Identity&Access Management(IAM) Engineer

3 weeks ago


Bethesda, United States SUNAYU Full time

Location: Bethesda, MD

Category: Testing

Travel Required: No

Remote Type: Onsite

Clearance: Top Secret/SCI

Sunayu LLC is seeking an Identity and Access Management (IdAM) Engineer to support the National Media Exploitation Center (NMEC). The System Administrator will be responsible for maintaining existing enterprise identity management solutions, troubleshoot incidents, and assist with transitioning new capabilities to production. Duties will include validating the health and status, operations, and
maintenance of identity management systems such as Keycloak and OpenID Connect (OIDC) technologies. This individual will work in a team environment supporting a large enterprise spanning
multiple enclaves and sites.

This is a 100% on-site position. All work must be performed at the customer site in Bethesda at the
Intelligence Community Campus.

Primary Responsibilities
• Design and implement IAM solutions using Keycloak for secure authentication and authorization based on OIDC, OAuth2, and SAML protocols.
• Integrate Keycloak with internal and external applications, APIs, and third-party services to enable secure access and identity federation.
• Manage and maintain the Keycloak infrastructure, including clustering, performance tuning, and monitoring.
• Implement custom authentication flows, policies, and user federation strategies using Keycloak.
• Collaborate with DevOps and infrastructure teams to ensure the scalability, security, and high availability of Keycloak deployments.
• Automate the management of identity and access workflows, including user provisioning, de-provisioning, and role-based access control (RBAC).
• Provide technical expertise for OIDC/OAuth2 standards, keeping up with industry trends and ensuring compliance with evolving security requirements.
• Troubleshoot issues related to authentication, authorization, and access control, ensuring a seamless user experience.
• Document system configurations, processes, and troubleshooting procedures for internal teams and stakeholders.
• Conduct regular security audits and recommend improvements for IAM practices and systems.
• Participate in and contribute to cross-functional teams working on broader IAM, DevSecOps, and security initiatives.
• Provide support for implementing, troubleshooting and maintaining of identity management systems.
• Rapidly distinguish isolated user problems from enterprise-wide application/system problems and provide recommended solutions.
• Provide follow-up reports (technical findings, feedback, resolution steps taken) for root cause analysis, engineering technical assessment and process improvement initiatives.
• Update operations and maintenance documentation for 24/7/365 enterprise watch personnel.
• Work with Operations, Engineering, and vendor support to develop solutions to complex technical issues.
• Work independently as part of a virtual team
• Provide mentorship and training for junior team members.

Basic Qualifications
• Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
• 3-5 years of experience working in Identity and Access Management (IAM) with a focus on Keycloak and OIDC/OAuth2 technologies.
• Strong hands-on experience with configuring, deploying, and managing Keycloak in a production environment.
• Deep understanding of authentication and authorization protocols including OIDC, OAuth2, SAML, and LDAP.
• Proficiency in Java, Python, or other scripting languages used for extending and automating Keycloak.
• Experience with user federation (LDAP, Active Directory, etc.) and social identity providers (Google, Facebook, etc.) using Keycloak.
• Familiarity with DevOps practices, including CI/CD pipelines, and experience with Docker,Kubernetes, and infrastructure-as-code (IaC) tools such as Terraform.
• Strong problem-solving and debugging skills, particularly in complex, distributed environments.
• Ability to work in an Agile/Scrum environment, collaborating with cross-functional teams.
• Strong communication skills, with the ability to articulate technical solutions to both technical and non-technical stakeholders.
• Candidate must, at a minimum, meet DoD 8570.11- IAT Level II certification requirements (currently Security+ CE, CCNA-Security, GSEC, or SSCP along with an appropriate computing environment (CE) certification)

Education
• Candidate must have a Bachelor's degree, with at least 12 years of relevant experience. Additional
years of experience may be considered in lieu of degree.

Clearance
• Due to the nature of the government contracts we support, US Citizenship is required.
• TS/SCI clearance with Polygraph required or a TS/SCI and willingness to get a Poly.

Preferred Qualifications
• 5+ years of experience in IAM or related security engineering roles.
• Experience with cloud platforms (AWS, Azure, GCP) and securing cloud-native applications.
• Experience with identity governance tools (e.g., SailPoint, Okta).
• Familiarity with API security (e.g., JWT, mTLS) and best practices for securing microservices
architectures.
• Experience implementing MFA, SSO, and zero-trust architectures.



  • Bethesda, United States Base2 Solutions Full time

    Base-2 Solutions is seeking an Identity and Access Management (IAM) Engineer to support the National Media Exploitation Center (NMEC). The System Administrator will be responsible for maintaining existing enterprise identity management solutions, troubleshooting incidents, and assisting with transitioning new capabilities to production. My duties will...


  • Bethesda, United States Xcelerate Solutions Full time

    Identity & Access Management (IAM) Engineer – Keycloak / OIDC Xcelerate Solutions is seeking an Identity and Access Management (IdAM) Engineer to support the National Media Exploitation Center (NMEC). The System Administrator will be responsible for maintaining existing enterprise identity management solutions, troubleshoot incidents, and assist with...


  • Bethesda, United States Xcelerate Solutions Full time

    Description Identity & Access Management (IAM) Engineer - Keycloak / OIDC Xcelerate Solutions is seeking an Identity and Access Management (IdAM) Engineer to support the National Media Exploitation Center (NMEC).The System Administrator will be responsible for maintaining existing enterprise identity management solutions, troubleshoot incidents, and assist...


  • Bethesda, Maryland, United States Xcelerate Solutions Full time

    Job Description:Xcelerate Solutions is seeking an experienced Identity and Access Management (IAM) Engineer to support our National Media Exploitation Center (NMEC) project. As a key member of our team, you will be responsible for maintaining existing enterprise identity management solutions, troubleshooting incidents, and assisting with transitioning new...


  • Bethesda, Maryland, United States SUNAYU Full time

    Job Title: Enterprise Identity Security EngineerSUNAYU LLC is seeking a highly skilled Enterprise Identity Security Engineer to support the National Media Exploitation Center (NMEC). This position requires strong hands-on experience with Keycloak and OIDC/OAuth2 technologies.**Job Description:**The System Administrator will be responsible for maintaining...


  • Bethesda, United States Marriott Full time

    Additional InformationJob Number24215344Job CategoryInformation TechnologyLocationMarriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States, 20814VIEW ON MAPScheduleFull TimeLocated Remotely?YPosition Type Management  JOB SUMMARYThe ideal candidate should possess strong experience as an Identity and Access Management engineer and...


  • Bethesda, United States Marriott Full time

    Additional InformationJob Number24215344Job CategoryInformation TechnologyLocationMarriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States, 20814VIEW ON MAPScheduleFull TimeLocated Remotely?YPosition Type Management  JOB SUMMARYThe ideal candidate should possess strong experience as an Identity and Access Management engineer and...


  • Bethesda, United States Marriott Full time

    Additional InformationJob Number24215344Job CategoryInformation TechnologyLocationMarriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States, 20814VIEW ON MAPScheduleFull TimeLocated Remotely?YPosition Type Management  JOB SUMMARYThe ideal candidate should possess strong experience as an Identity and Access Management engineer and...


  • Bethesda, United States Marriott Full time

    Additional InformationJob Number24215344Job CategoryInformation TechnologyLocationMarriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States, 20814VIEW ON MAPScheduleFull TimeLocated Remotely?YPosition Type Management  JOB SUMMARYThe ideal candidate should possess strong experience as an Identity and Access Management engineer and...


  • Bethesda, Maryland, United States Leidos Full time

    We are looking for an experienced Identity and Access Management (IAM) engineer to join our team at Leidos. As a key member of our team, you will be responsible for designing and implementing IAM solutions using Keycloak for secure authentication and authorization based on OIDC, OAuth2, and SAML protocols.The ideal candidate will have 3-5 years of experience...


  • Bethesda, Maryland, United States Base2 Solutions Full time

    Job Description\At Base-2 Solutions, we are seeking an experienced Identity and Access Management (IAM) expert to support the National Media Exploitation Center (NMEC). As a System Administrator, you will be responsible for maintaining existing enterprise identity management solutions, troubleshooting incidents, and assisting with transitioning new...


  • Bethesda, MD, United States Marriott Full time

    Additional InformationJob Number24215344Job CategoryInformation TechnologyLocationMarriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States, 20814VIEW ON MAPScheduleFull TimeLocated Remotely?YPosition Type Management  JOB SUMMARYThe ideal candidate should possess strong experience as an Identity and Access Management engineer and...


  • Bethesda, Maryland, United States SUNAYU Full time

    Job Title: Secure Authentication Solutions ArchitectSUNAYU LLC seeks a skilled Secure Authentication Solutions Architect to design and implement IAM solutions using Keycloak for secure authentication and authorization based on OIDC, OAuth2, and SAML protocols. This role requires a deep understanding of authentication and authorization protocols including...


  • Bethesda, United States USM Business Systems Full time

    USM Business Systems Inc. is a quickly developing worldwide System Integrator, Software and Product Development, IT Outsourcing and Technology assistance supplier headquartered in Chantilly, VA. We offer world-class ability in giving most astounding quality and administrations through industry best practices planned to convey remarkable worth to our...


  • Bethesda, Maryland, United States Leidos Full time

    We are seeking a highly skilled Identity and Access Management (IAM) engineer to support the National Media Exploitation Center (NMEC). The successful candidate will be responsible for integrating Keycloak with internal and external applications, APIs, and third-party services to enable secure access and identity federation.The ideal candidate will have a...


  • Bethesda, United States Marriott International Full time

    Additional Information Web Access Management, Multi-Factor Authentication, DirectoryJob Number 24122340Job Category Information TechnologyLocation Marriott International HQ, 7750 Wisconsin Avenue, Bethesda, Maryland, United States VIEW ON MAPSchedule Full-TimeLocated Remotely? YRelocation? NPosition Type ManagementJOB SUMMARYThe ideal candidate should...


  • Bethesda, Maryland, United States Xcelerate Solutions Full time

    Estimated Salary: $120,000 - $150,000 per yearXcelerate Solutions seeks an experienced Identity and Access Management (IAM) Engineer to join our team and provide expert-level guidance on Keycloak and OIDC/OAuth2 technologies. The successful candidate will have a strong background in configuring, deploying, and managing these systems in a production...


  • Bethesda, United States Marriott International Full time

    Senior Security Engineer - Sailpoint Development Lead IAMCompany: Marriott InternationalWe are seeking an experienced and motivated Sr. Engineer to lead the Sailpoint development for our dynamic IAM team. The incumbent will play a pivotal role in guiding our development team to deliver high-quality software solutions and will utilize their deep understanding...

  • Senior Manager

    2 months ago


    Bethesda, United States Marriott International Full time

    Senior Manager - Information Security - Identity and Access Management Company: Marriott International The ideal candidate should possess extensive experience as an Identity and Access Management technical leader. A results-oriented Senior Manager will be responsible for leading and expanding a team of highly technical individuals supporting Web Access...


  • Bethesda, United States Marriott International Full time

    Director of Information Security - Privileged Access ManagementCompany: Marriott InternationalThe Director of Privileged Access Management (PAM) leads and executes the company's Privileged Access Management program. This leadership role is responsible for the strategic planning, development, and execution of PAM processes, ensuring the security and...