Okta IAM / Identity Integration Engineer

Peraton

United States

Remote

USD 66,000 - 106,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Peraton is seeking a highly experienced Okta IAM/Identity Integration Engineer to support the DoD ICAM platform that authenticates millions of Service Members & Veterans. The role focuses on designing, integrating, and sustaining identity services using the Okta Identity Engine and Embedded SDK, with emphasis on secure authentication and RMF/NIST compliance.

This 100% remote position requires extensive hands-on experience with modern identity protocols, mobile authentication, and enterprise IAM

Qualifications

  • 5 years with BS/BA; 3 years with MS/MA; 0 years with PhD.
  • U.S. Citizenship required
  • Experience configuring and administering Okta Identity Engine (OIE).
  • Experience implementing Okta Embedded SDK and designing secure authentication flows.
  • Strong knowledge of OAuth 2.0, OIDC, PKCE, and related identity protocols.
  • Experience implementing FIDO2/WebAuthn for phishing-resistant authentication.

Responsibilities

  • Configure, administer, and optimize Okta Identity Engine to support DoD workflows.
  • Implement and support the Okta Embedded SDK for secure partner app authentication.
  • Develop mobile identity integrations for iOS and Android in DoD environments.
  • Design adaptive and risk-based authentication policies.
  • Integrate identity federation (OIDC, SAML 2.0) with external IdPs.
  • Manage token lifecycles (JWT, ID, Access, Refresh) across DoD ecosystems.
  • Build identity automation with Okta Workflows and low-code tools.
  • Ensure compliance with RMF, STIG, and NIST guidelines.

Skills

Okta Identity Engine
Okta Embedded SDK
OAuth 2.0
OIDC
PKCE
FIDO2/WebAuthn
SAML 2.0
REST APIs
Postman
DevSecOps/CI-CD

Education

BS/BA
MS/MA
PhD

Tools

Okta Identity Engine
Okta Embedded SDK
Postman

Job description

Responsibilities

Peraton is seeking a highly experienced Okta IAM/Identity Integration Engineer to support the Department of Defense's next-generation enterprise Identity, Credential, and Access Management (ICAM) platform that is replacing DS Logon and providing secure authentication services for millions of Service Members, Veterans, Family Members, and Beneficiaries. The Alternative Multi-factor Authentication Support Services (AMASS) Program provides secure, scalable identity and access management services across the Department of Defense, enabling authentication, authorization, and digital identity interoperability for high‑visibility DoD systems.

In this role, you will design, integrate, and sustain identity services using the Okta Identity Engine (OIE), implement secure authentication flows using the Okta Embedded SDK, and ensure compliance with DoD cybersecurity policies, including RMF, STIG, and NIST guidelines. This position requires extensive hands‑on experience with modern identity protocols, mobile authentication, and enterprise IAM/ICAM solutions within Federal environments.

This is a 100% remote role.

  • Configure, administer, and optimize Okta Identity Engine (OIE) to support DoD enterprise identity workflows.
  • Implement and support the Okta Embedded SDK to deliver secure and standardized authentication for partner applications.
  • Develop and enhance mobile identity integrations for native iOS and Android platforms supporting DoD mission applications.
  • Implement modern identity standards including OAuth 2.0, OpenID Connect (OIDC), and PKCE.
  • Configure phishing‑resistant authentication methods, including FIDO2/WebAuthn, in alignment with DoD Zero Trust objectives.
  • Design and maintain adaptive and risk-based authentication policies.
  • Integrate identity federation services (OIDC, SAML 2.0) including external Identity Provider (IdP) connections.
  • Manage authentication token lifecycles (JWT, ID, Access, Refresh tokens) across DoD application ecosystems.
  • Implement secure API authentication using OAuth scopes, claims, and structured authorization patterns.
  • Build identity automation using Okta Workflows and no‑code/low‑code orchestration tooling.
  • Integrate Okta with DoD authoritative data sources and enterprise-level IAM services.
  • Evaluate and document multiple Okta Mobile implementation alternatives and contribute to the Government Analysis of Alternatives (AoA).
  • Design headless authentication architectures supporting embedded mobile authentication.
  • Design reusable authentication services supporting multiple relying‑party mobile applications.
  • Design secure device‑bound credential registration and provisioning.
  • Support Configuration Control Board (CCB) reviews and technical architecture presentations.
  • Design alternative MFA pathways for users without CAC credentials.
  • Design proxy authentication capabilities supporting beneficiary relationships.
  • Support identity lifecycle processes, including provisioning, deprovisioning, profile management, and attribute governance.
  • Troubleshoot complex identity, federation, and mobile SDK integration issues across multiproduct DoD environments.
  • Utilize REST APIs, Postman, and related tooling for API development, testing, and validation.
  • Work with DevSecOps teams to integrate IAM capabilities into CI/CD pipelines supporting DoD modernization.
  • Ensure identity implementations comply with DoD RMF, DISA STIGs, NIST SP 800‑63, and other Federal cybersecurity mandates.
Qualifications

Required Qualifications

  • 5 years with BS/BA; 3 years with MS/MA; 0 years with PhD
  • Must be able to obtain and maintain a Public Trust
  • U.S. Citizenship required
  • Experience configuring and administering Okta Identity Engine (OIE).
  • Experience implementing Okta Embedded SDK and designing secure custom authentication flows.
  • Strong knowledge of OAuth 2.0, OIDC, PKCE, and related identity protocols.
  • Experience implementing FIDO2/WebAuthn for phishing‑resistant authentication.
  • Experience developing adaptive/risk‑based authentication policies.
  • Strong background in identity federation and IdP integrations (OIDC, SAML 2.0).
  • Experience developing secure mobile authentication for native iOS and Android.
  • Deep understanding of authentication token lifecycle management.
  • Experience designing structured API authorization models using OAuth scopes and claims.
  • Experience with Okta Workflows, identity automation, and enterprise identity integrations.
  • Experience with identity lifecycle processes, provisioning, and directory synchronization.
  • Strong troubleshooting skills related to authentication, federation, and SDK integrations.
  • Experience working with REST APIs and tools such as Postman.
  • Familiarity with DevSecOps, CI/CD pipelines, and secure configuration management.
  • Experience supporting RMF, STIG, DoD cybersecurity compliance, and Federal ICAM requirements.

Preferred Qualifications

  • Okta Certified Administrator or Okta Certified Professional.
  • Hands‑on experience with the Okta Identity Engine Embedded SDK for native app authentication.
  • Experience supporting large‑scale Federal ICAM/CIAM implementations.
  • Knowledge of NIST SP 800‑63 Digital Identity Guidelines.
  • Experience with CAC/PIV, derived credentials, or Purebred mobile credential solutions.
  • Experience integrating identity proofing, identity verification, or credential issuance services.
  • Familiarity with DoD Zero Trust Architecture and enterprise IAM modernization initiatives.
Target Salary Range

$66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Identity Platform Integration Engineer
Identity Platform Integration Engineer

Peraton • United States

Remote
USD 66,000 - 106,000
Senior Mobile Authentication Integration Engineer (iOS/Android)
Senior Mobile Authentication Integration Engineer (iOS/Android)

Peraton • United States

Remote
USD 80,000 - 128,000
Senior Okta Engineer
Senior Okta Engineer

RedMatter Solutions • Washington, Northern (KY)

Hybrid
USD 120,000 - 180,000
Okta Engineer
Okta Engineer

The Amatriot Group • Quantico (VA)

Hybrid
USD 116,000 - 140,000
Remote Okta IAM & ICAM Integration Engineer
Remote Okta IAM & ICAM Integration Engineer

Peraton • Idaho

On-site
USD 66,000 - 106,000
Okta Engineer
Okta Engineer

Amatriot Group, LLC • Quantico (VA)

Hybrid
USD 116,000 - 140,000
Remote Okta IAM Engineer for DoD ICAM
Remote Okta IAM Engineer for DoD ICAM

Peraton • Reston (VA)

On-site
USD 66,000 - 106,000
Senior Okta Engineer
Senior Okta Engineer

Alliant Credit Union • Chicago (IL)

On-site
USD 84,000 - 131,000
Health care
Vision insurance
Dental insurance
+8
Remote Okta IAM & ICAM Integration Engineer
Remote Okta IAM & ICAM Integration Engineer

Peraton • Herndon (VA)

On-site
USD 66,000 - 106,000
Customer Success Executive, DoD/IC/FSI
Customer Success Executive, DoD/IC/FSI

Okta • Washington

On-site
USD 182,000 - 251,000
Health, dental, and vision insurance
401(k)
Flexible spending account
+1