SME Systems Engineer (Azure AD)

Gdh Consulting, Inc.

Alexandria (VA)

Hybrid

USD 83,000 - 90,000

Full time

12 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health benefits
401(k) plan
Gym membership discount

Job summary

GDH is seeking a highly skilled SME Systems Engineer specializing in Federation and Interoperability (FI) with CIAM focus on Azure AD B2C. You will lead secure identity modernization across ICAM, architecting federation services, SSO, and PKI; implementing MFA and PAM while aligning with NIST Zero Trust standards for federal environments.

You will provide technical leadership, develop custom policies, user flows, and integration points for external systems, and ensure secure, scalable identity

Qualifications

  • High School diploma or equivalent with 10+ years of related experience or equivalent technical expertise.
  • DoD 8570 IAT Level II or higher certifications (e.g., Security+ CE, CySA+) or vendor-specific identity certs.
  • Deep technical understanding of federated identity protocols (SAML, OAuth, OIDC) and AD/LDAP architecture.
  • Hands-on experience with Smart Card / CAC authentication systems and PKI validation.
  • Proven experience applying federal Zero Trust identity standards (NIST SP 800-207) in enterprise environments.
  • Eligibility for U.S. Government security clearance; U.S. citizenship and active Secret clearance may be required.
  • Strong problem-solving skills with root-cause analysis and performance tuning.

Responsibilities

  • Lead modernization of legacy access control into secure ICAM solutions.
  • Manage directories, federation services, authentication protocols, authorization, and SSO configurations.
  • Architect identity lifecycle including provisioning workflows and privilege management controls.
  • Design and deploy Zero Trust identity principles per NIST SP 800-207 across network hubs.
  • Configure and oversee enterprise PKI systems, credentials, and authentication mechanisms.
  • Implement MFA, PAM, and other access controls.
  • Develop federated identity services for secure interoperability with external partners.
  • Perform root cause analysis, privilege audits, and system performance tuning.
  • Create custom architecture, data flows, compliance docs, and technical interfaces for identity solutions.
  • Provide advanced engineering oversight for Azure AD B2C / CIAM platform.

Skills

CIAM (Azure AD B2C)
Federation & Interoperability
Zero Trust - NIST 800-207
SAML/OAuth/OIDC
AD/LDAP
PKI & MFA
Privileged Access Mgmt (PAM)

Education

High School diploma

Tools

SailPoint
Okta
Microsoft Entra ID
Ping Identity
DigiCert
Power BI

Job description

Role Summary

A highly specialized SME Systems Engineer with expertise in Federation and Interoperability (FI), focusing primarily on Customer Identity and Access Management (CIAM) via Azure AD B2C. This senior-level position involves designing and implementing secure identity management solutions to modernize enterprise ICAM infrastructure. The role demands technical leadership in integrating, architecting, and maintaining enterprise identity frameworks, ensuring alignment with federal security standards and best practices.

Responsibilities
  • Lead the modernization of legacy access control systems into comprehensive, secure ICAM solutions.
  • Manage enterprise directories, federation services, authentication protocols, authorization, and Single Sign-On (SSO) configurations.
  • Architect lifecycle management for identities, including user provisioning workflows and privilege management controls.
  • Design and deploy Zero Trust identity principles in accordance with NIST SP 800-207 across network hubs.
  • Configure and oversee enterprise PKI systems, credentials, and authentication mechanisms.
  • Implement logical and physical access controls, including Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and other security measures.
  • Develop federated identity services to enable secure interoperability with external partners and mission-critical systems.
  • Perform root cause analysis, privilege audits, and system performance tuning to ensure optimal operation.
  • Create custom architecture, data flows, compliance documentation, and technical interfaces for identity solutions.
  • Provide advanced engineering oversight for Azure AD B2C / CIAM platform, including custom policy development, user flow engineering, and integration of external applications.
Qualifications
  • High School diploma or equivalent with 10+ years of related experience or equivalent technical expertise.
  • Certifications such as DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or relevant vendor-specific identity certifications).
  • Deep technical understanding of federated identity protocols, including SAML, OAuth, OIDC, and Active Directory/LDAP architecture.
  • Hands-on experience managing Smart Card / CAC authentication systems and PKI certificate validation.
  • Proven experience applying federal Zero Trust identity standards (NIST SP 800-207) in enterprise environments.
  • This position requires eligibility for a U.S. Government security clearance.
  • In accordance with federal law, U.S. citizenship is required. (Active Secret clearance is required).
  • Strong problem-solving skills with the ability to conduct root cause analysis and system performance tuning.
Preferred Skills & Experience
  • Experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) identity programs.
  • Knowledge of integrating data governance frameworks with ICAM solutions for data-level access control enforcement.
  • Familiarity with enterprise identity management tools such as SailPoint, Okta, Microsoft Entra ID, Ping Identity, DigiCert, or Power BI.
  • Advanced understanding of RESTful APIs, secure gateways, and data schema security standards.

Publishing Pay Range: $60.00 - $65.00 hourly

This position offers a hybrid schedule, combining in-office work in Alexandria, VA with remote work flexibility.

About GDH

At GDH, we believe in the power of people and the importance of caring. Our culture statement, 'We care about people,' isn't just a tagline - it's the core of everything we do. GDH is a premier staffing and talent solutions company dedicated to helping businesses find the best talent and assisting job seekers in finding their dream jobs.

Who We Are

GDH, founded in 2001, has grown into a leader in providing staffing solutions across various industries. We specialize in IT across several sectors, connecting top talent with leading enterprises. As a Best of Staffing firm recognized for excellence in client, employee, talent, and women's services, we pride ourselves on our commitment to quality and service.

GDH Benefits

GDH offers a range of employee benefits that are designed to promote well-being and help maintain a healthy work-life balance. These comprehensive benefits cover various aspects of an employee's life and aim to enhance their overall experience with the company.

  • Our health benefits include three medical insurance options with access to KISx Card, Zero Card, and HealthJoy concierge services.
  • Other plan offerings include dental, vision, life, disability, supplemental insurance, and pet insurance plans.
  • Enjoy additional perks like holiday pay, 401(k) plan, direct deposit, an employee referral program, work-life balance benefits, a Wellbeats membership, a discounted gym membership program, and more!

For more detailed information on benefits, please go to GDH's website under the tab for candidates.

GDH provides equal employment opportunities (EEO) to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, gender, sex (including pregnancy), sexual orientation, gender identity, national origin, age, disability, genetic information, marital status, ancestry, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable federal, state, and local laws. Applicants with disabilities who require an accommodation or assistance in applying and/or for interviewing, please contact our HR Department. Please visit our notice of collection for California applicants.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Developer
Application Developer

Gdh Consulting, Inc. • Oklahoma City (OK)

On-site
USD 135,000 - 152,000
Health benefits
401(k) plan
Direct deposit
+1
IT Infrastructure Compliance Engineer
IT Infrastructure Compliance Engineer

Gdh Consulting, Inc. • Santa Clara (CA)

On-site
USD 83,000 - 90,000
Health benefits
401(k) plan
Wellbeats membership
+2
Sr. Development Engineer
Sr. Development Engineer

Gdh Consulting, Inc. • Springdale (AR)

On-site
USD 110,000 - 115,000
Health benefits (medical)
Dental & vision
401(k) plan
+2
Full Stack Developer
Full Stack Developer

Gdh Consulting, Inc. • Oklahoma City (OK)

Remote
USD 110,000 - 117,000
Health insurance options
Wellbeats membership
ICAM Identity Provider (IdP) Engineer - Enterprise Authentication Services
ICAM Identity Provider (IdP) Engineer - Enterprise Authentication Services

General Dynamics Corporation • Falls Church (VA), Northern (KY)

Hybrid
USD 170,000 - 230,000
L2/L3 Senior Administrator
L2/L3 Senior Administrator

Gdh Consulting, Inc. • Jersey City (NJ)

On-site
USD 96,000 - 107,000
NOC Analyst
NOC Analyst

Gdh Consulting, Inc. • Bartlesville (OK)

On-site
USD 21,000 - 23,000
Health benefits
Dental insurance
Vision insurance
+8
Senior ChromeOS Administrator
Senior ChromeOS Administrator

Gdh Consulting, Inc. • Jersey City (NJ)

On-site
USD 96,000 - 107,000
Health benefits (medical options)
Dental, vision, life, disability, and
401(k) plan
+5
ICAM Systems Engineer & Manager
ICAM Systems Engineer & Manager

General Dynamics Corporation • Town of Florida (NY), Northern (KY)

On-site
USD 113,000 - 132,000
Identity Access Management (IAM) Architect
Identity Access Management (IAM) Architect

General Dynamics Information Technology, Inc. • Washington

On-site
USD 170,000 - 229,000