user avatar

Enterprise Directory Service SME

Akima

Posted today
Dept of Homeland Security
$110,000 - $135,000
Unspecified
South Burlington, VT (On-Site/Office)

We are seeking a highly experienced Enterprise Directory Services Subject Matter Expert (SME) to support the United States Citizenship and Immigration Services (USCIS) enterprise IT environment. This senior-level position plays a pivotal role in designing, optimizing, and advising on the modernization, operations, and integration of enterprise directory solutions within USCIS's complex IT ecosystem.

The SME will provide expert-level guidance in areas such as data center operations, cloud infrastructure, enterprise networking, systems architecture, virtualization, and cybersecurity compliance. This role also includes strategic input into enterprise modernization and transformation initiatives that align with DHS and USCIS mission objectives.

New contract award, join our winning team and apply now!

Responsibilities

Key Responsibilities:

  • Perform analysis of existing USCIS Active Directory environments and develop new solutions to take advantage of new technologies and best practices provided by thenlatest versions of Windows Server, to include but not limited to:
    • Privileged Remote Tool Server Administration Credential Partitioning.
    • Active Directory Federation Services (ADFS).
    • Group Policy.
    • PowerShell Desired State Configuration.
    • Domain Trusts.
    • Managing Azure Active Directory (Entra ID).
    • Automate the mapping subnets to Active Directory sites and services.
  • Lead architectural and design changes, modifications and advancements to the USCISActive Directory infrastructure in collaboration with Operations for a seamless transition and delivery.
  • Design and lead the implementation of complex identity management solutions
    utilizing tools such as PKI, ADFS, Azure AD Connect, and Microsoft Identity
    Manager.
  • Architect, design, and lead the implementation of Enterprise Active Directory
    delegation models and provide technical assistance to facility administrators, as required.
  • Develop and lead the implementation of potential USCIS Virtual Desktop solutions.
  • Work closely with internal teams to architect and lead the implementation of Group Policy Objects (GPOs), performance tuning as it relates to the latest Windows Desktop and Server Migration project(s).
  • Work with software vendors to identify, install and deploy USCIS business need
    software solutions, involving AD LDAP authentication and delegation rights.
  • Provide Architectural and Engineering analysis of on premise and cloud solutions to ensure, where applicable, interdependent systems have consistent architectures and divergent architectures are evaluated for business value, and removal of waste.
  • Architect and design secure disaster recovery for Active Directory production
    environment.
  • Act as a technical liaison between USCIS OIT customers and third-party
    software/hardware vendors to deliver necessary solutions for the agency.
  • Participate in lifecycle planning of critical IT services, architecting and designing replacement solutions.
  • Architect solutions that integrate Azure AD Connect and Office - 365 Suite.
  • Establish and ensure all changes to the Group Policy Objects (GPOs) under Active Directory (AD) are controlled and documented.
  • Ensure GPO testing is completed prior to GPO changes to production.
  • Support enterprise backup and disaster recovery architecture, migration planning and implementation.
  • Architect DNS configuration, MS Clustering services, storage configuration, terminal services, TCP/IP protocol and LDAP services.
  • Provide architectural analysis of existing and new directory services in order to
    ensure that authentication flows are going to the appropriate service, to include but not limited to:
    • Active Directory.
    • ADFS.
    • Azure AD (multiple and single tenant, commercial and Government).
    • Identity Credential and Access Management (ICAM).
  • AWS Identity and Access Management (commercial and Government).
  • Design and architect automated concentric circle deployment models for phased.
    rollouts to include, but not limited to:
    • Group policy.
    • Patching.
    • Software deployment.
  • Architect and lead the implementation of new group policy changes to the AD
    structure, new Security Technical Implementation Guides (STIGs), new operating systems, or as directed due to security or higher headquarter mandates and exceptions.
  • Provide recommendations for new products and technology for supporting all layers of the IT infrastructure architecture based on testing and technology vetting.
  • Lead enterprise projects through architectural design, migration and solution
    replacement phases, to include but not limited to:
    • Enterprise Data Center Consolidation.
    • Enterprise Cloud based solutions.
    • Enterprise Unified Communications.
    • Next Generation Endpoint and Mobility operating systems.
    • Directory and Messaging services.
    • Enterprise Network and Compute configuration standards development.
    • Enterprise Network and Compute management development.
    • Enterprise Backup and archive design and solutions.
    • Enterprise Mobility solutions development.
    • Enterprise Management, configuration, and tools standardization.
    • Network (WAN/LAN) standards or changes.
      The contractor must be capable of supporting tools such as or similar to those identified in the tool's appendix. Additional tools may be added to the environment at the recommendation of the contractor or at the sole discretion of the Government.

Qualifications

  • U.S. Citizenship is required (federal contract requirement).
  • Active DHS Public Trust clearance or ability to obtain one; Secret/Top Secret preferred.
  • Bachelor's degree in computer science, Information Technology, Engineering, or related discipline (or equivalent experience).
  • 10+ years of experience in enterprise IT infrastructure roles, including architecture, design, implementation, and operations.
  • Proven experience with large-scale IT infrastructure environments, including:
    • Networking (Cisco, Juniper)
    • Virtualization (VMware, Hyper-V)
    • Cloud platforms (AWS, Azure, GCP)
    • Identity and access management (Active Directory, LDAP, PKI)
    • Storage solutions (SAN/NAS)
  • Deep knowledge of NIST security frameworks, DHS compliance standards, and the RMF process.
  • Experience supporting federal agencies, ideally within DHS or USCIS.
  • Strong documentation, communication, and presentation skills.

Preferred Qualifications:

  • Advanced degree (MS or higher) in a related technical field.
  • Enterprise-level certifications such as:
    • AWS Certified Solutions Architect - Professional
    • Microsoft Certified: Azure Solutions Architect
    • VMware Certified Design Expert (VCDX)
    • Cisco Certified Network Professional (CCNP)/Expert (CCIE)
    • CompTIA Advanced Security Practitioner (CASP+)
    • Certified Information Systems Security Professional (CISSP)
  • Experience with Zero Trust architecture, DevSecOps, and Infrastructure as Code (IaC) tools such as Terraform, Ansible, or Chef.
  • Experience with ITIL-based service delivery and governance frameworks.

Job ID

2026-21037
Work Type

Remote
Pay Range

$110,000 - $135,000
Benefits

Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.
Company Description



Work Where it Matters

Akima Systems Engineering (ASE), an Akima company, is not just another federal systems support contractor. As an Alaska Native Corporation (ANC), our mission and purpose extend beyond our exciting federal projects as we support our shareholder communities in Alaska.

At ASE, the work you do every day makes a difference in the lives of our 15,000 Iñupiat shareholders, a group of Alaska natives from one of the most remote and harshest environments in the United States.

For our shareholders, ASE provides support and employment opportunities and contributes to the survival of a culture that has thrived above the Arctic Circle for more than 10,000 years.

For our government customers, ASE delivers solutions in maritime IT, systems engineering, and integration across the Department of Defense and stands ready to help improve operational performance at a reasonable and sustainable cost.

As an ASE employee, you will be surrounded by a challenging, yet supportive work environment that is committed to innovation and diversity, two of our most important values. You will also have access to our comprehensive benefits and competitive pay in addition to growth opportunities and excellent retirement options.
group id: 10119288

Be part of something bigger. With Akima, you’ll enjoy the agility and autonomy of working for a small business, while also being supported by an enterprise over 10,000 employees strong. Career growth and opportunity? Look no further.

Find Akima on Social Media
Network Employers
user avatar
About Us
Akima is a global enterprise with 10,000 employees, delivering solutions to the federal government in the core areas of information technology; facilities & ground logistics; aerospace solutions; protective services; systems engineering; mission support; furniture, fixtures & equipment (FF&E); and construction. As a subsidiary of NANA, an Alaska Native Corporation owned by more than 15,000 Iñupiat shareholders, Akima’s core mission is to enable superior outcomes for our customers’ missions while simultaneously creating a long-lived asset for NANA consistent with our Iñupiat values. In 2024, Akima ranked #29 on Washington Technology’s Top 100 list of government contractors.
job ad2 image