> Markdown version of [/jobs/ext/2573824-l5-identity-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/2573824-l5-identity-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # (L5) Identity Cybersecurity Engineer - **Company:** MITRE Corporation - **Location:** McLean, VA, United States - **Experience:** Expert - **Salary:** $172,800.0 - $216,000.0 - **Contract:** Permanent contract - **Skills:** Systems Engineering, Cyber Security, Computer Engineering, Identity and Access Management, OpenID, Public Key Infrastructure, Role-Based Access Control, Zero Trust Network Access, Security Assertion Markup Language (SAML), Strategies of Testing, Information Technology - **Published:** August 2, 2026 - **Apply:** https://www.juju.com/job/00000000gl8gov ## About the Role + BS with 10-12 years relevant experience, or MS with 8-10 years, or PhD with 5 years; or equivalent combination of education and experience. + Strong analytical/problem-solving skills and sound technical judgment. + Strong written and verbal communication skills. + Demonstrated ability to deliver results and collaborate across teams. + Ability to work effectively in secure/classified environments. + Candidate must be willing to take and successfully complete a CI polygraph. + Continued employment on this work is contingent upon meeting and maintaining government security eligibility requirements (requirements may change based on sponsor needs). + Active Top Secret Clearance Required + Per the U.S. Government's eligibility requirements, you must be a U.S Citizen to be considered for a security clearance. + This position requires a minimum of 4 days a week on-site Preferred Qualifications: + Degree in Computer Science, Cybersecurity, Electrical/Computer Engineering, or related field. + Systems engineering experience (requirements, architecture, integration, test) and familiarity with development lifecycles. + Experience applying security principles to enterprise architecture and system design. + Strong understanding of ICAM concepts supporting a Zero Trust security model. + Familiarity with threats/attack patterns relevant to identity and access systems. + Interest in applied research and building reusable, scalable technical approaches. + Active TS/SCI with CI polygraph preferred. ## Description + Performing research and development, evaluation and testing and operational support for high-priority sponsor mission applications, MITRE Labs strategic initiatives, and MITRE's internal research and development program. Roles & Responsibilities: + Translate mission needs into ICAM technical requirements, interfaces, and measurable outcomes. + Design and assess Zero-Trust-aligned ICAM architectures and reference designs. + Engineer authentication, authorization, and federation solutions (e.g., SAML/OIDC, step-up auth) and manage credentials/trust services (PKI, certificates). + Lead Identity Governance & Administration (IGA) including provisioning, joiner-mover-leaver workflows, and authoritative source integration. + Develop, evaluate, and steer RBAC/ABAC/PBAC models, entitlement/attribute strategies, and privileged-access controls. + Build solutions for constrained environments (limited connectivity, offline sync) and define test strategies, roadmaps, and integration plans. + Partner with security assessors and stakeholders to ensure auditable solutions that map to required controls. + Collaborate with engineers, integrators, and vendors on technology evaluation, trade studies, reusable assets, and mentorship. ## Related Videos - [Model Based Systems Engineering in an Agile Product Development Process](https://www.wearedevelopers.com/videos/68-model-based-systems-engineering-in-an-agile-product-development-process) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Automated Driving - Why is it so hard to introduce](https://www.wearedevelopers.com/videos/628-automated-driving-why-is-it-so-hard-to-introduce) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)