Oracle Identity & Access Management Engineer

General Dynamics Information Technology
Indianapolis, IN, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$112,840.0 - $145,130.0
Working hours
Shift work
Job source

Tech stack

Java (Programming Language) Application Programming Interfaces (APIs) Oracle WebLogic Server Software Documentation CompTIA Security+ Custom Software Multi-Factor Authentication Federated Identity Management Identity and Access Management Lightweight Directory Access Protocols (LDAP) OAuth OpenID
+14 more
Oracle Databases Oracle (Applications) Role-Based Access Control Zero Trust Network Access Security Assertion Markup Language (SAML) Service-Oriented Architecture Single Sign-On SQL Databases Web Pages Oracle Access Manager Bi Publisher Power Platform Integration Customer Identity Access Management Splunk

Job description

GDIT is seeking an Oracle Identity & Access Management Engineer supporting Hosting, Operations and Maintenance (HOM) services for the Centers for Medicare & Medicaid Services (CMS) Healthcare Integrated General Ledger Accounting System (HIGLAS) program., * Functional administration and maintenance of our 12c Oracle Identity Management application including Oracle Access Manager (OAM), Oracle Internet Directory (OID), and Oracle Identity Governance (OIG).

  • Provide support to and participate in IAM continuous monitoring activities including monitoring new and removed identities, access and permissions changes, privilege escalation, bot activity, and other related activities.
  • Support user access provisioning, authentication, and access management processes.
  • Actively participate in troubleshooting sessions for OIG/OAM in Prod and Non-Prod.
  • Develop and maintain system documentation, including standard operating procedures (SOPs) and configuration guides.
  • Having a strong affinity toward security-oriented practices - including coding, to avoid creating vulnerabilities.
  • Coordinate and collaborate with technical subject matter experts (SMEs) to ensure technical and operational security controls are operating as expected.

Requirements

  • 5+ years’ experience in the Identity & Access Management domain.
  • Expertise in implementing, maintaining, and migrating OIG, OAM 12c components (WebLogic, OIM, SOA, BI, OAM, OAA, OARM), and OID 12c.
  • Strong Java coding skills with proficiency in OIG/OAM APIs (REST and Java APIs) for custom development of webpages, scheduled job deployments, automations.
  • Thorough understanding of authentication and authorization mechanisms, including Single Sign-On (SSO), Identity Federation, Multi-Factor Authentication (MFA), Entitlements, Security Assertion Markup Language (SAML), Open Authorization (OAuth), etc.
  • Extensive exposure to SSO integrations - designing and implementing SSO solutions using OOTB and custom options with OAM or other Identity tools.
  • Strong knowledge of identity and access management, role- and attribute-based access controls (RBAC/ABAC), segregation of duties, least privilege, privilege escalation, etc.
  • Hands on development experience with Scheduled jobs, Adapters, Event handlers, Notifications, plugins and custom connectors (ICF/CI), web pages (for custom page development).
  • Ability to troubleshoot, identify and resolve issues related to OIG/OAM in Prod, non-prod environments.
  • Strong understanding of SQL queries - ability to write custom queries to support custom functionalities, create reports, resolve any issues with existing SQL objects.
  • Experience with BI Publisher reports creation/updates/migration/maintenance.
  • Ability to manage multiple deliverables simultaneously, without impacting deadlines. It is critical for you to be a highly motivated contributor who can track items to completion without constant reminders.
  • Experience with LDAP directories (like OID, AD, etc.) and LDAP queries, and an ability to troubleshoot & resolve any issues (data or otherwise).
  • Experience with BI Publisher reports creation/updates/migration/maintenance.
  • Strong analytical, written, and verbal communication skills with the ability and comfort level to conduct presentations for existing customer audiences., * Upgrade experience from FMW 12c to 14c
  • Knowledge of WebAuthn / FIDO2, device-level signaling, and other relevant Zero Trust identity functions.
  • Relevant identity and access management certifications (e.g., CIAM, CIGE, etc.).
  • Hands-on implementation experience with Oracle Access Manager (OAM) 12c - incl. WebGate config/deployment and SAML, OIDC, OAUTH protocols.
  • Experience in addressing audit requirements - specifically related to Certifications, user operations, access grants, request approvals, etc.
  • Knowledge of Splunk, including the ability to independently investigate any logs for relevant issues.

CERTIFICATIONS (strongly preferred):

  • CISSP
  • CISA
  • CISM
  • CompTIA Security+
  • Technology specific certifications, CLEARANCE: Ability to pass CMS background check and meet the residency requirement for having resided in the US at least (3) three out of the last (5) five years., Years of Experience 5 + years of related experience

  • may vary based on technical training, certification(s), or degree

Benefits & conditions

$112,840 - $145,130 a year 401(k) matching, Paid holidays, Internal mobility program Monday to Friday Remote in Indiana, * Full-flex work week to own your priorities at work and at home, with core work hours Monday - Friday 9:00 AM ET - 3:00 PM ET

  • 401K with company match
  • Comprehensive health and wellness packages
  • Internal mobility team dedicated to helping you own your career
  • Professional growth opportunities including paid education and certifications
  • Cutting-edge technology you can learn from
  • Rest and recharge with paid vacation and holidays
  • Challenging work that makes a real impact on the world around you
  • Remote work

GDITPriority, The likely salary range for this position is $112,840 - $145,130. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

View information about benefits and our total rewards program.

Our Identity Verification Process As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About the company

We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI/ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology. Join our Talent Community to stay up to date on our career opportunities and events at gdit.com/tc.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:08 min

Managing complex structures and corporate guidelines

Alexandra Petri · WWC 2023

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all