远程工作雷达

高级身份工程师 | 研发专家

Senior Identity Engineer | R&D Specialist

开发工程限定地区(需当地身份)
公司3500 Square
薪资未公开
工作地点United States
地域资格限定地区(需当地身份)
时区要求日间重叠约 9 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 United States 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

职位描述:高级身份工程服务 | 研发专家

地点:远程办公 – 美国及波多黎各均可

保密等级:公共信任(ADP/IT-II)或三级调查(NACLC)
国籍要求:需为美国公民

简介

我们正在寻找一位高级身份工程师 | 研发专家加入我们的身份工程服务团队,为全球联邦医疗环境提供先进的身份基础设施和访问管理功能。该职位结合了实际技术专长与创新、研究和开发安全、可扩展的身份解决方案,服务于军事医疗系统(MHS)。

主要职责

  • 设计并开发符合国防部网络安全和ICAM标准的身份、凭证和访问管理(ICAM)解决方案。
  • 构建和维护目录服务架构,如ADDS、ADLDS和基于DHA服务器基线和DISA STIG的Secure DNS。
  • 研究、原型设计和测试下一代PKI、PKE、PAM和加密密钥管理功能。
  • 维护和更新工程文档,包括mJAD架构与设计文档和技术包。
  • 支持并增强PKI基础设施,包括证书验证工具(Axway)、中间件(例如ActivIdentity)和CA迁移流程。
  • 在混合云和本地环境中构建身份解决方案,以管理用户、系统和SaaS资源。
  • 使用X.509证书设计和实现PKE解决方案,以在MHS应用中实现安全认证、加密和数据完整性。
  • 为启用证书的工具如ActivClient和Validator Suites提供支持。
  • 应用计算机科学、网络分发、嵌入式系统和安全软件设计的研究方法。
  • 参与使用形式化建模、分析和性能验证技术开发可扩展的身份架构。

首选工具与技术

  • Microsoft Active Directory, ADLDS, DNS
  • DoD PKI / 内部中等保障(IMA)
  • ActivIdentity ActivClient, Axway Validator Suite
  • DoD ICAM参考架构和DoDI 8520.02 / 8520.03
  • PowerShell, LDAP, X.509证书工具
  • Microsoft Windows Server操作系统
  • Remedy工单系统
  • DISA STIG和国防部安全策略

最低资格要求

  • 至少5年在身份工程、网络安全研发或PKI基础设施方面的实际工作经验,在联邦政府环境中
查看英文原文

Job Posting: Senior Identity Engineering Services | R&D Specialist

Location: Remote – Available across U.S. and Puerto Rico

Clearance Level: Public Trust (ADP/IT-II) or Tier 3 Investigation (NACLC)
Citizenship: U.S. Citizenship required

Summary

We are seeking candidates for a potential opportunity Senior Identity Engineer | R&D Specialist to join our Identity Engineering Services team, supporting advanced identity infrastructure and access management capabilities for a global federal healthcare environment. This role combines hands-on technical expertise with innovation, research, and development of secure, scalable identity solutions for the Military Health System (MHS).

Key Responsibilities

  • Design and develop identity, credential, and access management (ICAM) solutions aligned with DoD cybersecurity and ICAM standards.
  • Engineer and sustain directory services architectures such as ADDS, ADLDS, and Secure DNS based on DHA server baselines and DISA STIGs.
  • Research, prototype, and test next-generation PKI, PKE, PAM, and cryptographic key management capabilities.
  • Maintain and update engineering artifacts including the mJAD Architecture & Design Document and technical packages.
  • Support and enhance PKI infrastructure including certificate validation tools (Axway), Middleware (e.g., ActivIdentity), and CA migration processes.
  • Engineer identity solutions across hybrid cloud and on-premise environments to manage users, systems, and SaaS resources.
  • Design and implement PKE solutions using X.509 certificates for secure authentication, encryption, and data integrity across MHS applications.
  • Provide support for certificate-enabled tools like ActivClient and Validator Suites.
  • Apply research methods in computer science, network distribution, embedded systems, and secure software design.
  • Contribute to the development of scalable identity architectures using formal modeling, analysis, and performance validation techniques.

Preferred Tools & Technologies

  • Microsoft Active Directory, ADLDS, DNS
  • DoD PKI / Internal Medium Assurance (IMA)
  • ActivIdentity ActivClient, Axway Validator Suite
  • DoD ICAM Reference Architecture and DoDI 8520.02 / 8520.03
  • PowerShell, LDAP, X.509 certificate utilities
  • Microsoft Windows Server OS
  • Remedy Ticketing System
  • DISA STIGs and DoD security policies

Minimum Qualifications

  • At least 5 years of hands-on experience in identity engineering, cybersecurity R&D, or PKI infrastructure within a federal or DoD setting.
  • Proven experience designing and testing scalable, secure identity architectures and implementing PKI/PKE systems.
  • Strong analytical, documentation, and software development skills in secure system environments.
  • Ability to obtain and maintain a Public Trust (Tier 3/NACLC) clearance.

Education & Certifications

  • Required (Foundational – one of the following):
  • Bachelor’s degree in IT / Cybersecurity / Data Science / IS / CS (ABET or CAE accredited),
  • OR CISSP / SSCP.
  • Required (CE – one of the following):
  • Microsoft Identity & Access Administrator (SC-300),
  • OR Microsoft Entra ID Governance Specialty.

Please Note:This position is contingent upon contract award. Candidates selected will be notified once the award has been confirmed.

Equal Employment Opportunity and E-Verify Statement

3500 Square, LLC is proud to be an Equal Opportunity Employer. We do not discriminate against any applicant or employee on the basis of race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, disability, genetic information, protected veteran status, military status, citizenship status, or any other legally protected status, in accordance with federal, state, and local laws.

As a federal contractor, 3500 Square, LLC complies with Section 503 of the Rehabilitation Act and the Vietnam Era Veterans’ Readjustment Assistance Act (VEVRAA), providing equal opportunity and affirmative action for qualified individuals with disabilities and protected veterans.

All employment decisions are based on qualifications, merit, and business needs. Fair consideration is provided to all candidates, including U.S. citizens and nationals, as required by federal regulations regarding national origin discrimination.

If you require a reasonable accommodation to complete the application process due to a disability, please contact our Human Resources team at or 1-787-814-0087.

3500 Square, LLC participates in E-Verify. If E-Verify cannot confirm that you are authorized to work, you will receive written instructions and an opportunity to contact the Department of Homeland Security (DHS) or Social Security Administration (SSA) to resolve the issue before any employment action is taken against you, including termination.

Employers can only use E-Verify after you have accepted a job offer and completed the Form I-9.

3500 Square, LLC is an Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities.

Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

医疗编码员III

3500 SquarePuerto Rico, United StatesFull Time今天
其他限定地区(需当地身份)

IT知识管理支持

3500 SquarePuerto Rico, United StatesFull Time今天
其他限定地区(需当地身份)

← 返回全部职位