Tier 4 SME IT Analyst This position requires an active TS/Sensitive Compartmental Information (SCI) clearance. We are seeking a highly experienced Tier 4 Subject Matter Expert (SME) IT Analyst to join our team supporting the Naval Support Facility in Dahlgren, VA . This role requires expertise in Identity and Access Management (IAM) within a hybrid cloud environment, as well as proficiency with industry-standard SSO technologies, federated identity management, and authentication solutions. The candidate must have the ability to lead complex technology assignments, provide technical guidance, and implement robust IAM solutions across multiple networks. Compensation & Benefits: Estimated Starting Salary Range for Tier 4 SME IT Analyst: Wage range starts at $140,000 Pay commensurate with experience. Full time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided. Benefits are subject to change with or without notice. Tier 4 SME IT Analyst Responsibilities Include:
- Lead the development and implementation of Federated Identity Authentication and Authorization plans across multiple networks up to the TS/SCI/SAP level.
- Provide Tier 3 and Tier 4 expertise in IAM, supporting the integration and long-term strategy of federated identity solutions.
- Design and implement long-term strategies to enhance user experience and security, bridging on-premises and cloud environments.
- Provide ongoing support for on-premises Microsoft Active Directory, Azure AD, and AWS Identity solutions.
- Implement and support SAML/OIDC/OAuth solutions for Single Sign-On, Multi-Factor Authentication, and Conditional Access Policies.
- Develop automation using PowerShell, Terraform, and other tools to optimize IAM processes.
- Deliver System Architecture Diagrams, compliance assessments, and implementation plans, with clear recommendations for system improvements.
- Existing and new System Architecture Diagrams
- Provide an assessment of existing access, authorization, and IAM solutions.
- Include existing practices that are out of compliance and require improvement.
- Assessment is accompanied by a presentation of compliance findings and system inadequacies.
- Federated Identity implementation Acceptance Test Plan and Acceptance Criteria.
- At a minimum, provide a Federated Identity Implementation Plan that successfully addresses integration amongst all existing networks.
- The Implementation Plan includes COAs to address changes to current implementation, best practices, security compliance, management and increased efficiencies. Implementation Plan accompanied by System Architecture Diagram that illustrates how solutions and COAs will be implemented within the existing architecture.
- Upon Government acceptance of the Implementation Plan, the employee will
- Provide a detailed plan and schedule for implementation of selected and approved COA(s).
- Facilitate implementation of solutions and/or COA(s) in coordination with the Government.
- Performs other job-related duties as assigned
Tier 4 SME IT Analyst Experience, Education, Skills, Abilities requested: Experience Requirements
- 5-10 years of hands-on experience in IT security and Identity and Access Management (IAM), specifically in supporting government and military environments.
- Proven expertise in implementing and managing Single Sign-On (SSO) technologies and protocols such as OAuth, FIDO, SCIM, LDAP, and SAML in a highly secure, operational environment.
- Demonstrated experience deploying identity solutions such as Okta, Auth0, Active Directory, and Azure AD to support secure access to critical systems and information within the Department of Defense (DoD) or similar government agencies.
Technical Expertise
- Strong understanding of IAM components including Single Sign-On (SSO), identity federation, privileged access management, and role-based access control (RBAC), and their application in a DoD or NSF context.
- Familiarity with Federated Identity Management (FIM) capabilities, IAM policy engines, and best practices for managing secure identities within complex federal IT infrastructures.
- Hands-on experience with directory services such as Microsoft Active Directory, Entra ID, and AWS Identity Center, specifically in environments that require high security standards and compliance with federal security policies.
- Proven track record of deploying and integrating IAM solutions within cloud environments, including AWS and Azure, while ensuring compliance with NSF and DoD security protocols.
Programming/Scripting Skills
- Experience with scripting languages such as Python, Bash, and PowerShell for automating IAM tasks, reporting, and system integrations to streamline operations and enhance security posture.
Certifications & Clearance
- Current Security+ certification (or higher, such as CISSP) required to demonstrate expertise in cybersecurity best practices.
- This position requires an active TS/Sensitive Compartmental Information (SCI) clearance.
- Must pass pre-employment qualifications of Cherokee Federal
Schedule - M-F Flexible start time, (6am -6pm Business hours) Standard 40 hour week required On-site requirement 100% Travel requirement TBD 20% may be required in the future Company Information: Cherokee Nation Defense Solutions (CNDS) is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government's mission with compassion and heart. To learn more about CNDS, visit cherokee-federal.com. #CherokeeFederal #LI-SB1 Cherokee Federal is a military friendly employer. Veterans and active military transitioning to civilian status are encouraged to apply. Similar searchable job titles:
- Senior Identity and Access Management (IAM) Analyst
- Senior IT Security Engineer
- Lead Identity Management Specialist
- Principal Cybersecurity Analyst
- Senior Federated Identity Architect
Keywords:
- Identity and Access Management (IAM) Expertise
- SSO Technologies and Protocols
- Cloud IAM Integration
- Directory Services Management
- Scripting and Automation Skills
Legal Disclaimer: All qualified applicants will receive consideration for employment without regard to protected veteran status, disability or any other status protected under applicable federal, state or local law. Many of our job openings require access to government buildings or military installations. Candidates must pass pre-employment qualifications of Cherokee Federal. Many of our job openings require access to government buildings or military installations. Candidates must pass pre-employment qualifications of Cherokee Federal.
|