• Share :

Location: Bethesda, MD
Category: Testing
Travel Required: No
Remote Type: Onsite
Clearance: Top Secret/SCI
Sunayu LLC is seeking an Identity and Access Management (IdAM) Engineer to support the National Media Exploitation Center (NMEC). The System Administrator will be responsible for maintaining existing enterprise identity management solutions, troubleshoot incidents, and assist with transitioning new capabilities to production. Duties will include validating the health and status, operations, and
maintenance of identity management systems such as Keycloak and OpenID Connect (OIDC) technologies. This individual will work in a team environment supporting a large enterprise spanning
multiple enclaves and sites.
This is a 100% on-site position. All work must be performed at the customer site in Bethesda at the
Intelligence Community Campus.
Primary Responsibilities
• Design and implement IAM solutions using Keycloak for secure authentication and authorization based on OIDC, OAuth2, and SAML protocols.
• Integrate Keycloak with internal and external applications, APIs, and third-party services to enable secure access and identity federation.
• Manage and maintain the Keycloak infrastructure, including clustering, performance tuning, and monitoring.
• Implement custom authentication flows, policies, and user federation strategies using Keycloak.
• Collaborate with DevOps and infrastructure teams to ensure the scalability, security, and high availability of Keycloak deployments.
• Automate the management of identity and access workflows, including user provisioning, de-provisioning, and role-based access control (RBAC).
• Provide technical expertise for OIDC/OAuth2 standards, keeping up with industry trends and ensuring compliance with evolving security requirements.
• Troubleshoot issues related to authentication, authorization, and access control, ensuring a seamless user experience.
• Document system configurations, processes, and troubleshooting procedures for internal teams and stakeholders.
• Conduct regular security audits and recommend improvements for IAM practices and systems.
• Participate in and contribute to cross-functional teams working on broader IAM, DevSecOps, and security initiatives.
• Provide support for implementing, troubleshooting and maintaining of identity management systems.
• Rapidly distinguish isolated user problems from enterprise-wide application/system problems and provide recommended solutions.
• Provide follow-up reports (technical findings, feedback, resolution steps taken) for root cause analysis, engineering technical assessment and process improvement initiatives.
• Update operations and maintenance documentation for 24/7/365 enterprise watch personnel.
• Work with Operations, Engineering, and vendor support to develop solutions to complex technical issues.
• Work independently as part of a virtual team
• Provide mentorship and training for junior team members.
Basic Qualifications
• Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
• 3-5 years of experience working in Identity and Access Management (IAM) with a focus on Keycloak and OIDC/OAuth2 technologies.
• Strong hands-on experience with configuring, deploying, and managing Keycloak in a production environment.
• Deep understanding of authentication and authorization protocols including OIDC, OAuth2, SAML, and LDAP.
• Proficiency in Java, Python, or other scripting languages used for extending and automating Keycloak.
• Experience with user federation (LDAP, Active Directory, etc.) and social identity providers (Google, Facebook, etc.) using Keycloak.
• Familiarity with DevOps practices, including CI/CD pipelines, and experience with Docker,Kubernetes, and infrastructure-as-code (IaC) tools such as Terraform.
• Strong problem-solving and debugging skills, particularly in complex, distributed environments.
• Ability to work in an Agile/Scrum environment, collaborating with cross-functional teams.
• Strong communication skills, with the ability to articulate technical solutions to both technical and non-technical stakeholders.
• Candidate must, at a minimum, meet DoD 8570.11- IAT Level II certification requirements (currently Security+ CE, CCNA-Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification)
Education
• Candidate must have a Bachelor's degree, with at least 12 years of relevant experience. Additional
years of experience may be considered in lieu of degree.
Clearance
• Due to the nature of the government contracts we support, US Citizenship is required.
• TS/SCI clearance with Polygraph required or a TS/SCI and willingness to get a Poly.
Preferred Qualifications
• 5+ years of experience in IAM or related security engineering roles.
• Experience with cloud platforms (AWS, Azure, GCP) and securing cloud-native applications.
• Experience with identity governance tools (e.g., SailPoint, Okta).
• Familiarity with API security (e.g., JWT, mTLS) and best practices for securing microservices
architectures.
• Experience implementing MFA, SSO, and zero-trust architectures.

Read the full job description and apply online on the recuiter's web-site

Find Jobs Hiring Now Near You!

Get Jobilize Mobile App

Get Jobilize Job Search Mobile App Now

Receive real-time job alerts and never miss the right job again

Get it on Google Play Download on the App Store
Software Developer - TS/SCI w/ Polygraph

SUNAYU


Location: JBAB • Category: Data Scientist • Travel Required: No • Remote Type: Onsite • Clearance: TS/SCI w/ Polygraph • Sunayu LLC has an exciting opportunity for you as our next Software Developer. You will work closely with other team members to provide data architecture and data science in...


Identity&Access Management IAM Engineer - Top Secret/SCI w/ poly

SUNAYU

  • US - US

  • January 22, 2025


Location: Bethesda, MD • Category: Testing • Travel Required: No • Remote Type: Onsite • Clearance: Top Secret/SCI • Sunayu LLC is seeking an Identity and Access Management (IdAM) Engineer to support the National Media Exploitation Center (NMEC). The System Administrator...


SIEM Engineer/Splunk Certified Admin - TS/SCI w/ Polygraph

Sunayu LLC


Location: Annapolis Jct, MD • Category: SIEM (Security Information and Event Management) Engineer / Splunk Certified Admin • Travel Required: No • Remote Type: No • Clearance: TS/SCI w/ Polygraph • Job Summary / Primary Responsibilities • The selected candidate will be responsible for configuring...


Appian Software Integrator/Low Code Developer - Top Secret/SCI

SUNAYU


Location: Bethesda, MD • Category: Software Engineering • Travel Required: No • Remote Type: Hybrid Remote • Clearance: Top Secret/SCI • Sunayu LLC has an an exciting opening for you as our next TS/SCI cleared Appian Software Integrator / Low Code Developer supporting...


Software Developer - TS/SCI w/ Polygraph

SUNAYU

  • US - US

  • January 17, 2025


Location: JBAB • Category: Data Scientist • Travel Required: No • Remote Type: Onsite • Clearance: TS/SCI w/ Polygraph • Sunayu LLC has an exciting opportunity for you as our next Software Developer. You will work closely with other team members to provide data architecture...


Network Engineer - TS/SCI w/ Polygraph

SUNAYU


Location: • Annapolis Jct, MD • Category: • Mid-Senior Network Engineering • Travel Required: • No • Remote Type: • No • Clearance: • TS/SCI w/ Polygraph • Primary Responsibilities • The selected candidate will be responsible for router/switch/firewall configuration and security management of an...


DevOps Engineer - TS/SCI w/ Polygraph

SUNAYU


Location: Annapolis Jct, MD • Category: DevOps Engineer • Travel Required: No • Remote Type: No • Clearance: TS/SCI w/ Polygraph • Position Requirements: • • Support the development life cycle of platform architectural design, deployment and debugging • Building a release pipeline to enable fast,...


Software Engineer 2 - TS/SCI w/ Polygraph

SUNAYU

  • US - US

  • January 20, 2025


Location: • Annapolis Junction, MD • Category: • Software Engineer (SWE) • Travel Required: • No • Remote Type: • No • Clearance: • TS/SCI w/ Polygraph • Position Requirements: • • The Software Engineer develops, maintains, and enhances complex and diverse software systems (e.g.,...