Senior ICAM Engineer, Remote, United States

Technologist, Inc.

Northern (KY)

Hybrid

USD 120,000 - 160,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Health Care Plan
401k with employer match
Paid Time Off
Disability insurance
Training & Development

Job summary

Mount Airey Group (MAG), a wholly owned subsidiary of Technologist Inc., is seeking a Senior ICAM Engineer for a full-time telework role. The engineer will design, implement, and support enterprise ICAM using Okta, SSO, and MFA, developing PowerShell automation and REST API integrations across cloud and on-prem environments.

Responsibilities include provisioning, federation, identity schemas, and automation scripts, with emphasis on Zero Trust security and policy enforcement.

Qualifications

  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field, or equivalent professional experience.
  • Minimum of 2 years of hands-on experience administering Okta Identity Cloud including application integrations, identity lifecycle management, automation, and REST API development.
  • 3+ years of hands-on IAM/ICAM experience with enterprise platforms like Microsoft Entra ID or Ping Identity.
  • SECRET level clearance is required.
  • Willingness to travel to Washington, DC for meetings.

Responsibilities

  • Administer, configure, and maintain enterprise Okta Identity Cloud environments supporting workforce identity and access management.
  • Design, implement, and troubleshoot SSO integrations (SAML 2.0, OAuth 2.0, OIDC).
  • Configure authentication policies, adaptive MFA, phishing-resistant auth, and sign-on policies.
  • Develop and maintain user lifecycle automation including provisioning, deprovisioning, mappings, and group rules.
  • Design and support inbound/outbound identity federation with internal and external IdPs.
  • Develop custom user profile attributes and identity schemas.
  • Integrate enterprise apps with Okta ensuring policy and ICAM compliance.
  • Troubleshoot complex authentication, provisioning, and identity sync issues.
  • Develop PowerShell automation using Okta REST APIs for admin tasks and large-scale updates.
  • Create automated batch processes for identity management with data integrity.
  • Develop reusable automation scripts to improve efficiency.
  • Integrate with REST APIs to automate identity workflows.
  • Explore Python-based automation for API integrations and reporting.
  • Support PKI, PIV/CAC authentication and smart card integrations.
  • Create architecture docs, SOPs, diagrams, and engineering materials.
  • Participate in Zero Trust initiatives with modern identity controls.
  • Analyze identity security events and assist with audits and investigations.
  • Collaborate with security, network, and app teams on secure identity solutions.
  • Perform testing, deployments, and Tier III support for identity services.
  • Evaluate and recommend new identity tech and automation enhancements.

Skills

Okta Identity Cloud
Microsoft Entra ID
PowerShell
REST APIs
JSON
SAML 2.0
OAuth 2.0
OIDC
MFA
Zero Trust
PKI
PIV/CAC
Identity Federation

Education

Bachelor's degree in IT/CS/Cybersecurity or equivalent
SECRET clearance

Tools

Okta REST APIs
JSON
Active Directory
LDAP

Job description

Mount Airey Group (MAG), a wholly owned subsidiary of Technologist Inc., is seeking a Senior Identity, Credential and Access Management (ICAM) Engineer to join our team. This is a full-time telework opportunity offering a competitive salary coupled with a stellar benefits package effective your first day of employment.

The Senior ICAM Engineer is responsible for the engineering, implementation, automation, administration, and operational support of enterprise Identity, Credential, and Access Management (ICAM) services. This role designs and implements secure identity solutions supporting authentication, authorization, identity lifecycle management, and Zero Trust initiatives. The engineer develops automation using PowerShell and the Okta REST APIs to improve operational efficiency, reduce manual administration, and support enterprise identity operations across cloud and on-premises environments. The engineer will also evaluate and adopt emerging automation technologies, including Python, to enhance future automation capabilities.

Primary Responsibilities
  • Administer, configure, and maintain enterprise Okta Identity Cloud environments supporting workforce identity and access management.
  • Design, implement, and troubleshoot Single Sign-On (SSO) integrations using SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC).
  • Configure and maintain authentication policies, adaptive Multi-Factor Authentication (MFA), phishing-resistant authentication, and application sign-on policies.
  • Develop and maintain user lifecycle automation, including provisioning, deprovisioning, profile mappings, attribute transformations, group rules, and application assignments.
  • Design, configure, and support inbound and outbound identity federation with internal and external Identity Providers (IdPs).
  • Develop and maintain custom user profile attributes, application profile mappings, and identity schemas to support business and partner requirements.
  • Integrate enterprise applications with Okta while ensuring compliance with organizational security policies and Federal ICAM standards.
  • Troubleshoot complex authentication, federation, provisioning, authorization, and identity synchronization issues across cloud and on-premises environments.
  • Develop and maintain PowerShell automation utilizing the Okta REST APIs to perform administrative functions, user lifecycle management, reporting, and large-scale user profile updates.
  • Design and execute automated batch processes for creating, modifying, and updating user identities while ensuring data integrity, consistency, and auditability.
  • Develop reusable automation scripts and tools that improve operational efficiency and reduce manual administrative effort.
  • Integrate enterprise systems using REST APIs to automate identity management workflows and improve data consistency across identity repositories.
  • Evaluate and develop future automation capabilities using Python to support API integrations, reporting, and enterprise automation initiatives.
  • Support Public Key Infrastructure (PKI), PIV/CAC authentication, certificate-based authentication, and smart card integrations.
  • Develop technical architecture documentation, implementation guides, standard operating procedures, workflow diagrams, and engineering documentation.
  • Participate in Zero Trust initiatives by implementing modern identity-centric security controls and authentication mechanisms.
  • Analyze identity-related security events and assist with audit, compliance, and forensic investigations.
  • Collaborate with cybersecurity, infrastructure, networking, and application teams to implement secure identity solutions.
  • Perform testing, change management, production deployments, and Tier III engineering support for enterprise identity services.
  • Research, evaluate, and recommend new identity technologies and automation solutions that improve security, reliability, and operational efficiency.
Technical Requirements:
  • Okta Identity Cloud
  • Microsoft Entra ID
  • Ping Identity
  • PowerShell
  • Okta REST APIs
  • REST APIs
  • JSON
  • Identity Lifecycle Management
  • SAML 2.0
  • OAuth 2.0
  • OpenID Connect (OIDC)
  • Multi-Factor Authentication
  • Identity Federation
  • Active Directory
  • LDAP
  • PKI
  • PIV/CAC Authentication
  • Zero Trust Architecture
  • Technical Documentation
  • Enterprise Identity Troubleshooting
Expected Experience:
  • Experience implementing and supporting:
    • Single Sign-On (SAML 2.0, OAuth 2.0, OpenID Connect)
    • Multi-Factor Authentication (MFA)
    • Identity Federation
    • User Lifecycle Management
    • Active Directory and LDAP
    • REST API integrations
  • Experience developing automation using PowerShell.
  • Experience consuming and integrating REST APIs.
  • Experience working with JSON and API payloads.
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field, or equivalent professional experience.
  • Minimum of 2 (two) years of daily hands-on experience administering and engineering solutions using Okta Identity Cloud, including application integrations, identity lifecycle management, automation, and REST API development.
OR
  • Minimum of 3 (three) years of hands-on experience administering an enterprise Identity and Access Management platform such as Microsoft Entra ID, Ping Identity, ForgeRock, or a comparable IAM solution.
  • Current SECRET level clearance.
  • Ability to travel to Washington, DC for important meetings.
  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, with employer match)
  • Paid Time Off (Vacation, Sick & Federal Holidays)
  • Short Term & Long Term Disability
  • Training & Development
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior ICAM Engineer (Remote) — Okta & Automation
Senior ICAM Engineer (Remote) — Okta & Automation

Technologist, Inc. • United States

Remote
USD 140,000 - 200,000
Health Care Plan
Retirement Plan (401k)
Paid Time Off
+2
Senior ICAM Engineer: Remote Identity Automation Lead
Senior ICAM Engineer: Remote Identity Automation Lead

Technologist, Inc. • Northern (KY)

Hybrid
USD 120,000 - 160,000
Health Care Plan
401k with employer match
Paid Time Off
+2
Okta ICAM Engineer
Okta ICAM Engineer

Concept Plus, LLC • Northern (KY)

Hybrid
USD 120,000 - 150,000
Health insurance
Dental insurance
Vision insurance
+5
Senior ICAM Engineer
Senior ICAM Engineer

Easy Dynamics Corp. • United States

On-site
USD 160,000 - 200,000
Senior Identity, Credential, and Access Management (ICAM) Security Engineer
Senior Identity, Credential, and Access Management (ICAM) Security Engineer

Ampcus, Inc • Washington

On-site
USD 100,000 - 130,000
ICAM Engineer – Identity, Credential, and Access Management
ICAM Engineer – Identity, Credential, and Access Management

RMantra Solutions • Alexandria (VA), Northern (KY)

Hybrid
USD 140,000 - 190,000
IAM Engineer-
IAM Engineer-

Associates Systems LLC • Irving (TX)

On-site
USD 120,000 - 160,000
Lead Specialist, Federal ICAM (Identity, Credential, and Access Management) Engineer
Lead Specialist, Federal ICAM (Identity, Credential, and Access Management) Engineer

KPMG LLP • McLean (VA)

On-site
USD 140,000 - 180,000
Senior Systems Engineer - IAM
Senior Systems Engineer - IAM

Berkley Technology Services • Wilmington (DE)

On-site
USD 121,000 - 137,000
Health benefits
401(k)
Profit-sharing plans
Senior Systems Engineer - IAM
Senior Systems Engineer - IAM

Berkley Technology Services • Urbandale (IA)

On-site
USD 121,000 - 137,000
Health insurance
Dental insurance
Vision insurance
+5