Haystack
← Back to Jobs
Technology

Systems Engineer (DevSecOps and ICAM) with Security Clearance

GCyberArlington, VA🇺🇸United StatesPosted 23 Jul 2026

Why This Role Stands Out

This hybrid role offers you the chance to engineer cutting-edge identity solutions for a critical government customer, leveraging DevSecOps practices to build secure, automated systems. You'll thrive here if you possess a strong background in ICAM, identity federation, and a passion for cybersecurity within complex environments, making this an excellent opportunity to advance your career in a highly impactful field.

Quick Overview

Work Type
Hybrid
Level
Mid Senior

Job Description

GCyber is seeking a Systems Engineer (DevSecOps and ICAM) to help support our government customer. The Systems Engineer will contribute to the engineering, deployment, automation, and sustainment of an Identity-as-a-Service (IDaaS) platform that underpins CESO's Zero-trust Architecture and cross-domain capabilities. The engineer will work hands-on with Ping Identity components, enterprise directory services, automated pipeline, and large-scale ICAM integration patterns across secure environments. As the Systems Engineer (DevSecOps and ICAM), you will:

  • Engineer, deploy, integrate, secure, and maintain ForgeRock IdP/ICAM solutions in complex, mission-critical environments using DevSecOps practices, CI/CD pipelines, configuration-as-code, and automated provisioning.
  • Design and implement enterprise identity services, including SSO, SAML, OAuth2, OIDC, identity federation, Zero Trust integration, API-based connectors, and automated identity lifecycle workflows.
  • Collaborate with cybersecurity, development, and infrastructure teams to deliver secure ICAM architectures aligned with DoD, DISA, RMF, and enterprise security standards, supporting ATOs, audits, and compliance initiatives.
  • Perform system hardening, monitoring, performance tuning, troubleshooting, and root-cause analysis for Linux-based ForgeRock components while ensuring service availability and SLA compliance.
  • Develop engineering documentation, technical diagrams, SOPs, CONOPS, performance dashboards, and operational metrics to support continuous improvement and enterprise ICAM operations.

Minimum Qualifications and Experience:

  • Active DoD Top Secret clearance with SCI eligibility
  • Candidate must be willing to take and maintain a CI Poly and Special Program Access.
  • BS in Computer Science, IT, or related discipline and 8+ years of systems engineering experience (or equivalent experience in lieu of degree.)
  • IAT II Certification (e.g. Security+, CySA+, GICSP, GSEC, SSCP)
  • Hands-on experience with federation technologies (SAML, OAuth@, OpenID Connect) and Zero-Trust identity principles.
  • Experience engineering or administering the ForgeRock platform (AM, IDM, DS)
  • Strong understanding of ICAM concepts, identity lifecycle management, and enterprise access controls.
  • Experience with Windows and Linux systems administration, shell scripting, system tuning, and troubleshooting
  • Ability to work across highly technical and non-technical teams in a fast-paced environment.
  • Experience with any of the following preferred:
  • JISG Access Controls
  • AWS cloud engineering, IAM, and security services
  • Ansible playbooks and automated configuration management
  • CI/CD pipeline (GitLab, Jenkins, etc.)
  • API gateway, identity orchestration, or cross-domain service integrations patterns.

Skills

Shell
API Gateway
AWS
OAuth
SAML
SSO
Ansible
Jenkins
Zero Trust

Similar jobs