> Markdown version of [/jobs/ext/1467766-lead-identity-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/1467766-lead-identity-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Identity Cybersecurity Engineer - **Company:** MITRE Corporation - **Location:** El Segundo, CA, United States - **Experience:** Expert - **Salary:** $158,800.0 - $198,500.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Cyber Security, Computer Engineering, Identity and Access Management, OpenID, Public Key Infrastructure, Role-Based Access Control, Zero Trust Network Access, Security Assertion Markup Language (SAML), Strategies of Testing, SC Clearance, Information Technology - **Published:** July 28, 2026 - **Apply:** https://careers.mitre.org/us/en/job/R117050 ## About the Role plans. - Partner with security assessors and stakeholders to ensure auditable solutions that map to required controls. - Collaborate with engineers, integrators, and vendors on technology evaluation, trade studies, reusable assets, and mentorship. - Providing ICAM leadership on-site in lab environments at government-operated facilities. **Basic Qualifications:** - BS with 8-10 years relevant experience, or MS with 6-8 years, or PhD with 3-5 years; or equivalent combination of education and experience. - Strong analytical/problem-solving skills and sound technical judgment. - Strong written and verbal communication skills. - Demonstrated ability to deliver results and collaborate across teams. - Ability to work effectively in secure/classified environments. - Continued employment on this work is contingent upon meeting and maintaining government security eligibility requirements (requirements may change based on sponsor needs). - This position requires a Secret Clearance - Per the U.S. Government's eligibility requirements for a clearance, U.S. Citizenship is required. - This position requires a minimum of 4 days a week on-site **Preferred Qualifications:** - Degree in Computer Science, Cybersecurity, Electrical/Computer Engineering, or related field. - Systems engineering experience (requirements, architecture, integration, test) and familiarity with development lifecycles. - Experience applying security principles to enterprise architecture and system design. - Strong understanding of ICAM concepts supporting a Zero Trust security model. - Familiarity with threats/attack patterns relevant to identity and access systems. - Interest in applied research and building reusable, scalable technical approaches. - TS/SCI eligibility ## Description operational support for high-priority sponsor mission applications, MITRE Labs strategic initiatives, and MITRE's internal research and development program. **Roles & Responsibilities:** - Translate mission needs into ICAM technical requirements, interfaces, and measurable outcomes. - Design and assess Zero-Trust-aligned ICAM architectures and reference designs. - Engineer authentication, authorization, and federation solutions (e.g., SAML/OIDC, step-up auth) and manage credentials/trust services (PKI, certificates). - Lead Identity Governance & Administration (IGA) including provisioning, joiner-mover-leaver workflows, and authoritative source integration. - Develop, evaluate, and steer RBAC/ABAC/PBAC models, entitlement/attribute strategies, and privileged-access controls. - Build solutions for constrained environments (limited connectivity, offline sync) and define test strategies, roadmaps, and integration ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)