Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Ignite IT -  Innovation & Technology

Identity Management – Directory Services Subject Matter Expert

Ignite IT - Innovation & Technology

. Serve as the senior technical SME for enterprise identity-management and directory-service architecture, engineering, integration, modernization, and troubleshooting .

Posted 9/22/2026full-timeSuitland • Maryland • United StatesLeadWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive expertise in enterprise identity management, including architecture design, integration, and troubleshooting across various environments. Proficient in implementing security controls, identity lifecycle management, and Zero Trust principles to enhance organizational security.

Highest-signal resume keywords
Enterprise Identity ManagementMicrosoft Active DirectorySAML 2.0OAuth 2.0Zero Trust Principles

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Identity Lifecycle ManagementFederationMFARBACIdentity Architecture DiagramsTechnical DocumentationCloud IntegrationTroubleshooting Authentication IssuesIdentity Services IntegrationDevice Identity Management
Soft Skills
Strong Communication SkillsCollaboration
Tools & Technologies
Microsoft Entra IDMicrosoft IntuneOktaServiceNowAWS GovCloudAzure Government
Certifications & Qualifications
Microsoft Identity CertificationOkta CertificationCloud Security CertificationIAM CertificationCybersecurity Certification
Industry Keywords
NIST Security ControlsFederal CybersecurityIdentity-as-a-ServiceUEMPKI

Tech Stack

Tools & technologies
AndroidAWSAzureCloudCyber SecurityJavaPythonServiceNow

About the role

Key responsibilities & impact
  • Serve as the senior technical SME for enterprise identity-management and directory-service architecture, engineering, integration, modernization, and troubleshooting
  • Assess current identity and directory architectures, configurations, integrations, security controls, operational processes, dependencies, scalability, and technical debt
  • Develop and maintain current-state, target-state, and transition architectures for identity-management capabilities supporting enterprise and field solutions
  • Design and support enterprise SSO, federation, authentication, authorization, MFA, and identity lifecycle-management capabilities
  • Support Microsoft Entra ID integration, Conditional Access, MFA, RBAC, identity lifecycle management, device identity, risk-based access, compliance checks, automated remediation, and Zero Trust controls
  • Design identity and access patterns for applications operating on USPS Android devices, including secure transitions between USPS and Government Agency application contexts
  • Support identity integration between Microsoft Intune / Entra ID, USPS UEM capabilities, Government Agency applications, APIs, enterprise directories, PKI, cloud environments, and security-monitoring platforms
  • Design and troubleshoot federation using SAML 2.0, OAuth 2.0, OpenID Connect, and related identity standards
  • Support certificate-based authentication, PIV/CAC integration, application certificates, PKI, secrets, service identities, and non-human identities
  • Define and evaluate RBAC, least-privilege, privileged-access, service-account, and administrative-access models
  • Evaluate identity dependencies during cloud, application, mobile, and infrastructure modernization initiatives
  • Develop identity architecture diagrams, interface definitions, technical standards, security patterns, operating procedures, and integration documentation
  • Participate in architecture reviews, technical design reviews, eARB activities, engineering working groups, requirements sessions, and solution assessments
  • Perform root-cause analysis for complex authentication, authorization, provisioning, federation, directory, synchronization, and application-access issues
  • Provide technical guidance, mentoring, and knowledge transfer to engineering, application, security, cloud, and operations teams

Requirements

What you’ll need
  • US Citizenship Required
  • 8+ years of progressive experience in enterprise IAM, directory services, identity engineering, cybersecurity, systems engineering, or a related discipline
  • Strong hands-on experience with Microsoft Active Directory and Microsoft Entra ID
  • Strong knowledge of SAML, OAuth 2.0, OpenID Connect, LDAP, MFA, SSO, RBAC, federation, and identity lifecycle management
  • Experience designing IAM solutions across enterprise, cloud, hybrid-cloud, mobile, and application environments
  • Experience integrating identity services with enterprise applications, APIs, cloud platforms, mobile-device management / UEM, and security services
  • Demonstrated knowledge of Zero Trust identity principles, least privilege, privileged access, device identity, and risk-based authentication
  • Experience troubleshooting complex enterprise authentication and authorization issues
  • Experience developing architecture diagrams, technical requirements, integration specifications, standards, and operational documentation
  • Working knowledge of NIST security controls and federal cybersecurity environments
  • Strong written and verbal communication skills with the ability to collaborate across engineering, security, architecture, application, and program teams
  • Preferred: Experience with Okta Workforce Identity, Adaptive MFA, federation, lifecycle management, or comparable Identity-as-a-Service capabilities
  • Preferred: Experience with OpenText / NetIQ Identity Manager, eDirectory, Identity Console, or comparable enterprise identity-orchestration platforms
  • Preferred: Experience with Microsoft Intune and device-based Conditional Access
  • Preferred: Experience with PIV/CAC and federal PKI environments
  • Preferred: Experience supporting identity services hosted in AWS GovCloud or Azure Government
  • Preferred: PowerShell, Python, Java, REST API, or other identity automation and integration experience
  • Preferred: ServiceNow integration and ITIL-based operations experience
  • Preferred: Experience supporting a federal statistical agency, large civilian agency, or comparably complex federal environment
  • Preferred: Relevant certifications in Microsoft Identity, Okta, cloud security, IAM, cybersecurity, or identity governance

Benefits

Comp & perks
  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Flexible spending account
  • Health insurance
  • Life insurance
  • Paid time off
  • Professional development assistance
  • Referral program
  • Tuition reimbursement
  • Vision insurance