Enable job alerts via email!

Identity & Access Management (IAM) Engineer

Government Acquisitions

Bethesda (MD)

On-site

USD 80,000 - 110,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join a forward-thinking company as an IAM Engineer, where you'll design and implement cutting-edge identity management solutions. This role involves maintaining enterprise identity management systems, troubleshooting incidents, and collaborating with cross-functional teams to ensure secure access across multiple platforms. You'll work with advanced technologies like Keycloak and OIDC, making a significant impact on security practices within a large enterprise environment. If you're passionate about innovative solutions and eager to contribute to vital government projects, this is the perfect opportunity for you!

Qualifications

  • 3-5 years of IAM experience with Keycloak and OIDC/OAuth2 focus.
  • Strong hands-on experience with Keycloak in production environments.

Responsibilities

  • Design and implement IAM solutions using Keycloak for secure access.
  • Troubleshoot authentication and authorization issues for seamless user experience.

Skills

Identity and Access Management (IAM)
Keycloak
OIDC/OAuth2
Java
Python
Problem-solving
Agile/Scrum

Education

Bachelor's degree in Computer Science
Equivalent work experience

Tools

Docker
Kubernetes
Terraform

Job description

Identity & Access Management (IAM) Engineer

Government Acquisitions Inc. (GAI) is seeking an Identity and Access Management (IdAM) Engineer to join our team to support a Federal Government Agency. The IAM Engineer will be responsible for maintaining existing enterprise identity management solutions, troubleshooting incidents, and assisting with transitioning new capabilities to production. Duties will include validating the health and status, operations, and maintenance of identity management systems such as Keycloak and OpenID Connect (OIDC) technologies. This individual will work in a team environment supporting a large enterprise spanning multiple enclaves and sites.
This is a 100% on-site position. All work must be performed at the customer site in Bethesda, MD at the Intelligence Community Campus.


Job Description & Work Responsibilities (Tasks include but are not limited to the following):

  • Design and implement IAM solutions using Keycloak for secure authentication and authorization based on OIDC, OAuth2, and SAML protocols.
  • Integrate Keycloak with internal and external applications, APIs, and third-party services to enable secure access and identity federation.
  • Manage and maintain the Keycloak infrastructure, including clustering, performance tuning, and monitoring.
  • Implement custom authentication flows, policies, and user federation strategies using Keycloak.
  • Collaborate with DevOps and infrastructure teams to ensure the scalability, security, and high availability of Keycloak deployments.
  • Automate the management of identity and access workflows, including user provisioning, de-provisioning, and role-based access control (RBAC).
  • Provide technical expertise for OIDC/OAuth2 standards, keeping up with industry trends and ensuring compliance with evolving security requirements.
  • Troubleshoot issues related to authentication, authorization, and access control, ensuring a seamless user experience.
  • Document system configurations, processes, and troubleshooting procedures for internal teams and stakeholders.
  • Conduct regular security audits and recommend improvements for IAM practices and systems.
  • Participate in and contribute to cross-functional teams working on broader IAM, DevSecOps, and security initiatives.
  • Provide support for implementing, troubleshooting, and maintaining identity management systems.
  • Rapidly distinguish isolated user problems from enterprise-wide application/system problems and provide recommended solutions.
  • Provide follow-up reports (technical findings, feedback, resolution steps taken) for root cause analysis, engineering technical assessment, and process improvement initiatives.
  • Update operations and maintenance documentation for 24/7/365 enterprise watch personnel.
  • Work with Operations, Engineering, and vendor support to develop solutions to complex technical issues.
  • Work independently as part of a virtual team.
  • Provide mentorship and training for junior team members.
Qualifications/Requirements (Knowledge, Skills, and Abilities):
  • Bachelor’s degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
  • 3-5 years of experience working in Identity and Access Management (IAM) with a focus on Keycloak and OIDC/OAuth2 technologies.
  • Strong hands-on experience with configuring, deploying, and managing Keycloak in a production environment.
  • Deep understanding of authentication and authorization protocols including OIDC, OAuth2, SAML, and LDAP.
  • Proficiency in Java, Python, or other scripting languages used for extending and automating Keycloak.
  • Experience with user federation (LDAP, Active Directory, etc.) and social identity providers (Google, Facebook, etc.) using Keycloak.
  • Familiarity with DevOps practices, including CI/CD pipelines, and experience with Docker, Kubernetes, and infrastructure-as-code (IaC) tools such as Terraform.
  • Strong problem-solving and debugging skills, particularly in complex, distributed environments.
  • Ability to work in an Agile/Scrum environment, collaborating with cross-functional teams.
  • Strong communication skills, with the ability to articulate technical solutions to both technical and non-technical stakeholders.
  • Candidate must meet DoD 8570.11- IAT Level II certification requirements (currently Security+ CE, CCNA-Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification).
Preferred Qualifications:
  • 5+ years of experience in IAM or related security engineering roles.
  • Experience with cloud platforms (AWS, Azure, GCP) and securing cloud-native applications.
  • Experience with identity governance tools (e.g., SailPoint, Okta).
  • Familiarity with API security (e.g., JWT, mTLS) and best practices for securing microservices architectures.
  • Experience implementing MFA, SSO, and zero-trust architectures.
Education:
  • Candidate must have a Bachelor's, with at least 12 years of relevant experience. Additional years of experience may be considered in lieu of degree.
Certifications, Licenses, and Clearances:
  • TS/SCI clearance
About Government Acquisitions, Inc. (GAI)

Government Acquisitions, Inc. (GAI) brings over 30 years of dedication to Federal mission success and a performance culture to power real innovation. GAI is a Federal government IT partner that focuses on Artificial Intelligence, Big Data Analytics, Cloud Computing, and Cyber Security. GAI's team members work side by side with government IT executives and OEM partners to solve complex business problems such as AI/ML, RPA, Cyber Security, Big Data, Data Center & Cloud.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Engineer, Identity and Access Management @ Stride, Inc.

Cyber Crime

Washington

Remote

USD 66,000 - 171,000

Yesterday
Be an early applicant

IAM Engineer

Anaplan

Remote

USD 100,000 - 130,000

6 days ago
Be an early applicant

IAM Engineer - Saviynt

IDMWORKS

Remote

USD 95,000 - 130,000

9 days ago

Identity and Access Management (IAM) Engineer - IntelliScript (Remote)

Milliman Ireland

Brookfield

Remote

USD 104,000 - 208,000

9 days ago

ForgeRock IAM Engineer

System One

Vienna

Remote

USD 90,000 - 150,000

30+ days ago

IAM Engineer

Johns Hopkins University

Maryland

Remote

USD 85,000 - 150,000

30+ days ago

Identity and Access Management (IAM) Engineer

Connsci

Gaithersburg

On-site

USD 100,000 - 150,000

12 days ago

Identity and Access Management (IAM) Engineer

Connsci

Gaithersburg

On-site

USD 100,000 - 140,000

12 days ago

Senior Devops Engineer - IAM - Remote

Davita Inc.

Eden Prairie

Remote

USD 89,000 - 177,000

Today
Be an early applicant