Senior Identity Engineer
Join IT Concepts dba Kentro, where innovation drives opportunity and collaboration leads to success. The Senior Identity Engineer will support the Zero Trust modernization initiative under the EDAT contract for United States Special Operations Command. The role designs, implements, integrates, and sustains enterprise Identity, Credential, and Access Management (ICAM) solutions aligned with DoD Zero Trust Architecture requirements.
Location: Hybrid in Tampa, FL.
Responsibilities
- Design, implement, and maintain enterprise Identity and Access Management (IAM) solutions supporting Zero Trust initiatives.
- Engineer secure authentication and authorization services using SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, and PKI.
- Design and implement Identity Governance and Administration (IGA) capabilities including automated provisioning, lifecycle management, and role‑based access control (RBAC).
- Implement and maintain Privileged Access Management (PAM) solutions to secure privileged identities and administrative accounts.
- Integrate enterprise applications with centralized authentication platforms and federation services.
- Support Continuous Authentication and Conditional Access capabilities aligned with Zero Trust principles.
- Develop identity automation using scripting languages such as PowerShell, Python, or REST APIs.
- Perform identity architecture reviews and recommend improvements to authentication, authorization, and identity lifecycle processes.
- Develop and maintain identity‑related documentation including architecture diagrams, implementation guides, SOPs, and security documentation.
- Troubleshoot complex authentication, federation, directory services, and identity synchronization issues.
- Collaborate with cybersecurity teams to support RMF, STIG implementation, vulnerability remediation, and audit readiness.
- Provide technical leadership and mentoring to junior engineers and support personnel.
- Participate in architecture reviews, design sessions, and technical planning activities supporting enterprise modernization efforts.
- Ensure identity services comply with DoD, DISA, NIST 800‑53, NIST SP 800‑207, and USSOCOM cybersecurity requirements.
Qualifications
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, Engineering, or related field (or equivalent experience).
- Minimum of 10 years of experience in Identity and Access Management, Identity Engineering, or Enterprise Security Engineering.
- Minimum of 5 years supporting DoD or Federal enterprise cybersecurity environments.
- Technical skills: experience implementing or administering IGA platforms, PAM solutions, integrating applications with SAML, OAuth 2.0, OIDC, and SCIM; automating identity management through PowerShell, Python, or REST APIs; supporting cloud identity services in Microsoft Azure; strong understanding of Zero Trust Architecture principles; supporting RMF, STIG compliance, and cybersecurity audits.
- Excellent written and verbal communication skills.
- DoD 8570/8140 IAT Level II or IAM Level II compliant certification required.
Preferred Qualifications
- Experience supporting USSOCOM, DoD, or Intelligence Community environments.
- Experience with SailPoint, Saviynt, or similar Identity Governance platforms.
- Experience with CyberArk, BeyondTrust, Delinea, or comparable Privileged Access Management solutions.
- Experience with Microsoft Entra ID Identity Protection and Conditional Access.
- Experience supporting enterprise cloud migrations.
- Familiarity with DevSecOps and Infrastructure as Code (IaC) methodologies.
- Experience implementing Zero Trust maturity initiatives aligned with DoD guidance.
Clearance Requirement
- Active TS/SCI security clearance.
- Must be a US citizen.
Benefits
- Competitive benefits package including paid time off, healthcare benefits, supplemental benefits, 401(k) with employer match, discount perks, rewards, and more.
- Education reimbursement for certifications, degrees, or professional development.
- Work‑life balance with virtual and in‑person activities, events, and celebrations.
- Commitment to continuous professional development and career growth.
Equal Opportunity Employment & VEVRAA
Kentro is an equal‑opportunity employer and is committed to compliance with VEVRAA and other applicable federal, state, and local laws governing equal employment opportunity. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable law.
Accommodations
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions. If you need to discuss reasonable accommodations, please contact careers@kentro.us.