Haystack
← Back to Jobs
Full time
Technology
GO

SME Systems Engineer (Azure AD)

Govcio LLCAlexandria, VA🇺🇸United StatesPosted 6 Sept 2026

Quick Overview

Salary
$135k - $172k/yr
Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Alexandria, VA, United States
Posted
9 hours ago
MFAOAuthSAMLSSOActive DirectoryAzureLDAPPKIPower BIZero Trust

Job Description

Overview:

GovCIO is currently hiring a highly experienced SME Systems Engineer specializing in Federation & Interoperability (FI) with a primary focus on Customer Identity and Access Management (CIAM) via Azure AD B2C . This technical role supports critical Identity, Credential, and Access Management (ICAM) modernization activities for the U.S. Coast Guard (USCG). This position focuses on designing, engineering, and executing secure, identity-centric access control frameworks across legacy and modern enterprise architectures. This position will be located in Alexandria, VA, and will be a hybrid position.

Responsibilities:
The SME Systems Engineer / ICAM Engineer will serve as a primary technical authority for the enterprise identity management and access control framework. Core responsibilities include:
  • Lead Modernize legacy access controls into robust, secure ICAM solutions.
  • Manage enterprise directories, federation, authentication, authorization, and SSO protocols.
  • Architect identity lifecycles, user provisioning workflows, and privilege management controls.
  • Design and deploy strict Zero Trust identity principles (NIST SP 800-207) across network hubs.
  • Configure and manage enterprise-grade PKI systems, credentials, and authenticators.
  • Implement logical and physical access control systems, including MFA, SSO, and PAM.
  • Build federated identity services to enable secure interoperability with mission partners.
  • Conduct technical root cause analysis, privilege audits, and system performance tuning.
  • Develop custom technical interfaces, architectures, data flows, and compliance documentation.
  • Provide advanced engineering and architecture ownership across the following specialization:
    • Azure AD B2C / CIAM (Primary Product Area: Federation & Interoperability (FI)): Own the technical lifecycle of the Customer Identity and Access Management (CIAM) platform. Engineer all custom policies and user flows, architect the integration of new external-facing applications, and se
Qualifications:

High School with 10+ years (or commensurate experience)

 

Required Skills & Experience
  • Certifications: DoD 8570 IAT Level II or higher (e.g., Security+ CE, CySA+, or vendor-specific identity certifications).
  • Deep technical understanding of federated identity concepts, including SAML, OAuth, OIDC, and Active Directory / LDAP architecture.
  • Hands-on engineering experience managing Smart Card / Common Access Card (CAC) authentication and PKI certificate validation.
  • Proven experience designing and applying federal Zero Trust identity guidelines (NIST SP 800-207) within enterprise networks.

Clearance Level: Must have an active Secret clearance

 

Preferred Skills & Experience
  • Prior experience supporting U.S. Coast Guard (USCG) or Department of Homeland Security (DHS) identity management programs.
  • Familiarity with integrating data governance frameworks with ICAM solutions to enforce data-level access controls.
  • Direct experience with enterprise identity tools such as SailPoint, Okta, Microsoft Entra ID, Ping Identity, DigiCert, or Power BI.
  • Advanced knowledge of RESTful API authorization protocols, secure gateways, and data schema security standards.

        #USCG #DICE

Posted Salary Range: USD $135,000.00 - USD $172,000.00 /Yr.

Similar jobs