{"schemaVersion":"jobsearcher.job.v1","id":"07fd03fb4913fa81debe2a7c","url":"https://jobsearcher.com/jobs/07fd03fb4913fa81debe2a7c","canonicalUrl":"https://jobsearcher.com/jobs/07fd03fb4913fa81debe2a7c","title":"Identity Security Engineer","description":"Everforth ECS is seeking an Identity Security Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.\n\nWe are seeking a technically experienced Identity Security Engineer to join our security operations division — a full-spectrum cybersecurity organization covering endpoint security, event monitoring, threat intelligence, and advanced incident response. This is a security engineering role, meaning you are not simply administering identity systems but are designing, hardening, and evolving them.\n\nYour work sits at the intersection of two critical disciplines: identity security and Windows server infrastructure. You will assess the organization's identity architecture against modern security frameworks, lead initiatives to reduce identity-based risk, and ensure that the Windows server environment supporting those identity systems is configured, documented, and defended to the highest standard.\n\nThis role requires someone who understands identity not just as an IT function but as a primary security control and who can operate with engineering depth and strategic thinking.\n\nSalary Range: $120,000 - $130,000\nGeneral Description of Benefits\n\nRequirements:\n\nIdentity Security\n\nDeep understanding of enterprise identity and access management (IAM) architecture, governance, and security operations\nExperience integrating identity signals into security operations, including identity protection, threat detection, and centralized logging\nAbility to monitor identity health, detect suspicious activity, and investigate identity-based threats using security analytics and operational playbooks\nHands-on experience with Microsoft Entra ID (Azure Active Directory), Privileged Identity Management (PIM), and just-in-time access controls\nExperience enforcing least privilege, role-based access control (RBAC), and automating access provisioning and deprovisioning workflows\nFamiliarity with Zero Trust identity principles — verify explicitly, enforce least privilege, and assume breach — and the ability to assess and mature an organization's identity posture against those principles\nExperience securing workload identities, service principals, and high-risk administrative accounts\nAbility to decommission legacy federation infrastructure and migrate applications to modern, standards-based authentication\n\nWindows Server\n\nStrong experience administering and hardening Windows Server environments in an enterprise setting\nProficiency with Microsoft Active Directory, Active Directory Federation Services, and Group Policy Objects (GPOs) from a security engineering perspective\nAbility to monitor and analyze Windows-based architecture, communication, policies, and protocols from a cybersecurity lens\nExperience performing system monitoring, reviewing logs, and taking corrective action to maintain server integrity and availability\nAbility to create and maintain thorough system documentation covering installation, configuration, and troubleshooting procedures\nExperience supporting security continuous monitoring efforts including risk assessments and system patching within Windows server environments\n\nSecurity Engineering & Collaboration\n\nAbility to identify gaps in current identity and server security capabilities and recommend both technical and process-level improvements\nExperience developing and contributing to technical security standards, monitoring standards, and security architecture documentation\nComfortable working across teams including cybersecurity, networking, systems administration, and technology support partners\nAbility to communicate findings and risks clearly to both technical peers and senior leadership\n\nA minimum of 5+ years of progressive experience in identity security and Windows server administration is required, with demonstrated experience operating at an engineering level rather than a purely operational or support capacity. Candidates with hands-on Zero Trust identity implementation experience will be strongly preferred.\n\nReq Benefits:\nBenefits - Everforth ECS","company":"Everforth Ecs","rawCompany":"everforth ecs","city":"Washington","state":"DC","isRemote":false,"isActive":false,"createdAt":"2026-09-17T09:51:02.121Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Identity Security Engineer","description":"Everforth ECS is seeking an Identity Security Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.\n\nWe are seeking a technically experienced Identity Security Engineer to join our security operations division — a full-spectrum cybersecurity organization covering endpoint security, event monitoring, threat intelligence, and advanced incident response. This is a security engineering role, meaning you are not simply administering identity systems but are designing, hardening, and evolving them.\n\nYour work sits at the intersection of two critical disciplines: identity security and Windows server infrastructure. You will assess the organization's identity architecture against modern security frameworks, lead initiatives to reduce identity-based risk, and ensure that the Windows server environment supporting those identity systems is configured, documented, and defended to the highest standard.\n\nThis role requires someone who understands identity not just as an IT function but as a primary security control and who can operate with engineering depth and strategic thinking.\n\nSalary Range: $120,000 - $130,000\nGeneral Description of Benefits\n\nRequirements:\n\nIdentity Security\n\nDeep understanding of enterprise identity and access management (IAM) architecture, governance, and security operations\nExperience integrating identity signals into security operations, including identity protection, threat detection, and centralized logging\nAbility to monitor identity health, detect suspicious activity, and investigate identity-based threats using security analytics and operational playbooks\nHands-on experience with Microsoft Entra ID (Azure Active Directory), Privileged Identity Management (PIM), and just-in-time access controls\nExperience enforcing least privilege, role-based access control (RBAC), and automating access provisioning and deprovisioning workflows\nFamiliarity with Zero Trust identity principles — verify explicitly, enforce least privilege, and assume breach — and the ability to assess and mature an organization's identity posture against those principles\nExperience securing workload identities, service principals, and high-risk administrative accounts\nAbility to decommission legacy federation infrastructure and migrate applications to modern, standards-based authentication\n\nWindows Server\n\nStrong experience administering and hardening Windows Server environments in an enterprise setting\nProficiency with Microsoft Active Directory, Active Directory Federation Services, and Group Policy Objects (GPOs) from a security engineering perspective\nAbility to monitor and analyze Windows-based architecture, communication, policies, and protocols from a cybersecurity lens\nExperience performing system monitoring, reviewing logs, and taking corrective action to maintain server integrity and availability\nAbility to create and maintain thorough system documentation covering installation, configuration, and troubleshooting procedures\nExperience supporting security continuous monitoring efforts including risk assessments and system patching within Windows server environments\n\nSecurity Engineering & Collaboration\n\nAbility to identify gaps in current identity and server security capabilities and recommend both technical and process-level improvements\nExperience developing and contributing to technical security standards, monitoring standards, and security architecture documentation\nComfortable working across teams including cybersecurity, networking, systems administration, and technology support partners\nAbility to communicate findings and risks clearly to both technical peers and senior leadership\n\nA minimum of 5+ years of progressive experience in identity security and Windows server administration is required, with demonstrated experience operating at an engineering level rather than a purely operational or support capacity. Candidates with hands-on Zero Trust identity implementation experience will be strongly preferred.\n\nReq Benefits:\nBenefits - Everforth ECS","datePosted":"2026-09-17T09:51:02.121Z","dateModified":"2026-09-17T09:51:02.121Z","hiringOrganization":{"@type":"Organization","name":"Everforth Ecs","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Washington","addressRegion":"DC","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"07fd03fb4913fa81debe2a7c"},"url":"https://jobsearcher.com/jobs/07fd03fb4913fa81debe2a7c"}}