Active Directory Federation Services (AD FS)KerberosLDAP/SMulti-Forest Environments
Certifications & Qualifications
DoD 8140/8570 IAT Level IISecurity+ CECySA+CASP+ CECISSP
Industry Keywords
Missile Defense Agency (MDA)Zero Trust PoliciesDISA STIGsRMFCertificate Lifecycle Management

Tech Stack

Tools & technologies
AWSCloudJavaPython

About the role

Key responsibilities & impact
  • Engineer, deploy, automate, secure, and sustain the IdAM/ICAM ecosystem supporting the Missile Defense Agency’s unified digital environment
  • Implement and sustain SailPoint IdentityIQ solutions, including O&M, upgrades, enhancements, and enterprise application onboarding
  • Design and customize identity lifecycle workflows, certification campaigns, RBAC/ABAC, Java rules, and compliance reporting
  • Engineer and maintain PingFederate federation and SSO services
  • Onboard applications using SAML 2.0, OAuth 2.0, OIDC, and phishing-resistant MFA
  • Implement secure identity architectures across hybrid multi-cloud environments using Microsoft Entra ID and AWS IAM/IAM Identity Center within DoD IL5/IL6 boundaries
  • Configure and administer AD DS, AD FS, Kerberos, LDAP/S, and federated trusts across multi-forest environments
  • Deploy and support DoD/NSS PKI components, certificate authorities, tokens, OCSP/CRL, and certificate lifecycle management
  • Implement Zero Trust identity-centric policies and harden platforms according to DISA STIGs, RMF, and MDA requirements
  • Collaborate with consortium performers, systems engineers, network architects, DevSecOps teams, and Government personnel
  • Serve as identity integration focal point for interoperability tests, cross-domain coordination, and enterprise cutovers
  • Develop automation scripts, API integrations, and administrative routines using PowerShell, Bash, Python, or Java
  • Author LLDs, ICDs, SOPs, deployment runbooks, and test/validation plans
  • Evaluate emerging IdAM/ICAM, cloud identity, PAM, and IGA technologies
  • Provide technical status, risk analysis, and engineering recommendations to program leadership and Government stakeholders

Requirements

What you’ll need
  • 12 or more years of general full-time work experience; may be reduced with completion of advanced education
  • 6 or more years of dedicated Identity, Credential, and Access Management (IdAM/ICAM) experience
  • 1 or more years of experience in technical leadership, mentoring, or engineering management roles
  • Direct experience supporting the IRES contract or previous technical experience supporting the Missile Defense Agency (MDA)
  • Hands-on engineering proficiency across enterprise identity solutions
  • Experience or familiarity with SailPoint IdentityIQ, including deployments, lifecycle workflows, rules, and connectors
  • Experience or familiarity with PingIdentity PingFederate, SAML, OAuth2, OIDC, and MFA federation
  • Experience or familiarity with Microsoft Directory Services, including AD DS and AD FS
  • Experience or familiarity with Microsoft Entra ID and AWS IAM
  • Experience or familiarity with DoD/NSS PKI, including certificate authorities, validation, and token integration
  • Current DoW 8140/8570 IAT Level II or higher certification, such as Security+ CE, CySA+, CASP+ CE, or CISSP
  • Active DoW Secret security clearance with ability to obtain Top Secret, or active Top Secret clearance
  • Resume submitted in month and year format
  • Ability to work on-site at Schriever Space Force Base, Redstone Arsenal, or Fort Belvoir
  • Up to 10% travel required

Benefits

Comp & perks
  • Health, dental, and vision insurance
  • Paid time off and holidays
  • Retirement benefits, including 401(k) matching
  • Educational reimbursement
  • Parental leave
  • Employee stock purchase plan
  • Tax-saving options
  • Disability and life insurance
  • Pet insurance