Okta IAM / Identity Integration Engineer

Peraton Inc
Herndon, VA, United States
21 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$66,000.0 - $106,000.0
Working hours
Regular working hours

Tech stack

Microsoft Access Application Programming Interfaces (APIs) Configuration Management Continuous Integration Multi-Factor Authentication Identity and Access Management Mobile Application Software OAuth OpenID Openid Connect Zero Trust Network Access Security Assertion Markup Language (SAML)
+7 more
Systems Integration Okta Postman Customer Identity Access Management Api Design Restful APIs Devsecops

Job description

Peraton is seeking a highly experienced Okta IAM/Identity Integration Engineer to support the Department of Defense’s next-generation enterprise Identity, Credential, and Access Management (ICAM) platform that is replacing DS Logon and providing secure authentication services for millions of Service Members, Veterans, Family Members, and Beneficiaries. The Alternative Multi-factor Authentication Support Services (AMASS) Program provides secure, scalable identity and access management services across the Department of Defense, enabling authentication, authorization, and digital identity interoperability for highvisibility DoD systems.

In this role, you will design, integrate, and sustain identity services using the Okta Identity Engine (OIE), implement secure authentication flows using the Okta Embedded SDK, and ensure compliance with DoD cybersecurity policies, including RMF, STIG, and NIST guidelines. This position requires extensive handson experience with modern identity protocols, mobile authentication, and enterprise IAM/ICAM solutions within Federal environments., Configure, administer, and optimize Okta Identity Engine (OIE) to support DoD enterprise identity workflows.

  • Implement and support the Okta Embedded SDK to deliver secure and standardized authentication for partner applications.
  • Develop and enhance mobile identity integrations for native iOS and Android platforms supporting DoD mission applications.
  • Implement modern identity standards including OAuth 2.0, OpenID Connect (OIDC), and PKCE.
  • Configure phishingresistant authentication methods, including FIDO2/WebAuthn, in alignment with DoD Zero Trust objectives.
  • Design and maintain adaptive and risk-based authentication policies.
  • Integrate identity federation services (OIDC, SAML 2.0) including external Identity Provider (IdP) connections.
  • Manage authentication token lifecycles (JWT, ID, Access, Refresh tokens) across DoD application ecosystems.
  • Implement secure API authentication using OAuth scopes, claims, and structured authorization patterns.
  • Build identity automation using Okta Workflows and nocode/lowcode orchestration tooling.
  • Integrate Okta with DoD authoritative data sources and enterprise-level IAM services.
  • Evaluate and document multiple Okta Mobile implementation alternatives and contribute to the Government Analysis of Alternatives (AoA).
  • Design headless authentication architectures supporting embedded mobile authentication.
  • Design reusable authentication services supporting multiple relying-party mobile applications.
  • Design secure device-bound credential registration and provisioning.
  • Support Configuration Control Board (CCB) reviews and technical architecture presentations.
  • Design alternative MFA pathways for users without CAC credentials.
  • Design proxy authentication capabilities supporting beneficiary relationships.
  • Support identity lifecycle processes, including provisioning, deprovisioning, profile management, and attribute governance.
  • Troubleshoot complex identity, federation, and mobile SDK integration issues across multiproduct DoD environments.
  • Utilize REST APIs, Postman, and related tooling for API development, testing, and validation.
  • Work with DevSecOps teams to integrate IAM capabilities into CI/CD pipelines supporting DoD modernization.
  • Ensure identity implementations comply with DoD RMF, DISA STIGs, NIST SP 80063, and other Federal cybersecurity mandates.

Requirements

  • 5 years with BS/BA; 3 years with MS/MA; 0 years with PhD
  • Must be able to obtain and maintain a Public Trust
  • U.S. Citizenship required
  • Experience configuring and administering Okta Identity Engine (OIE).
  • Experience implementing Okta Embedded SDK and designing secure custom authentication flows.
  • Strong knowledge of OAuth 2.0, OIDC, PKCE, and related identity protocols.
  • Experience implementing FIDO2/WebAuthn for phishingresistant authentication.
  • Experience developing adaptive/risk-based authentication policies.
  • Strong background in identity federation and IdP integrations (OIDC, SAML 2.0).
  • Experience developing secure mobile authentication for native iOS and Android.
  • Deep understanding of authentication token lifecycle management.
  • Experience designing structured API authorization models using OAuth scopes and claims.
  • Experience with Okta Workflows, identity automation, and enterprise identity integrations.
  • Experience with identity lifecycle processes, provisioning, and directory synchronization.
  • Strong troubleshooting skills related to authentication, federation, and SDK integrations.
  • Experience working with REST APIs and tools such as Postman.
  • Familiarity with DevSecOps, CI/CD pipelines, and secure configuration management.
  • Experience supporting RMF, STIG, DoD cybersecurity compliance, and Federal ICAM requirements., * Okta Certified Administrator or Okta Certified Professional.
  • Hands-on experience with the Okta Identity Engine Embedded SDK for native app authentication.
  • Experience supporting large-scale Federal ICAM/CIAM implementations.
  • Knowledge of NIST SP 80063 Digital Identity Guidelines.
  • Experience with CAC/PIV, derived credentials, or Purebred mobile credential solutions.
  • Experience integrating identity proofing, identity verification, or credential issuance services.
  • Familiarity with DoD Zero Trust Architecture and enterprise IAM modernization initiatives.

About the company

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure. Target Salary Range

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all