{"schemaVersion":"jobsearcher.job.v1","id":"fcd85548d02131d5bbecce61","url":"https://jobsearcher.com/jobs/fcd85548d02131d5bbecce61","canonicalUrl":"https://jobsearcher.com/jobs/fcd85548d02131d5bbecce61","title":"Identity Provider Engineer","description":"Job Number: R0239826\n\nIdentity Provider Engineer\n\nYou know that the user is the last frontier for cybersecurity. It's where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals. As an Identity and Access Management (IAM) specialist, you have the skills and experience to keep hackers from taking data and breaking processes. We're looking for someone like you to help our clients meet their missions without disruption.\n\nAs an Identity Provider Engineer at Booz Allen, you'll play a critical role in the world of identity and access management and zero trust. In this role, you'll support large‑scale IAM projects for our clients, interface with stakeholders and engineering teams to delve into the details and dependencies of critical processes and users' roles within them. You'll analyze the identity lifecycle, articulate access requirements, and define enterprise identity records. Using your experience in IAM, you will design, deploy, and support systems that verify appropriate user privileges and manage credentials for accessing our clients' most valuable assets. From single sign‑on to privileged access systems, you'll have the chance to implement enterprise‑class solutions and stop adversaries in their tracks.\n\nQualifications\n\nExperience with Ping Federate, Okta, or Entra ID\n\nExperience with SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC)\n\nExperience developing custom SAML, OAuth, and OIDC integrations and troubleshooting protocol exchanges\n\nExperience with languages used for identity platform development and automation such as Java, JavaScript, Python, PowerShell, or Groovy\n\nExperience working with RESTful APIs to integrate identity providers with external applications and automate identity lifecycle processes\n\nExperience integrating and synchronizing with Active Directory (AD) or LDAP\n\nKnowledge of Zero Trust architectures and implementation of password‑less authentication or multifactor authentication (MFA) within the IdP environment\n\nAbility to resolve complex identity and federation issues, including token validation errors, assertion mismatches, and connectivity problems\n\nActive TS/SCI clearance; willingness to take a polygraph exam\n\nHS diploma or GED\n\nNice to Have\n\nExperience with Ping Identity Suite tools, including development using PingFederate, PingAccess, PingDirectory, or PingOne with custom workflows and scripting\n\nExperience building or enhancing automated user lifecycle management using System for Cross‑domain Identity Management protocols\n\nExperience integrating identity provider code and configurations into DevOps and CI/CD pipelines for automated build and deployment workflows\n\nKnowledge of advanced Okta development features such as Okta Workflows, Custom Authorization Servers, Inline Hooks, and Okta APIs for enhanced platform customization\n\nKnowledge of compliance and regulatory standards such as NIST, FedRAMP, HIPAA, or other frameworks relevant to identity management solutions\n\nKnowledge of cloud identity platforms such as AWS Cognito, Azure AD B2C, or Google Cloud Identity\n\nPossession of excellent verbal and written communication skills\n\nTS/SCI clearance with a polygraph\n\nBachelor's degree in Computer Science, Cybersecurity, or Information Technology\n\nClearance\nApplicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.\n\nEEO Statement\nAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.\n\n#J-18808-Ljbffr","company":"Phase2 Technology","rawCompany":"phase2 technology","city":"El Paso","state":"TX","isRemote":false,"isActive":false,"createdAt":"2026-06-17T03:44:00.230Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1252.00","title":"Software Developers","slug":"software-developers"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Identity Provider Engineer","description":"Job Number: R0239826\n\nIdentity Provider Engineer\n\nYou know that the user is the last frontier for cybersecurity. It's where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals. As an Identity and Access Management (IAM) specialist, you have the skills and experience to keep hackers from taking data and breaking processes. We're looking for someone like you to help our clients meet their missions without disruption.\n\nAs an Identity Provider Engineer at Booz Allen, you'll play a critical role in the world of identity and access management and zero trust. In this role, you'll support large‑scale IAM projects for our clients, interface with stakeholders and engineering teams to delve into the details and dependencies of critical processes and users' roles within them. You'll analyze the identity lifecycle, articulate access requirements, and define enterprise identity records. Using your experience in IAM, you will design, deploy, and support systems that verify appropriate user privileges and manage credentials for accessing our clients' most valuable assets. From single sign‑on to privileged access systems, you'll have the chance to implement enterprise‑class solutions and stop adversaries in their tracks.\n\nQualifications\n\nExperience with Ping Federate, Okta, or Entra ID\n\nExperience with SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC)\n\nExperience developing custom SAML, OAuth, and OIDC integrations and troubleshooting protocol exchanges\n\nExperience with languages used for identity platform development and automation such as Java, JavaScript, Python, PowerShell, or Groovy\n\nExperience working with RESTful APIs to integrate identity providers with external applications and automate identity lifecycle processes\n\nExperience integrating and synchronizing with Active Directory (AD) or LDAP\n\nKnowledge of Zero Trust architectures and implementation of password‑less authentication or multifactor authentication (MFA) within the IdP environment\n\nAbility to resolve complex identity and federation issues, including token validation errors, assertion mismatches, and connectivity problems\n\nActive TS/SCI clearance; willingness to take a polygraph exam\n\nHS diploma or GED\n\nNice to Have\n\nExperience with Ping Identity Suite tools, including development using PingFederate, PingAccess, PingDirectory, or PingOne with custom workflows and scripting\n\nExperience building or enhancing automated user lifecycle management using System for Cross‑domain Identity Management protocols\n\nExperience integrating identity provider code and configurations into DevOps and CI/CD pipelines for automated build and deployment workflows\n\nKnowledge of advanced Okta development features such as Okta Workflows, Custom Authorization Servers, Inline Hooks, and Okta APIs for enhanced platform customization\n\nKnowledge of compliance and regulatory standards such as NIST, FedRAMP, HIPAA, or other frameworks relevant to identity management solutions\n\nKnowledge of cloud identity platforms such as AWS Cognito, Azure AD B2C, or Google Cloud Identity\n\nPossession of excellent verbal and written communication skills\n\nTS/SCI clearance with a polygraph\n\nBachelor's degree in Computer Science, Cybersecurity, or Information Technology\n\nClearance\nApplicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.\n\nEEO Statement\nAll qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.\n\n#J-18808-Ljbffr","datePosted":"2026-06-17T03:44:00.230Z","dateModified":"2026-06-17T03:44:00.230Z","hiringOrganization":{"@type":"Organization","name":"Phase2 Technology","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"El Paso","addressRegion":"TX","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"fcd85548d02131d5bbecce61"},"url":"https://jobsearcher.com/jobs/fcd85548d02131d5bbecce61"}}