IAM Engineer

The Sos
United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Authentication Protocols Microsoft Azure Cloud Computing Security Cyber Security System Configuration Multi-Factor Authentication Identity and Access Management Information Systems Security Architecture Professional OAuth Ping (Networking Utility) Public Key Infrastructure
+9 more
Role-Based Access Control Openid Connect Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Cloud Platform System Okta Information Technology Dynamic Data

Job description

SOSi is seeking a IAM Engineers to support mission requirements for a structured approach to further develop, integrate, and sustain a scalable, federated data ecosystem that enhances interoperability, governance, and mission-driven analytics for a DoD customer. The primary objective of the program is to bridge the operational gaps between DoD, IC, interagency, and non-traditional international partners to enable real-time information sharing, dynamic data integration, and mission-tailored analytical capabilities.

  • Design, implement, and manage Identity and Access Management (IAM) solutions, ensuring secure authentication and access control across cloud and on-premises environments.

  • Enforce Zero Trust Architecture (ZTA) principles and role-based access control (RBAC) policies to protect mission-critical systems.

  • Integrate IAM solutions with Microsoft Entra ID (formerly Azure Active Directory), Public Key Infrastructure (PKI), and Common Access Card (CAC) authentication mechanisms.

  • Oversee IAM automation, ensuring streamlined provisioning and de-provisioning of user roles and permissions.

  • Submit the Identity & Access Management Compliance Report, detailing system configurations, access logs, and compliance status

Requirements

  • Active in-scope SECRET Clearance.

  • Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or

  • five (5) years of equivalent experience in IAM engineering.

  • Demonstrated experience in designing and managing IAM frameworks in cloud environments (AWS, Azure), configuring identity governance tools, and implementing zero-trust architecture models.

  • Experience with tools such as Microsoft Entra ID (formerly Azure AD), Okta, Ping Identity, or AWS IAM is required.

  • Possess the knowledge and capability to design, implement, and manage Identity and Access Management (IAM) solutions within secure cloud and on-premises environments.

  • Proficient in authentication protocols (SAML, OAuth, OpenID Connect), role-based access control (RBAC), multi-factor authentication (MFA), and identity federation across hybrid environments.

  • Strong knowledge of DoD IL2, IL4, and IL5 security frameworks and compliance standards is required.

Preferred Qualifications:

  • Desirable but not required certifications include Certified Information Systems Security Professional (CISSP), AWS Certified Security - Specialty, or Microsoft Certified: Identity and Access Administrator Associate.

About the company

Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions, tested leadership, and trusted results to enable national security missions worldwide.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:35 min

Managing dynamic application data effectively using IndexedDB

Nico Martin · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

3:56 min

Filtering observability data dynamically without altering codebase logic

Nočnica Mellifera · LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all