Okta Support Engineer (REMOTE)

Koniag Services, Inc.
United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Active Directory Application Programming Interfaces (APIs) Amazon Web Services Application Integration Architecture JIRA User Authentication Microsoft Azure CompTIA Security+ Cyber Security Continuous Integration Multi-Factor Authentication Identity and Access Management
+22 more
Python (Programming Language) Lightweight Directory Access Protocols (LDAP) OAuth OpenID Ping (Networking Utility) Windows PowerShell Openid Connect Zero Trust Network Access Runbook Security Assertion Markup Language (SAML) Single Sign-On Systems Integration Scripting Google Cloud Enterprise Software Applications Okta Cyberark SC Clearance Information Technology SailPoint Devsecops Servicenow

Job description

Koniag IT Systems, LLC, a Koniag Government Services company, is seeking an experienced ICAM Okta Support Engineer to join a team supporting Identity, Credential, and Access Management (ICAM) solutions for our government customers. The ideal candidate is a technically skilled professional with a strong background in identity and access management technologies, particularly within the Okta platform, and is passionate about delivering secure and reliable solutions in a federal environment.

The ICAM Okta Support Engineer will provide technical support, configuration, administration, and maintenance of Okta-based Identity, Credential, and Access Management solutions in a federal government environment. The engineer will work closely with security teams, system administrators, and government stakeholders to ensure integrity, availability, and security of identity and access management systems.

Principal responsibilities will include but are not limited to:

  • Provide day-to-day administration, configuration, and support of the Okta platform, including user lifecycle management, application integrations, and authentication policies.
  • Troubleshoot and resolve ICAM-related incidents, service requests, and problems in a timely manner, adhering to established SLAs.
  • Configure and maintain Okta features including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Universal Directory, Lifecycle Management, and API Access Management.
  • Integrate Okta with enterprise applications, directories, and third-party services using SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC) protocols.
  • Support the onboarding and offboarding of users and applications within the Okta environment.
  • Monitor system health, review logs, and proactively identify and address potential issues within the ICAM ecosystem.
  • Collaborate with security and compliance teams to ensure IAM configurations meet federal security standards and frameworks, including NIST guidelines and Zero Trust principles.
  • Assist in the development and maintenance of technical documentation, standard operating procedures (SOPs), and runbooks related to ICAM and Okta operations.
  • Participate in change management processes, including planning, testing, and implementing changes to the Okta environment.
  • Support audits and compliance reviews by providing relevant access reports and configuration documentation.
  • Work with cross-functional teams to evaluate and implement new Okta features and capabilities that align with mission requirements.
  • Provide Tier 2/Tier 3 support for escalated identity and access management issues.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field from an accredited college or university; equivalent work experience may be considered in lieu of a degree.
  • 3+ years of hands-on experience administering and supporting Okta or a comparable Identity and Access Management (IAM) platform.
  • Active Secret Clearance required.
  • Relevant Okta certification(s) required (e.g., Okta Certified Administrator, Okta Certified Professional, or Okta Certified Consultant)., * Exceptional communication skills in English - both written and oral - with the ability to communicate effectively with technical and non-technical stakeholders.
  • Hands-on experience administering the Okta platform, including SSO, MFA, Universal Directory, Lifecycle Management, and Okta Workflows.
  • Strong understanding of identity federation protocols including SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC).
  • Experience integrating Okta with Active Directory (AD) and/or LDAP environments.
  • Familiarity with ICAM frameworks, principles, and federal identity management standards (e.g., NIST SP 800-63, FICAM).
  • Experience supporting users and applications in a ticketing/ITSM environment (e.g., ServiceNow, Jira).
  • Ability to analyze and interpret system logs to diagnose and resolve access and authentication issues.
  • Experience with Multi-Factor Authentication (MFA) deployment and policy management.
  • Knowledge of Zero Trust Architecture principles and their application to identity and access management.
  • Ability to create and maintain clear technical documentation, SOPs, and runbooks.
  • Demonstrated ability to work both independently and collaboratively in a team environment.

Clearance Requirement:

  • Active Secret Clearance

Desired Skills and Competencies:

  • Experience with SailPoint.
  • Experience working in a federal government IT environment supporting ICAM programs.
  • Okta Certified Consultant or Okta Certified Developer certification.
  • Familiarity with Privileged Access Management (PAM) solutions and concepts.
  • Experience with DevSecOps practices and CI/CD pipeline integrations involving identity services.
  • Knowledge of cloud platforms such as AWS, Azure, or Google Cloud and their native IAM services.
  • Experience with scripting languages (e.g., Python, PowerShell) for automation of identity management tasks.
  • Familiarity with additional IAM platforms such as SailPoint, CyberArk, or Ping Identity.
  • Understanding of PIV/CAC authentication and its integration within federal environments.
  • Experience supporting ATO (Authority to Operate) processes and contributing to security documentation such as System Security Plans (SSPs).
  • CISSP, Security+, or other relevant cybersecurity certifications.

Benefits & conditions

We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

About the company

Koniag IT Systems, LLC, a Koniag Government Services company, is seeking an Okta Support Engineer with a Secret Security clearance to support KITS and our government customer. The position is remote., Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com .

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

Videos

See all

Related articles

See all