ICAM Identity Provider (IdP) Engineer Enterprise Authentication Services

General Dynamics Information Technology

Fort Meade (MD)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

General Dynamics Information Technology is seeking an ICAM IdP Engineer to design, integrate, operate, and maintain enterprise Identity Provider services for millions of DoD identities. You will join a team delivering authentication federations, SSO, and identity governance in a large-scale ICAM environment.

The position emphasizes hands-on work with ADFS, SSO protocols, PKI/multi-factor authentication, and identity federation across DoD partners, with opportunities to grow in enterprise ICAM

Qualifications

  • 3+ years of hands-on IAM/ICAM experience.
  • Experience supporting or implementing Microsoft ADFS in enterprise environments.
  • Strong understanding of authentication, authorization, and federation concepts.
  • Familiarity with SAML, OAuth, OIDC, WS-Federation, and related identity technologies.
  • Experience with PKI, certificate-based authentication, smart cards, or MFA.
  • Experience with Active Directory/LDAP and enterprise identity repositories.
  • Ability to configure or support claims rules, attribute mappings, or token policies.
  • Experience with Windows and/or Linux server environments.

Responsibilities

  • Support design, configuration, and sustainment of enterprise IdP services used by millions.
  • Administer and maintain ADFS infrastructure for authentication and federation.
  • Configure federation trust relationships with internal/external IdPs, SPs, and mission partners.
  • Implement and troubleshoot authentication using SAML, OAuth, OIDC, WS-Federation, and certificate-based methods.
  • Onboard and integrate applications into the authentication/federation ecosystem.
  • Develop and maintain authentication policies, claims rules, attribute mappings, and token configurations.
  • Support SSO, MFA, Conditional Access, and phishing-resistant authentication.
  • Collaborate with cybersecurity, AD, cloud, and app teams to deliver secure authentication services.
  • Contribute to Zero Trust Architecture objectives through modern authentication and federation.
  • Monitor and resolve authentication/federation/trust/certificate/token issues.
  • Develop technical documentation and runbooks.
  • Participate in Agile development and continuous improvement.
  • Identify technical risks and contribute to identity modernization.

Skills

IAM
ADFS
SAML
OAuth/OIDC
PKI/MFA
LDAP/AD
Windows/Linux
Documentation
Agile

Education

Bachelor's degree in a related technical field
DoD 8570/8140 IAT Level II certification

Job description

ICAM Identity Provider (IdP) Engineer - Enterprise Authentication Services

GDIT has an opportunity for an Identity Provider (IdP) Engineer supporting a large line of business delivering enterprise-scale Identity, Credential, and Access Management (ICAM) capabilities. This role supports the DoD ICAM mission by helping design, integrate, operate, and maintain enterprise Identity Provider services that provide secure authentication and federation for more than 4 million DoD enterprise identities.

This is an onsite position.

MEANINGFUL WORK AND PERSONAL IMPACT

The ideal candidate has at least 3 years of hands-on experience supporting authentication or identity systems and is eager to grow deeper into enterprise ICAM technologies. Strong foundational skills in Microsoft Active Directory Federation Services (ADFS), authentication protocols, and troubleshooting are essential. This role provides opportunities to work with senior engineers, contribute to mission-critical authentication services, and expand your technical skillset across large-scale identity platforms.

Key Responsibilities
  • Support the design, configuration, and sustainment of enterprise Identity Provider (IdP) services used by millions of DoD users.
  • Assist in administering and maintaining Microsoft Active Directory Federation Services (ADFS) infrastructure supporting authentication and federation.
  • Help configure federation trust relationships with internal and external Identity Providers (IdPs), Service Providers (SPs), and mission partners.
  • Implement and troubleshoot authentication solutions using SAML, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and certificate-based authentication.
  • Collaborate in onboarding and integrating applications into the authentication and federation ecosystem.
  • Help develop and maintain authentication policies, claims rules, attribute mappings, and token issuance configurations.
  • Support enterprise Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, and phishing-resistant authentication mechanisms.
  • Work with cybersecurity, Active Directory, cloud, infrastructure, and application teams to deliver secure authentication services.
  • Contribute to Zero Trust Architecture objectives through modern authentication and federation capabilities.
  • Assist in monitoring, troubleshooting, and resolving authentication, federation, trust, certificate, and token issues.
  • Support the development of resilient, highly available authentication services for mission-critical workloads.
  • Help create technical documentation including architecture diagrams, SOPs, integration guides, and operational procedures.
  • Participate in Agile development activities and continuous improvement efforts.
  • Identify technical risks and contribute to identity modernization initiatives.
Basic Qualifications
  • Active Secret Clearance (Interim Secret not allowed).
  • Bachelor’s degree in a related technical field, or equivalent combination of education, certifications, and experience.
  • DoD 8570/8140 IAT Level II certification (Security+ CE or higher).
Required Skills & Knowledge
  • Minimum 3 years of experience supporting Identity and Access Management (IAM), Authentication, Federation, or ICAM-related technologies.
  • Experience supporting or implementing Microsoft ADFS in enterprise environments.
  • Strong understanding of authentication, authorization, and federation concepts.
  • Familiarity with SAML, OAuth, OIDC, WS-Federation, and related identity technologies.
  • Experience with PKI, certificate-based authentication, smart cards, or MFA.
  • Experience supporting application or API integrations with identity/federation platforms.
  • Familiarity with Active Directory, LDAP, and enterprise identity repositories.
  • Ability to configure or support claims rules, attribute mappings, or token policies.
  • Experience working with Windows or Linux server environments.
  • Ability to document technical findings and communicate effectively.
  • Self-starter with a desire to learn and grow in enterprise identity operations.
Desired Skills & Knowledge
  • Experience with ADFS farms, Web Application Proxy (WAP), load balancers, or disaster recovery setups.
  • Exposure to modern identity platforms such as Microsoft Entra ID, PingFederate, PingAccess, Okta, or Keycloak.
  • Familiarity with DoD ICAM or federation initiatives.
  • Understanding of NIST 800-63 Identity Assurance models.
  • Exposure to phishing-resistant authentication or passwordless technologies.
  • Experience supporting Zero Trust concepts.
  • Basic PowerShell scripting for ADFS or identity operations.
  • Experience with monitoring, performance tuning, or troubleshooting authentication issues at scale.
  • Familiarity with PKI/certificate services, CAC authentication, or DoD credentialing.
  • Awareness of container technologies (Docker, Kubernetes).
GDIT IS YOUR PLACE

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Flexibility: Full-flex work week to own your priorities at work and at home
  • Community: Award-winning culture of innovation and a military-friendly workplace
OWN YOUR OPPORTUNITY

Explore an enterprise IT career at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your desire to drive operations forward.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ICAM Identity Provider (IdP) Engineer Enterprise Authentication Services
ICAM Identity Provider (IdP) Engineer Enterprise Authentication Services

General Dynamics Information Technology • Falls Church (VA)

Remote
USD 140,000 - 190,000
401K with company match
Competitive pay and benefits
Fully remote
ICAM Software Engineer - SailPoint/Radiant Logic
ICAM Software Engineer - SailPoint/Radiant Logic

General Dynamics - IT • Fort Meade (MD)

Hybrid
USD 125,000 - 160,000
Growth opportunities
Internal mobility support
Comprehensive benefits & wellness
+2
ICAM Systems Engineer & Manager
ICAM Systems Engineer & Manager

General Dynamics Corporation • Town of Florida (NY), Northern (KY)

Hybrid
USD 113,000 - 132,000
ICAM Systems Engineer & Manager
ICAM Systems Engineer & Manager

General Dynamics Information Technology • Tampa (FL)

On-site
USD 113,000 - 132,000
401(k) plan
Paid time off
Disability benefits
+1
ICAM Systems Engineer & Manager
ICAM Systems Engineer & Manager

Socket.dev • Tampa (FL)

On-site
USD 113,000 - 132,000
ICAM Engineer - Edge Services (Radiant Logic)
ICAM Engineer - Edge Services (Radiant Logic)

General Dynamics - IT • Fort Meade (MD)

Hybrid
USD 120,000 - 160,000
401K with company match
Competitive pay
Paid time off
ICAM IdP Engineer — Enterprise Identity & Access Expert
ICAM IdP Engineer — Enterprise Identity & Access Expert

General Dynamics Information Technology • Fort Meade (MD)

On-site
USD 110,000 - 160,000
Cyber Systems Integration Engineer Sr Principal
Cyber Systems Integration Engineer Sr Principal

General Dynamics Information Technology • Virginia (IL)

Hybrid
USD 149,000 - 201,000
Senior Program Analyst
Senior Program Analyst

Socket.dev • Virginia (IL)

Hybrid
USD 97,000 - 131,000
Medical plan
401(k) with company match
Paid time off
Information Assurance Analyst
Information Assurance Analyst

General Dynamics - IT • Chantilly (VA)

On-site
USD 90,000 - 120,000
Comprehensive benefits and wellness