Identity and Access Management Engineer

Clearance Level
Information Security
Morrisville, North Carolina

REQ#: G2019-67105

General Dynamics Information Technology (GDIT) has an immediate requirement for an an Identity and Access Management Engineer to add to its cybersecurity team in support of the United States Postal Service. The successful candidate will experience an unparalleled large-scale hybrid-cloud environment with over 200K user accounts exchanging millions of digital transactions in support of a diverse operation spread across the entire US.



  • The successful candidate will define, design, and build robust and highly available IAM Services. You will be the technical lead in the actualization of a multi-phase IAM Roadmap. You will work to position the organization for success, improving efficiency, accuracy, and compliance while increasing business responsiveness, and improving the security posture.  Key responsibilities include:

    • Design IAM processes and strategies to securely manage the identity lifecycle
    • Design, implement, configure, and deploy IAM solutions
    • Evaluate IAM solutions against business requirements and best practices
    • Provide IAM subject matter expertise for business and technical project team
    • Evaluate vendor solutions to ensure they meet technology and security standards
    • Coach and serve as a technical escalation resource to team members on all IAM related technical issues
    • Create and maintain design, technical architecture, and release management documentation
    • Implement best practices for identity governance and administration, provisioning, de-provisioning, privileged access management, access reviews etc.
    • Research and follow industry trends in the IAM space and provide recommendations that influence client's strategic plans.


Please Note:  We can only accept US citizens and or Green Card Holders.  The security clearance for this program requires the selected candidate to have resided in the US for the past five years and not have left the country for more than 180 cumulative days.


Bachelor's degree in Computer Science, Information Technology or related field, and 7+ years of relevant experience.



  • Minimum 2 years of experience with Microsoft IAM tools and technologies (FIM, MIM, Office 365, Azure AD, ADFS, etc.).
  • Minimum 5 years of technical experience in the IAM space, designing, implementing and deploying IAM services and infrastructure
  • Advanced understanding of Directory Services, AD, LDAP, and DNS
  • Experience implementing authentication methods, SSO, OAuth, MFA, SAML, Federation and Certificates
  • Working knowledge of IAM tools such as OneLogin, SambaAD, WindowsAD, OpenLDAP, Duo MFA
  • Experience implementing Identity and Access Management processes
  • Experience implementing role-based access solutions
  • Strong communication skills and the ability to show leadership and work collaboratively with stakeholders and on multi-team implementation efforts
  • Must have hands-on experience working in a large-scale enterprise environment (10s of 1000s of users minimum)
  • Hands-on experience with architecture, design, and implementation of cloud security features, preferably related to O365.








" We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.

GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.