
Okta ICAM Engineer
Concept Plus, LLC5 days ago
Remote, United StatesSenior
Responsibilities
- Design, implement, and maintain ICAM solutions using Okta Identity Cloud, including Workforce Identity, SSO, MFA, and adaptive authentication.
- Integrate Okta with client credential systems, certificate-based authentication, PKI validation, and government identity providers.
- Configure SAML, OIDC, and OAuth federation across government applications, platforms, and on-premises enterprise systems.
- Develop identity lifecycle processes using RBAC, ABAC, authoritative identity sources, and enterprise identity governance practices.
- Implement Zero Trust identity capabilities such as strong authentication, device trust, continuous validation, and least-privilege access.
- Build automation and identity workflows using Okta Workflows, APIs, PowerShell, Python, or Bash.
- Troubleshoot authentication flows, PKI chains, SSO integrations, and SCIM provisioning.
- Support compliance with NIST, FICAM, DoW IdAM, and FedRAMP requirements.
- Collaborate with cybersecurity, cloud engineering, and system owners on secure identity integrations.
- Contribute to ICAM modernization roadmaps, ATO documentation, and continuous identity-posture improvements.
Requirements
- US citizenship is required.
- 5–8+ years of experience in ICAM/IAM engineering within federal or government environments.
- 3–5+ years of hands-on experience administering, integrating, and federating Okta Identity Cloud.
- Practical experience with PIV/CAC authentication, PKI trust chains, certificate mapping, and federal identity-provider federation.
- Strong knowledge of SAML, OIDC, OAuth, SCIM provisioning, Active Directory, and Azure AD.
- Experience with identity policy, RBAC/ABAC, account lifecycle management, and enterprise identity governance.
- Hands-on automation experience with PowerShell, Python, or Bash.
- Familiarity with Zero Trust identity architecture, particularly in federal or DoW environments.
- Strong documentation, communication, and collaboration skills.
- Experience supporting federal or DoW ICAM modernization initiatives is preferred.
- Okta Professional or Consultant Certification is preferred.
- Familiarity with NIST SP 800-63, NIST CSF, OMB ICAM guidance, DoW Zero Trust Strategy, and FedRAMP controls is preferred.
- Experience integrating identity services with Azure Government or on-premises mission systems is preferred.
Benefits
- Competitive pay, comprehensive health, dental, and vision insurance, paid life insurance, paid time off, and 11 paid holidays.
- Performance bonuses, tuition reimbursement, and unlimited training.
- Collaborative, flexible, and innovative work environment.