IAM / Zero Trust Cybersecurity Engineer

Xtreme Inc
Washington, DC, United States
2 months ago
Apply on indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Part-time (≤ 32 hours)
Experience level
Expert
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Azure Cloud Computing Security CompTIA Security+ Cyber Security Multi-Factor Authentication Identity and Access Management Role-Based Access Control Azure Active Directory Zero Trust Network Access Data Logging Okta Cyberark
+1 more
SailPoint

Job description

XSI is seeking an IAM / Zero Trust Cybersecurity Engineer to design, implement, and maintain identity and access controls for the cybersecurity engineering team supporting the Congressional Budget Office (CBO). This is a sustained part-time role that surges during IAM discovery, control implementation, validation, and documentation., * Design, implement, and maintain least-privilege access controls, RBAC, PAM, MFA, and authentication/authorization integrations across cloud, network, endpoint, and application environments.

  • Configure and manage Entra ID / Azure AD, conditional access policies, identity provider integrations, and cloud IAM.
  • Implement and govern privileged access using tools such as CyberArk, Delinea, Azure PIM, Okta, or SailPoint.
  • Conduct access reviews; remediate excessive or standing permissions; govern service accounts.
  • Drive MFA / passwordless rollout, group/role cleanup, identity logging, and audit evidence collection.
  • Enforce Zero Trust principles across cloud, network, and endpoint environments.

Requirements

Do you have experience in Zero Trust security?, * 6-10+ years of IAM, Zero Trust, and enterprise access control experience.

  • Hands-on experience with Entra ID / Azure AD, conditional access, RBAC, MFA, privileged access, identity provider integration, cloud IAM, and access reviews.
  • PAM experience with CyberArk, Delinea, Azure PIM, Okta, SailPoint, or equivalent (preferred).
  • Demonstrated implementation of access controls - not policy authorship alone., Preferred: Microsoft SC-300, AZ-500, SC-100; Okta; SailPoint; Security+, CISSP, CISM, or equivalent IAM/cloud security credentials.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:25 min

Implementing zero trust architectures for secure developer ecosystems

Vandana Verma · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

7:50 min

Prioritizing cybersecurity and zero trust in development

Ash Ryan Arnwine Ash Ryan Arnwine +3 · World Congress 2024

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

2:20 min

Addressing security risks with central single sign-on setups

Gift Egwuenu · World Congress 2023

3:58 min

Implementing zero trust on traditional cloud providers and serverless

Jan Peer Stöcklmair Jan Peer Stöcklmair · World Congress 2026 Europe

Videos

See all

Related articles

See all