PKI / IAM Security Engineer

Ad Hoc, LLC
Silver Spring, MD, United States
2 months ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$130,000.0 - $135,000.0
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services User Authentication Cloud Computing CompTIA Security+ System Configuration Federal Information Processing Standards (FIPS) Identity and Access Management Lightweight Directory Access Protocols (LDAP) OAuth OpenID Public Key Infrastructure
+6 more
Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Systems Integration SSL Certificate Management Terraform

Job description

Ad Hoc is a technology company that empowers organizations to deliver scalable, impactful digital services. Using modern, agile methods, our team creates products that meet people’s needs and transform their experience of government.

Work on things that matter

Our collaborations have shaped some of the defining moments in public-sector service delivery. We’ve helped build products that connect Veterans to tailored services, help millions access affordable health care, and support important programs like Head Start. As we work with agencies to deliver critical services, we’re also changing how the government approaches technology.

Built for a remote life

Our culture, communications, and tools are built for remote work, enabling us to bring together top talent nationwide. At Ad Hoc, remote life empowers our teams to design work environments that fit their lives and that foster flexibility and collaboration to achieve positive outcomes for our customers.

Committed to high expectations and a welcoming culture

Ad Hoc values acceptance, accountability, and humility. We aren’t heroes. We learn from our mistakes and improve the process for the next time. We build small, inclusive teams to collaborate closely with our partners to solve the right problems and deliver software that works., As a PKI / IAM Security Engineer, you will design, implement, and operate the identity, credential, and access management (ICAM) and public key infrastructure (PKI) capabilities that secure a large federal enterprise cloud platform. You will translate federal identity and security requirements into engineered, automated solutions that protect access to mission-critical systems serving Veterans. Primary expectations of a PKI / IAM Security Engineer include:

  • Engineering and operating identity, credential, and access management (ICAM) services, including authentication, authorization, federation, and single sign-on for platform applications
  • Implementing and maintaining public key infrastructure (PKI), including certificate issuance, renewal, revocation, and key lifecycle management
  • Integrating Personal Identity Verification (PIV) card-based authentication in accordance with HSPD-12 and FIPS 201
  • Configuring and managing cloud identity and access management (AWS IAM), including roles, policies, and least-privilege access across multi-account environments
  • Applying federal identity standards and frameworks, including NIST SP 800-63 Digital Identity Guidelines and the Federal ICAM (FICAM) architecture, to platform design and operations
  • Advancing zero-trust principles across identity and access controls
  • Automating identity and access provisioning through infrastructure as code (Terraform) and supporting the platform’s Authority to Operate (ATO) with audit-ready evidence
  • Producing technical documentation and translating complex identity and security concepts for a range of stakeholders
  • Working with government partners and application teams to ensure systems meet security, compliance, and access requirements, Ad Hoc LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, sex, sexual orientation, gender identity or expression, religion, age, pregnancy, disability, work-related injury, covered veteran status, political ideology, marital status, or any other factor that the law protects from employment discrimination.

We value the unique skills gained through military service and encourage veterans and transitioning service members to apply.

In support of various state and city equal pay transparency laws, Ad Hoc job descriptions feature the starting range we reasonably expect to pay to candidates who would join our team with little to no need for training on the responsibilities we’ve outlined above. Actual compensation is influenced by a wide range of factors including but not limited to skill set, level of experience, and responsibility. The range of starting pay for this role is $130,000-$135,000. Our recruiters will be happy to answer any questions you may have, and we look forward to learning more about your salary requirements.

job reference:

https://adhoc.team/ Ad Hoc LLC is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, sex, sexual orientation, gender identity or expression, religion, age, pregnancy, disability, work-related injury, covered veteran status, political ideology, marital status, or any other factor that the law protects from employment discrimination.

Requirements

  • Bachelor’s and 3+ years of experience; relevant experience may be substituted for education
  • Hands-on experience with identity and access management (IAM) and/or public key infrastructure (PKI) in an enterprise or cloud environment
  • Working knowledge of authentication and authorization protocols (e.g., SAML, OAuth 2.0, OIDC, LDAP) and certificate management
  • Familiarity with federal identity standards such as PIV / HSPD-12, FIPS 201, or NIST SP 800-63
  • Must be able to obtain and maintain a U.S. Public Trust / suitability determination, * Prior experience with the Department of Veterans Affairs
  • Experience with cloud IAM (AWS), federation, and single sign-on at scale
  • Familiarity with FICAM, zero-trust architecture, and NIST 800-53
  • Relevant certifications (e.g., CompTIA Security+, AWS Security Specialty, identity platform certifications, CISSP)
  • Experience automating identity workflows with infrastructure as code (Terraform)

To learn more about working at Ad Hoc, please visit:https://adhocteam.us/join

Benefits & conditions

  • Company-subsidized health, dental, and vision insurance
  • Flexible PTO
  • 401K with employer match
  • Paid parental leave after one year of service
  • Employee Assistance Program

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all