ICAM Identity Provider (IdP) Engineer, Enterprise Authentication Services

General Dynamics

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Fort Meade, MD
Salary
$140,250–$189,750 / yr
Posted
2 days ago
Freshness
Confirmed live today

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $177k
This role $165k
$117k most similar roles pay here $229k

This role pays more than 51% of similar roles. Most pay $145,000–$208,192 — the shaded band above. At the midpoint, this role pays about $165k versus about $177k for comparable roles.

Based on 240 similar postings.

Employer

About General Dynamics

General Dynamics is a global aerospace and defense company offering a broad portfolio of products and services in business aviation, ship construction, land combat vehicles, and information technology. It serves customers in the U.S. government, allied governments, and a diverse array of commercial markets.

General Dynamics currently has 1245 open roles on FindRole.

Listed pay typically runs $121,550–$150,385 across 1069 roles with salary data.

Most-posted roles

View all roles at General Dynamics

At a glance

TL;DR · ICAM Identity Provider (IdP) Engineer, Enterprise Authentication Services

ICAM Identity Provider (IdP) Engineer - Enterprise Authentication Services serves as a critical role within the enterprise authentication services team, supporting large-scale identity, credential, and access management capabilities. The engineer is responsible for designing, configuring, and maintaining Identity Provider services to provide secure authentication and federation for millions of users. Day-to-day tasks include managing Microsoft Active Directory Federation Services (ADFS) infrastructure, establishing federation trust relationships, and implementing solutions using SAML, OAuth 2.0, OpenID Connect, WS-Federation, and certificate-based authentication. The role involves developing authentication policies, managing multi-factor authentication, and supporting Zero Trust Architecture objectives. Required technical skills include proficiency in Active Directory, LDAP, PKI, and PowerShell scripting. This position addresses the complex challenge of providing secure, high-availability authentication for mission-critical workloads within a large-scale identity ecosystem involving diverse internal and external service providers.

What you'll do

  • Manage and maintain Microsoft Active Directory Federation Services (ADFS) infrastructure for enterprise authentication.
  • Configure federation trust relationships with internal and external Identity Providers and Service Providers.
  • Implement and troubleshoot authentication protocols including SAML, OAuth 2.0, OpenID Connect, and WS-Federation.
  • Develop and maintain authentication policies, claims rules, attribute mappings, and token issuance configurations.
  • Support Single Sign-On (SSO), Multi-Factor Authentication (MFA), and phishing-resistant authentication mechanisms.
  • Resolve technical issues related to certificates, tokens, and federation trust at scale.
  • Create technical documentation including architecture diagrams, standard operating procedures, and integration guides.
  • Contribute to Zero Trust Architecture objectives through modern identity and federation capabilities.

What we're looking for

  • Must be a United States citizen.
  • Must possess an active Secret clearance (interim not allowed).
  • Must have a Bachelor's degree in a related technical field or equivalent combination of education, certifications, and experience.
  • Must possess DoW 8570/8140 IAT Level II certification (Security+ CE or higher).
  • Must have at least 5 years of experience supporting authentication or identity systems.
  • Must have at least 3 years of experience supporting IAM, Authentication, Federation, or ICAM-related technologies.
  • Must have experience supporting or implementing Microsoft ADFS in enterprise environments.
  • US Citizenship.

More like this

Similar roles

Identity Provider Operations Engineer

Booz Allen Hamilton

McLean, VA +1 17 days ago $86,800$198,000
PingFederate Okta Entra ID SAML 2.0 OAuth 2.0 OpenID Connect Python Java JavaScript PowerShell Groovy RESTful APIs Active Directory LDAP SCIM Zero Trust MFA AWS Cognito Azure AD B2C Google Cloud Identity CI/CD

Identity Provider Operations Engineer

Booz Allen Hamilton

Riverdale, MD +3 22 days ago $86,800$198,000
PingFederate Okta Entra ID SAML 2.0 OAuth 2.0 OpenID Connect Python Java JavaScript PowerShell Groovy RESTful APIs Active Directory LDAP SCIM Zero Trust MFA AWS Cognito Azure AD B2C Google Cloud Identity CI/CD

Senior Identity & Access Management (IAM) Engineer

Allstate

Remote (IL) 23 days ago $98,100$167,850
Identity and Access Management (IAM) Single Sign-On (SSO) SAML OAuth OpenID Connect (OIDC) PingFederate Ping Access PingAM IBM Verify Identity Access IBM Verify Access IBM Security Access Manager (ISAM) Okta ForgeRock Python JavaScript Groovy YAML PowerShell Active Directory LDAP Agile Scrum MFA
5+ yrs exp Remote