> Markdown version of [/jobs/ext/585139-identity-provider-engineer](https://www.wearedevelopers.com/jobs/ext/585139-identity-provider-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Identity Provider Engineer - **Company:** Booz Allen Hamilton Inc. - **Location:** Riverdale Park, MD, United States - **Salary:** $86,800.0 - $198,000.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, Cyber Security, DevOps, Multi-Factor Authentication, Groovy, Identity and Access Management, Python (Programming Language), Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Ping (Networking Utility), Windows PowerShell, Openid Connect, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Systems Integration, Scripting, Google Cloud, Okta, Connectivity Problems, Pingfederate, Information Technology, Restful APIs, Network Server - **Published:** June 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=2124d0638f468a45 ## About the Role Do you have experience in Zero Trust security?, Do you have a High school diploma or GED?, * Experience with Ping Federate, Okta, or Entra ID * Experience with SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC) * Experience developing custom SAML, OAuth, and OIDC integrations and troubleshooting protocol exchanges * Experience with languages used for identity platform development and automation such as Java, JavaScript, Python, PowerShell, or Groovy * Experience working with RESTful APIs to integrate identity providers with external applications and automate identity lifecycle processes * Experience integrating and synchronizing with Active Directory (AD) or LDAP * Knowledge of Zero Trust architectures and implementation of password-less authentication or multifactor authentication (MFA) within the IdP environment * Ability to resolve complex identity and federation issues, including token validation errors, assertion mismatches, and connectivity problems * Active TS/SCI clearance; willingness to take a polygraph exam * HS diploma or GED Nice If You Have: * Experience with Ping Identity Suite tools, including development using PingFederate, PingAccess, PingDirectory, or PingOne with custom workflows and scripting * Experience building or enhancing automated user lifecycle management using System for Cross-domain Identity Management protocols * Experience integrating identity provider code and configurations into DevOps and CI/CD pipelines for automated build and deployment workflows * Knowledge of advanced Okta development features such as Okta Workflows, Custom Authorization Servers, Inline Hooks, and Okta APIs for enhanced platform customization * Knowledge of compliance and regulatory standards such as NIST, FedRAMP, HIPAA, or other frameworks relevant to identity management solutions * Knowledge of cloud identity platforms such as AWS Cognito, Azure AD B2C, or Google Cloud Identity * Possession of excellent verbal and written communication skills * TS/SCI clearance with a polygraph * Bachelor's degree in Computer Science, Cybersecurity, or Information Technology ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) - [No More Post-its: Boost your login security with APIs](https://www.wearedevelopers.com/videos/1043-no-more-post-its-boost-your-login-security-with-apis) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 119 - ❤️ === ❤️](https://www.wearedevelopers.com/magazine/454-dev-digest-119)