This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Okta ICAM Engineer based in United States.
This is an engineering role focused on modernizing identity, credentialing, and access management capabilities within federal environments.
You’ll design and implement secure identity solutions using Okta Identity Cloud across workforce identity, SSO, MFA, and adaptive authentication.
The role combines hands-on engineering with identity federation, PKI, automation, and Zero Trust architecture.
You’ll work closely with cybersecurity, cloud engineering, and system owners to integrate identity services into mission-critical environments.
Your work will support federal security and compliance requirements while strengthening identity posture and operational efficiency.
You’ll also contribute to modernization roadmaps, authorization documentation, and continuous improvements across complex identity ecosystems.
This opportunity is well suited to an experienced ICAM engineer who enjoys solving challenging technical problems in mission-focused environments.
Accountabilities
- Design, implement, and maintain ICAM solutions using Okta Identity Cloud, including Workforce Identity, SSO, MFA, and adaptive authentication.
- Integrate Okta with client credential environments, including certificate-based authentication, PKI validation, and federation with government identity providers.
- Configure and support identity federation using SAML, OIDC, and OAuth across government applications, cloud platforms, and on-premises enterprise systems.
- Develop and manage identity lifecycle processes aligned with federal access-control policies, RBAC/ABAC models, and authoritative identity sources.
- Implement Zero Trust identity capabilities, including strong authentication, device trust, continuous validation, and least-privilege access.
- Build identity automation and workflows using Okta Workflows, APIs, PowerShell, Python, Bash, and other scripting tools.
- Troubleshoot complex identity issues involving authentication flows, PKI chains, SSO integrations, certificate mapping, and SCIM provisioning.
- Ensure identity solutions align with applicable federal standards and security controls, including NIST SP 800-63, FICAM, DoD IdAM policies, OMB ICAM guidance, and FedRAMP requirements.
- Collaborate with cybersecurity, cloud engineering, application teams, and system owners to deliver secure identity integrations for mission systems.
- Contribute to ICAM modernization roadmaps, ATO support documentation, technical assessments, and ongoing improvements to identity security and operational processes.
- U.S. citizenship is required.
- 5-8+ years of experience in ICAM/IAM engineering, preferably within federal or government environments.
- 3-5+ years of hands-on experience administering, integrating, and managing Okta Identity Cloud.
- Practical experience supporting PIV/CAC authentication, PKI trust chains, certificate mapping, and federation with federal identity providers.
- Strong understanding of SAML, OIDC, OAuth, SCIM provisioning, and enterprise directory services such as Active Directory and Azure AD.
- Experience with identity policies, RBAC/ABAC, account lifecycle management, and enterprise identity governance.
- Hands-on scripting and automation experience using PowerShell, Python, Bash, or comparable technologies.
- Familiarity with Zero Trust identity architecture, particularly within federal or Department of Defense environments.
- Strong technical documentation, written communication, troubleshooting, and cross-functional collaboration skills.
- Ability to work effectively with cybersecurity, cloud, engineering, and mission-system stakeholders.
- Experience supporting ICAM modernization programs within federal agencies or Department of Defense environments is preferred.
- Okta Professional or Consultant certification is a plus.
- Familiarity with NIST SP 800-63, NIST Cybersecurity Framework, OMB ICAM guidance, DoD Zero Trust Strategy, and FedRAMP controls is preferred.
- Experience integrating identity services with Azure Government or on-premises mission systems is an advantage.
- Competitive compensation.
- Comprehensive medical, dental, and vision insurance.
- Paid life insurance.
- Paid time off.
- 11 paid holidays.
- Performance bonus opportunities.
- Tuition reimbursement.
- Unlimited training and professional development opportunities.
- Flexible, collaborative, and innovative work environment.
- Opportunity to contribute to high-impact federal identity modernization and Zero Trust initiatives.
- Remote work environment within the United States.
- Equal opportunity employment regardless of legally protected characteristics.

