Identity Infrastructure Engineer
Everforth ECS is seeking an Identity Infrastructure Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.
We are looking for an experienced and technically sharp Identity Infrastructure Engineer to join our Identity Governance and Administration (IG&A) team. This team oversees the design, implementation, and ongoing support of the organization's directory and identity management solutions which is the foundational layer that underpins access, authentication, and security across the entire enterprise.
In this role, you will own the health, integrity, and security of the organization's identity infrastructure. That means administering Microsoft Active Directory and related directory services, managing PKI and certificate lifecycle operations, and ensuring that the identity backbone supporting thousands of users and systems is reliable, well-documented, and hardened against threats.
This is a hands-on senior-level role for someone who takes pride in keeping complex infrastructure running cleanly, communicates clearly with teams across the organization, and understands that identity is not just a technical function but a critical security control.
Salary Range: $120,000 - $130,000
General Description of Benefits
Requirements:
Active Directory & Directory Services
Minimum of 5+ years of experience administering Microsoft Active Directory and Active Directory Federation Services
Experience performing daily system monitoring, verifying the integrity and availability of hardware, server resources, systems, and key processes
Proficiency in reviewing system and application logs and taking appropriate corrective action
Ability to create and maintain thorough system documentation covering installation, configuration, and troubleshooting procedures
Experience monitoring and analyzing architecture, communication, policies, and protocols from a cybersecurity perspective
PKI & Certificate Management
Experience designing, implementing, and managing enterprise PKI environments, including certificate authority (CA) hierarchy management
Proficiency in certificate lifecycle management — issuance, renewal, revocation, and auditing
Understanding of cryptographic standards and their application within enterprise security policy
Ability to troubleshoot certificate-related issues across large, complex environments
Experience integrating PKI across Active Directory, web services, and endpoint devices
Identity & Access Management
Experience with Microsoft Azure Active Directory and hybrid identity environments
Familiarity with Single Sign-On (SSO), Multi-Factor Authentication (MFA), and enterprise identity governance platforms
Ability to assist with security continuous monitoring, including risk assessments and system patching, within the identity and access management space
Experience supporting large, cross-functional projects through collaboration with project and support teams
A minimum of 5+ years of experience administering enterprise Active Directory environments and supporting identity and access management solutions is required. Candidates who bring dedicated PKI experience alongside domain administration will be strongly preferred.
Req Benefits:
Benefits - Everforth ECS