Authentication Engineer

NR Labs LLC

Washington, Northern (District of Columbia, KY)

Hybrid

USD 140,000 - 175,000

Full time

3 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

NR Labs LLC seeks an Authentication Engineer to deploy, manage, and improve enterprise MFA and identity services. You will ensure MFA/SO- integration with Active Directory and Entra ID, and support both technical teams and end users across complex environments.

Responsibilities include policy enforcement, risk assessments, and collaboration with cross-functional teams to drive MFA adoption while maintaining zero-trust security.

Qualifications

  • 3–5 years in IAM with hands-on MFA deployments.
  • Experience deploying enterprise MFA platforms.
  • Knowledge of SAML, OAuth 2.0, OpenID Connect.
  • Experience integrating MFA with AD/Entra ID and SSO.

Responsibilities

  • Deploy, configure, and administer enterprise MFA platforms.
  • Integrate MFA and SSO with AD and Entra ID.
  • Troubleshoot authentication failures across multi-system environments.
  • Develop and enforce MFA policies aligned with zero-trust principles.
  • Support risk assessments and security monitoring related to identity.
  • Collaborate with end users and teams to drive MFA adoption.

Skills

MFA deployment
IAM
SSO integration
Active Directory
Troubleshooting
Policy enforcement

Education

Bachelor's degree in Cybersecurity/CS/IT

Tools

Okta
Duo
RSA SecurID
Entra ID
Microsoft Entra ID

Job description

We are seeking a technically focused and detail-oriented Authentication Engineer to join our client's Cybersecurity Operations team. This role is dedicated to the deployment, management, and continuous improvement of enterprise authentication systems, with a particular emphasis on Multi-Factor Authentication (MFA) and modern identity protocols. If you bring deep technical knowledge of authentication systems, experience integrating them across complex enterprise environments, and the communication skills to support both technical teams and end users, we want to hear from you.

Role Description: You will work at the intersection of identity security and user experience, ensuring that authentication systems are correctly configured, performing reliably at scale, and aligned with the organization's security policies. This is a proactive role where you will identify gaps in authentication coverage, evaluate emerging authentication technologies, and work across teams to drive adoption and strengthen the organization's overall identity security posture.

Day-to-day responsibilities include:

  • Deploying, configuring, and administering enterprise MFA platforms and related authentication services
  • Integrating MFA and Single Sign-On (SSO) capabilities with Active Directory, Entra ID, and enterprise applications
  • Troubleshooting authentication failures across complex, multi-system environments and coordinating resolution with support teams
  • Developing, documenting, and enforcing authentication policies aligned with organizational security standards and zero-trust principles
  • Supporting risk assessments and security continuous monitoring efforts related to identity and authentication
  • Partnering with end users, help desk, and project teams to drive MFA adoption at scale

Required Qualifications & Education:

8-10 years of overall IT experience with a minimum of 3–5 years of experience in identity and access management, with direct hands‑on experience deploying and managing enterprise authentication and MFA solutions. Candidates with experience supporting large‑scale MFA deployments or authentication migrations will be highly preferred.

  • Hands‑on experience deploying and managing enterprise MFA platforms (e.g., Okta, Microsoft Authenticator, Duo, RSA SecurID, or equivalent)
  • Strong understanding of modern identity and authentication protocols including SAML, OAuth 2.0, OpenID Connect, and RADIUS
  • Experience integrating MFA solutions with Active Directory, Entra ID (formerly Azure Active Directory), and Single Sign-On (SSO) platforms
  • Ability to troubleshoot authentication failures across complex, multi‑system enterprise environments
  • Experience developing and enforcing MFA policies aligned with organizational security standards and zero‑trust principles

Identity & Access Management

  • Working knowledge of enterprise identity and access management (IAM) frameworks and platforms
  • Familiarity with Microsoft Active Directory, Entra ID (formerly Azure Active Directory), and related Windows‑based systems
  • Understanding of privileged access management (PAM) concepts and how authentication controls integrate within that model
  • Ability to support risk assessments and security continuous monitoring efforts related to identity and authentication
  • Ability to support large, cross‑functional projects and communicate clearly with both technical and non‑technical stakeholders
  • Experience creating and maintaining clear documentation for authentication configurations, procedures, and troubleshooting guides
  • Comfortable working with end users and support teams to resolve authentication issues and support MFA adoption at scale

Education

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field preferred
  • Relevant certifications such as Microsoft Identity and Access Administrator (SC-300), Security+, CISSP, or equivalent are strongly preferred

Desired Qualifications:

  • Scripting and automation experience in PowerShell, Bash, Perl, or VBScript to support authentication administration and reporting
  • Experience with cloud‑based identity platforms such as Microsoft Azure or AWS IAM
  • Familiarity with WebAuthn / FIDO2 and passwordless authentication technologies
  • Knowledge of zero‑trust security principles and how modern authentication fits within that framework

Clearance and Location Requirements:

  • Candidates must be eligible to obtain and maintain a Public Trust security clearance.
  • This is a hybrid position with on‑site support requirements at the client location in the Washington, D.C. and Manassas, VA; specific on‑site and telework expectations will be confirmed at the time of hire.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Authentication Engineer
Authentication Engineer

ECS Corporate Services • Washington

Hybrid
USD 120,000 - 130,000
Authentication Engineer
Authentication Engineer

ECS • Washington

Hybrid
USD 120,000 - 130,000
Authentication Engineer – Remote MFA & IAM Expert
Authentication Engineer – Remote MFA & IAM Expert

ECS • Washington

Hybrid
USD 120,000 - 130,000
Hybrid MFA Engineer & Identity Security Specialist
Hybrid MFA Engineer & Identity Security Specialist

ECS Corporate Services • Washington

Hybrid
USD 120,000 - 130,000
Identity and Security Engineer
Identity and Security Engineer

Ledgent Technology • Houston (TX)

On-site
USD 130,000 - 140,000
Infrastructure Engineer
Infrastructure Engineer

Huxley • Boston (MA)

On-site
USD 120,000 - 150,000
Senior Security Engineer 5529
Senior Security Engineer 5529

Tier4 Group • Chicago (IL)

On-site
USD 140,000 - 200,000
IAM Engineer
IAM Engineer

Intone Inc • Salem (NH)

Hybrid
USD 120,000 - 160,000
Identity and Access Management Engineer
Identity and Access Management Engineer

Socket.dev • Fairfax (VA)

Hybrid
USD 130,000 - 180,000
Software Developer – Identity & Access Management (IAM)
Software Developer – Identity & Access Management (IAM)

Worky • Tysons (VA)

On-site
USD 100,000 - 160,000
Generous time-off policy
Flexible work schedules
Career development opportunities
+2