Job Requirements
Arlington, VA
Top Secret CI Polygraph
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
GCyber is seeking a to help support our government customer. The Systems Engineer will contribute to the engineering, deployment, automation, and sustainment of an Identity-as-a-Service (IDaaS) platform that underpins CESO's Zero-trust Architecture and cross-domain capabilities. The engineer will work hands-on with Ping Identity components, enterprise directory services, automated pipeline, and large-scale ICAM integration patterns across secure environments.
As the you will:
As the you will:
- Engineer, deploy, integrate, secure, and maintain ForgeRock IdP/ICAM solutions in complex, mission-critical environments using DevSecOps practices, CI/CD pipelines, configuration-as-code, and automated provisioning.
- Design and implement enterprise identity services, including SSO, SAML, OAuth2, OIDC, identity federation, Zero Trust integration, API-based connectors, and automated identity lifecycle workflows.
- Collaborate with cybersecurity, development, and infrastructure teams to deliver secure ICAM architectures aligned with DoD, DISA, RMF, and enterprise security standards, supporting ATOs, audits, and compliance initiatives.
- Perform system hardening, monitoring, performance tuning, troubleshooting, and root-cause analysis for Linux-based ForgeRock components while ensuring service availability and SLA compliance.
- Develop engineering documentation, technical diagrams, SOPs, CONOPS, performance dashboards, and operational metrics to support continuous improvement and enterprise ICAM operations.
- Candidate must be willing to take and maintain a CI Poly and Special Program Access.
- BS in Computer Science, IT, or related discipline and 8+ years of systems engineering experience (or equivalent experience in lieu of degree.)
- IAT II Certification (e.g. Security+, CySA+, GICSP, GSEC, SSCP)
- Hands-on experience with federation technologies (SAML, OAuth@, OpenID Connect) and Zero-Trust identity principles.
- Experience engineering or administering the ForgeRock platform (AM, IDM, DS)
- Strong understanding of ICAM concepts, identity lifecycle management, and enterprise access controls.
- Experience with Windows and Linux systems administration, shell scripting, system tuning, and troubleshooting
- Ability to work across highly technical and non-technical teams in a fast-paced environment.
- Experience with any of the following preferred:
- JISG Access Controls
- AWS cloud engineering, IAM, and security services
- Ansible playbooks and automated configuration management
- CI/CD pipeline (GitLab, Jenkins, etc.)
- API gateway, identity orchestration, or cross-domain service integrations patterns.
group id: 90817175