> Markdown version of [/jobs/ext/2698311-senior-cybersecurity-engineer-iam](https://www.wearedevelopers.com/jobs/ext/2698311-senior-cybersecurity-engineer-iam). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Engineer (IAM) - **Company:** Amentum Services, Inc. - **Location:** Washington, DC, United States (Remote available) - **Experience:** Expert - **Salary:** $120,000.0 - $149,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, User Authentication, Microsoft Azure, Cyber Security, Information Systems, Computer Networks, Identity and Access Management, Network Security, Password Management, Role-Based Access Control, Zero Trust Network Access, Okta, Firewalls (Computer Science), Information Technology, Cybercrime, SailPoint - **Published:** September 3, 2026 - **Apply:** https://www.dcjobsite.com/job.asp?id=3375531445&tx=JJ3125FFG&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Working knowledge of Zero Trust, RBAC, and ABAC * Working knowledge of regulatory/compliance frameworks relevant to IAM (CMMC, NIST 800-171/800-172, or similar) * Understanding of network security fundamentals: boundary protection, segmentation, firewalls, endpoint security, threat hunting, data protection * Self-starter, strong written/verbal communication, comfortable with minimal supervision and shifting priorities * Ability to travel up to 10%, * Typically, 8 years of hands-on IAM security engineering experience with a Bachelor's degree in Computer Science, Information Systems or related field plus; 4 with Master's. IAM security engineering experiences includes implementing access controls, privileged access management, and authentication policy, rather than general user/account administration. * Hands-on experience securing and administering Entra ID, Okta, and Active Directory identity infrastructure in a hybrid environment * Solid experience in Privileged Access Management (PAM), Self-Service Password Management, and Just-In-Time (JIT) access * Current CISSP, CISM, or equivalent certification * Solid MFA and access-protection implementation experience * Solid Microsoft Azure/M365 experience * U.S. Citizen (required) Preferred qualifications, KSAs, and experience: * Experience implementing an IAM governance platform such as Saviynt, SailPoint, or similar * Experience supporting CMMC assessments or audits * Familiarity with GDPR, SOX, ISO 27001 * Entra/Azure GCC High exposure ## Description * Implement and operate enterprise IAM security controls across a multi-tenant/multi-domain hybrid environment spanning Entra ID, Okta, and Active Directory - including PAM, JIT access, conditional access, and MFA policy enforcement (not day-to-day user/group provisioning or account administration) * Execute IAM designs defined by security architecture, translating architectural standards into working security configurations, policies, and integrations * Maintain and enforce IAM-related security policies, standards, and best practices in alignment with regulatory and compliance requirements (CMMC, NIST 800-171/800-172, and other applicable frameworks) * Configure and tune identity security controls - access policies, privileged access workflows, authentication requirements - protecting users, systems, applications, and data across Entra ID, Okta, and AD environments * Serve as 2nd-level SOC escalation point for critical identity-related security incidents * Investigate identity-related security anomalies using platform reporting, network traffic, log files, and automated alerts * Support audit and assessment activities by maintaining compliant configurations and evidence for IAM controls * Automate recurring IAM security operations tasks * Maintain system and process documentation, including compliance-relevant control documentation * Provide off-hours support as needed (infrequent) * Cover other assignments as needed ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)