ICAM Systems Engineer & Manager

Socket.dev

Tampa (FL)

On-site

USD 113,000 - 132,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Socket.dev seeks a senior IT Infrastructure and ICAM leader to oversee AD DS, DNS/DHCP, and Group Policy in a 24/7 global environment. You will guide identity governance, modernize legacy directories toward Zero Trust, and coordinate with Cybersecurity and Government partners.

Requires TS/SCI clearance and DoD/IC operational experience. Lead a small team of admins/engineers, drive secure access controls, and ensure compliance with RMF and STIGs.

Qualifications

  • Must possess and maintain a TS/SCI Security Clearance.
  • 5+ years supporting enterprise operations in mission-critical DOD/IC environments.
  • 5+ years leadership experience in identity management, Active Directory, or core domain services operations.
  • Experience supporting globally distributed classified environments with DoD, IC, or coalition networks.
  • Technical proficiency: Windows Server Administration, Active Directory Domain Services, Group Policy Management, DNSSEC, DHCP network access controls, and identity architecture.
  • DOW 8140/8570 Compliance: IAT Level Baseline Certification (CISSP, CASP+/SecurityX, CCNP, CySA+, Security+)
  • Industry Certifications: GCWN, Microsoft Identity Certifications

Responsibilities

  • Direct operations, engineering, and security hardening of enterprise AD DS, DNS/DHCP, and Group Policy Architectures.
  • Lead identity lifecycle management and continuity/disaster recovery planning for resilience.
  • Drive modernization of legacy directory structures toward Zero Trust with secure micro-segmentation.
  • Oversee global authentication lifecycle and migration to MFA with adaptive access controls.
  • Manage user, admin, and service accounts to meet security baselines.
  • Provide direction during incidents, outages, and emergency responses affecting mission services.
  • Ensure governance processes and ABAC baselines are followed.
  • Guide project plans, vendor coordination, and stakeholder communications.
  • Develop and review training and onboarding procedures for the team.
  • Participate in special projects as required.

Skills

Active Directory Management
Identity Management (IdM)
Multi-Factor Authentication (MFA)
Zero Trust

Education

CISSP
CASP+/SecurityX
CCNP
CySA+
Security+
GCWN (GIAC Certified Windows Security Administrator)
Microsoft Identity Certifications

Job description

Type of Requisition:

Regular

Clearance Level Must Currently Possess:

Top Secret/SCI

Clearance Level Must Be Able to Obtain:

Top Secret/SCI

Public Trust/Other Required:

None

Job Family:

IT Infrastructure and Operations

Job Qualifications:

Skills:

Active Directory Management, Identity Management (IdM), Multi-Factor Authentication (MFA), Zero Trust

Certifications:

None

Experience:

5 + years of related experience

US Citizenship Required:

Yes

Job Description:

Serves as a senior operational leader and Team Lead overseeing enterprise Domain Services and Identity, Credential, and Access Management (ICAM) for the US BICES/US BICES X mission. Provides hand-on leadership across Active Directory (AD), DNS/DHPC, group policy infrastructure, and core access control pillars within a mission critical, 24/7 globally distributed environment. Acts as an operational integrator among Domain Infrastructure, Cybersecurity, Operations, and Government partners to drive identity governance and transition legacy systems toward full Zero Trust compliance. Role requires proactive operational support, emergency coordination, and a presence to resolve critical identity or authentication support when outages or emergency situations arise.

Key Responsibilities
Domain Services & ICAM Operations:
  • Direct operations, engineering, and security hardening of enterprise Active Directory Domain Services (AD DS), core network infrastructure (DNS/DHCP), and Group Policy Architectures.
  • Spearhead Identity lifecycle management, business continuity/disaster recover planning, and continuous compliance auditing to ensure system resilience.
  • Drive the modernization of legacy directory structures into a Zero Trust framework, implementing Tiered Administration and secure micro segmentation boundary integrations.
  • Oversee global authentication protocol lifecycles, leading deprecation of insecure legacy protocols with integration to replace with Multi-Factor Authentication and continuous adaptive access controls.
  • Manage user, administrative, and service accounts to adhere to security requirements and industry best practices.
  • Provides direction and drives collaborative team troubleshooting during directory related incidents, authentication outages, and emergency response actives affecting mission services, including after-house support.
  • Ensure the administrative and technical workforce adheres to identity governance processes, Attribute-Based Access Control (ABAC) baselines, and program requirement guidance.
  • Guides operational oversight for project plans, vendors, communication to stakeholders, and issue escalation for issue mitigation as related to technologies and responsibilities.
  • Develops, documents, implements, and reviews technical training and supporting operational procedures and processes for all assigned position task sets, providing oversight of robust onboarding training process.
  • Participates in special projects as required.
Cybersecurity & Zero Trust Governance Compliance
  • Enforce infrastructure and directory compliance with NIST SP 800-207 Zero Trust Architecture standards.
  • Enforce compliance with RMF, DISA STIGs, and Cybersecurity directives.
  • Partner with security teams on continuous monitoring, audit readiness, and rapid vulnerability remediation.
  • Manages a small team of admins and engineers
Required Qualifications:
  • Must possess and maintain a TS/SCI Security Clearance.
  • 5 Years supporting enterprise operations in mission-critical DOD/IC environments.
  • 5+ Years leadership experience in identity management, Active Directory, or core domain services operations.
  • Experience supporting globally distributed classified environments with DoD, IC, or coalition networks.
  • Technical proficiency: Windows Server Administration, Active Directory Domain Services, Group Policy Management, DNSSEC, DHCP network access controls, and identity architecture.
  • DOW 8140/8570 Compliance: IAT Level Baseline Certification
    • CISSP, CASP+/SecurityX, CCNP, CySA+, Security+
  • Industry Certifications:
    • GCWN (GIAC Certified Windows Security Administrator
    • Microsoft Identity Certifications
Preferred Qualifications:
  • PMP, ITIL V4, or Agile.
  • Experience with US BICES/BICES X, Privileged Access management (PAM) tools, and automation.
Operational Focus Areas
  • Daily Active Directory & Group Policy Administration
  • Account Management and System Permissions
  • Enterprise DNS & DHCP Network Scope Management
  • Team Leadership, Task Delegation, & Incident Escalation
  • Systems Hardening, Windows Security Log Monitoring, & STIG Compliance

The likely salary range for this position is $112,840 - $132,250. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

Less than 10%

Telecommuting Options:

Onsite

Work Location:

USA FL MacDill AFB

Additional Work Locations
Total Rewards at GDIT

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

ICAM Systems Engineer & Manager
ICAM Systems Engineer & Manager

General Dynamics Information Technology • Tampa (FL)

On-site
USD 113,000 - 132,000
401(k) plan
Paid time off
Disability benefits
+1
ICAM Systems Engineer & Manager
ICAM Systems Engineer & Manager

General Dynamics Corporation • Town of Florida (NY), Northern (KY)

Hybrid
USD 113,000 - 132,000
ICAM Identity Provider (IdP) Engineer – Enterprise Authentication Services
ICAM Identity Provider (IdP) Engineer – Enterprise Authentication Services

General Dynamics Information Technology • United States

On-site
USD 140,000 - 190,000
Growth opportunities
Internal mobility program
Benefits & wellness package
+2
Domain Services Engineer
Domain Services Engineer

General Dynamics Information Technology • Springfield (VA)

On-site
USD 126,000 - 170,000
Network Operations Senior System Administrator
Network Operations Senior System Administrator

General Dynamics Information Technology • Tampa (FL)

On-site
USD 85,000 - 95,000
Systems Engineer & Manager
Systems Engineer & Manager

General Dynamics Information Technology • Hawaii

On-site
USD 124,000 - 136,000
Info. Security Analyst Principal
Info. Security Analyst Principal

General Dynamics Information Technology • McLean (VA)

On-site
USD 109,000 - 147,000
Systems Engineer & Manager
Systems Engineer & Manager

General Dynamics Corporation • Hawaii

On-site
USD 124,000 - 136,000
ICAM Identity Provider (IdP) Engineer Enterprise Authentication Services
ICAM Identity Provider (IdP) Engineer Enterprise Authentication Services

General Dynamics Information Technology • Fort Meade (MD)

On-site
USD 110,000 - 160,000
Network Engineer Senior
Network Engineer Senior

General Dynamics Information Technology • McLean (VA)

On-site
USD 102,000 - 138,000
Health plan options
401(k) plan with company match
Paid time off
+2