ICAM Operations Engineer - Enterprise Authentication Services

General Dynamics Information Technology
United States
22 days ago
Apply on www.builtincolorado.com
Prepare application

Role details

Contract type
Contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
3 years minimum
Compensation
$39,520.0
Working hours
Regular working hours

Tech stack

Active Directory Active Directory Federation Services Agile Methodology Artificial Intelligence Application Integration Architecture User Authentication Authentication Protocols Cyber Security Disaster Recovery Multi-Factor Authentication Identity and Access Management Lightweight Directory Access Protocols (LDAP)
+21 more
OAuth OpenID Performance Tuning Public Key Infrastructure Windows PowerShell Openid Connect Azure Active Directory Anti-Phishing Zero Trust Network Access Security Assertion Markup Language (SAML) Smart Cards Web Applications Load Balancing Okta Generative AI SC Clearance Ws-federation Pingfederate Information Technology Performance Monitor Docker

Job description

  • Provide Tier III operational support for enterprise Identity Provider (IdP) services used by millions of DoD users.
  • Perform daily operations, monitoring, and troubleshooting of Microsoft ADFS infrastructure supporting authentication and federation.
  • Investigate and resolve complex incidents involving authentication, federation trust, certificates, tokens, claims rules, and identity assertion issues.
  • Manage and resolve ITSM tickets (incident, problem, and change) in coordination with engineering, cybersecurity, and infrastructure teams.
  • Support enterprise onboarding and integration efforts by validating application configurations and ensuring proper federation behavior.
  • Troubleshoot identity protocol issues involving SAML, OAuth 2.0, OpenID Connect (OIDC), WS-Federation, and certificate-based authentication.
  • Perform operational sustainment activities such as certificate lifecycle management, configuration updates, monitoring review, health checks, and patch validation.
  • Maintain authentication policies, claims rules, attribute mappings, and token issuance configurations under engineering guidance.
  • Support enterprise SSO, MFA, Conditional Access, and phishing-resistant authentication mechanisms.
  • Contribute to Zero Trust operational readiness by ensuring modern authentication and federation capabilities remain stable and functional.
  • Participate in Agile support activities and continuous improvement efforts.
  • Document operational procedures, incident resolutions, troubleshooting steps, and system behaviors., Coordinates installation projects from initial customer and provider contact through scheduling, product delivery, compliance documentation, issue resolution, and post-completion work orders. Communicates with customers, service providers, stores, and vendors through inbound and outbound calls, documents interactions in company systems, ensures SLA adherence, assesses costs and chargebacks, and supports consistent customer service and process improvement in a fast-paced environment. Top Skills: Installation Management SystemMyredvestSalesforce Corporate Tools LLC

Merchant Services Representative

3 Hours Ago Remote or Hybrid 19-19 Hourly Entry level 19-19 Hourly Entry level eCommerce * Legal Tech * Professional Services * Software * Data Privacy Conduct outbound consultation calls with clients about credit card processing, assess merchant needs, recommend cost-effective solutions, and convert leads into merchant account applications. Provide customer service, manage client relationships, communicate by phone and email, follow up on pricing quotes, and support other customer service teams. The role requires learning point-of-sale systems and credit card terminals while using consultative sales, negotiation, and problem-solving skills. Top Skills: Credit Card TerminalsPoint-Of-Sale Systems Coupa

Requirements

Access Management, Authentication, Authentication Protocols, Identity Access Management (IAM), 5 + years of related experience, The ideal candidate has at least 3 years of hands-on experience supporting identity or authentication systems and excels in enterprise operational environments. Strong foundational skills in Microsoft Active Directory Federation Services (ADFS), authentication protocols, troubleshooting, and Tier III support are essential. This role provides opportunities to work closely with senior engineers, respond to complex operational issues, and support mission-critical identity services across large-scale DoD environments., * Active Secret Clearance at minimum. Interim Secret Clearances are not allowed.

  • Bachelor’s Degree in a related technical discipline, or the equivalent combination of education, technical certifications or training, or work experience.
  • DoD 8570/8140 IAT Level II certification (Security+ CE or higher), * Minimum of 5 years of experience with at least 3 years of experience supporting Identity and Access Management (IAM), Authentication, Federation, or ICAM-related technologies.
  • Hands-on experience with Microsoft ADFS in enterprise operational environments.
  • Strong understanding of authentication, authorization, and federation concepts.
  • Familiarity with SAML, OAuth, OIDC, WS-Federation, certificates, and related identity technologies.
  • Experience with PKI, certificate-based authentication, smart cards, or MFA.
  • Experience supporting application integrations with identity/federation platforms.
  • Familiarity with Active Directory, LDAP, and enterprise identity repositories.
  • Strong troubleshooting skills for identity/ADFS issues and ability to perform Tier III diagnostics.
  • Ability to document findings and communicate technical issues effectively.
  • Self-starter with desire for growth in enterprise identity operations.

Desired Skills/Knowledge:

  • Experience with ADFS farms, Web Application Proxy (WAP), load balancers, or disaster recovery setups.
  • Exposure to modern identity platforms such as Microsoft Entra ID, PingFederate, PingAccess, Okta, or Keycloak.
  • Familiarity with DoD ICAM or federation initiatives.
  • Understanding of NIST 800-63 identity assurance concepts.
  • Experience with phishing-resistant authentication or passwordless technologies.
  • Basic PowerShell scripting for identity operations.
  • Experience with monitoring, performance tuning, or troubleshooting authentication issues at scale.
  • Familiarity with PKI/certificate services, CAC authentication, or DoD credentialing.
  • Awareness of container technologies such as Docker and Kubernetes.

Benefits & conditions

At GDIT, the mission is our purpose, and our people are at the center of everything we do.

  • Growth: AI-powered career tool that identifies career steps and learning opportunities
  • Support: An internal mobility team focused on helping you achieve your career goals
  • Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay and paid time off
  • Flexibility: Full-flex work week to own your priorities at work and at home
  • Community: Award-winning culture of innovation and a military-friendly workplace

OWN YOUR OPPORTUNITY Explore an enterprise IT career at GDIT and you’ll find endless opportunities to grow alongside colleagues who share your desire to drive operations forward.

The likely salary range for this position is $114,750 - $155,250. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours: 40, Total Rewards at GDIT: Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process: As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes., 5 Hours Ago In-Office or Remote 152K-213K Annually Expert/Leader 152K-213K Annually Expert/Leader Artificial Intelligence * Fintech * Information Technology * Logistics * Payments * Business Intelligence * Generative AI Lead FP&A for global Value Services supporting Customer Success, Professional Services, Support, and related teams. Partner with the CCO, manage a team of three, own budgeting, forecasting, financial modeling, performance reporting, executive presentations, ad-hoc analysis, process improvements, headcount and spend controls to optimize margins and support strategic initiatives. Top Skills: AnaplanChatgptCopilotGeminiExcelPowerPoint

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

About the company

GDIT has an opportunity for an ICAM Operations Engineer supporting a large line of business delivering enterprise-scale Identity, Credential, and Access Management (ICAM) capabilities. This role supports the DoD ICAM mission by operating, sustaining, and troubleshooting enterprise Identity Provider (IdP) services that provide secure authentication and federation for more than 4 million DoD enterprise identities., We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.builtincolorado.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · World Congress 2026 Europe

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all