TDI logo
TDIPosted 4 weeks ago

Systems Engineer (DevSecOps and ICAM)

$115,000–$125,000 year

On-siteArlington, Virginia, United States

Full TimeBachelors DegreeSmall

Job Summary

Engineer, deploy, integrate, secure, and maintain ForgeRock IdP/ICAM components within complex, mission-critical environments. Apply DevSecOps practices including CI/CD pipelines, automated provisioning, and configuration-as-code to ICAM services. Integrate ICAM services with enterprise directory architecture, federation services, Zero Trust controls, and cross-domain workflows. Implement access management functions including SSO, identity federation, authentication flows, and policy enforcement. Collaborate with cybersecurity and infrastructure teams to design secure identity solutions aligned with DoD and DISA standards. Conduct system hardening, monitoring, log analysis, and performance tuning across Linux-based ICAM components. Diagnose and resolve escalated ForgeRock/ICAM issues within defined SLAs, including root-cause analysis. Create and maintain engineering documentation including CONOPS, SOPs, and workflow diagrams. Provide input to audits, ATO support, and compliance initiatives. Support architectural reviews and internal control assessments. This onsite role in Arlington, VA requires an active Top Secret Clearance and supports the Defense Information Systems Agency's Zero-Trust Architecture.

Required Qualifications

  • BS in Computer Science, IT, or related discipline and 8+ years of systems engineering experience (or equivalent experience in lieu of degree)
  • Active TS clearance with SCI eligibility
  • Ability to obtain and maintain a CI Poly and Special Program Access
  • IAT Level II certification or higher (e.g., Security+ CE, CySA+, SSCP, CISSP)
  • Hands on experience with federation technologies (SAML, OAuth2) and ZeroTrust identity principles
  • Experience engineering or administering the ForgeRock platform (AM, IDM, DS)
  • Strong understanding of ICAM concepts, identity lifecycle management, and enterprise access controls
  • Experience with Windows and Linux systems administration, shell scripting, and troubleshooting
  • Onsite 5 days/week in Arlington, VA
  • US citizen or lawful permanent resident of the United States

Desired Qualifications

  • Experience supporting DISA or DoD mission partners
  • Active TS/SCI with CI Poly preferred
  • Experience with JISG Access Controls
  • Experience with AWS cloud engineering, IAM, and security services
  • Experience with Ansible playbooks and automated configuration management
  • Experience with CI/CD pipelines (GitLab, Jenkins, etc.)

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce