> Markdown version of [/jobs/ext/730285-iam-zero-trust-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/730285-iam-zero-trust-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM / Zero Trust Cybersecurity Engineer - **Company:** Xtreme Inc - **Location:** Washington, DC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Azure, Cloud Computing Security, CompTIA Security+, Cyber Security, Multi-Factor Authentication, Identity and Access Management, Role-Based Access Control, Azure Active Directory, Zero Trust Network Access, Data Logging, Okta, Cyberark, SailPoint - **Published:** June 29, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=2b532d28ca21da16 ## About the Role Do you have experience in Zero Trust security?, * 6-10+ years of IAM, Zero Trust, and enterprise access control experience. * Hands-on experience with Entra ID / Azure AD, conditional access, RBAC, MFA, privileged access, identity provider integration, cloud IAM, and access reviews. * PAM experience with CyberArk, Delinea, Azure PIM, Okta, SailPoint, or equivalent (preferred). * Demonstrated implementation of access controls - not policy authorship alone., Preferred: Microsoft SC-300, AZ-500, SC-100; Okta; SailPoint; Security+, CISSP, CISM, or equivalent IAM/cloud security credentials. ## Description XSI is seeking an IAM / Zero Trust Cybersecurity Engineer to design, implement, and maintain identity and access controls for the cybersecurity engineering team supporting the Congressional Budget Office (CBO). This is a sustained part-time role that surges during IAM discovery, control implementation, validation, and documentation., * Design, implement, and maintain least-privilege access controls, RBAC, PAM, MFA, and authentication/authorization integrations across cloud, network, endpoint, and application environments. * Configure and manage Entra ID / Azure AD, conditional access policies, identity provider integrations, and cloud IAM. * Implement and govern privileged access using tools such as CyberArk, Delinea, Azure PIM, Okta, or SailPoint. * Conduct access reviews; remediate excessive or standing permissions; govern service accounts. * Drive MFA / passwordless rollout, group/role cleanup, identity logging, and audit evidence collection. * Enforce Zero Trust principles across cloud, network, and endpoint environments. ## Related Videos - [Trust Issues: Because Zero-Trust Isn’t Optional Anymore](https://www.wearedevelopers.com/videos/100089-trust-issues-because-zero-trust-isn-t-optional-anymore) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)