Full-Time

Enterprise Directory & Messaging Lead

EDM

Posted on 10/31/2025

SteerBridge

SteerBridge

Compensation Overview

$117k - $129k/yr

Quantico, VA, USA

In Person

Category
IT & Security (1)
Required Skills
PowerShell
Fedramp
Python
LDAP
Role-based Access Control
SAML
Cryptography
Requirements
  • Five to seven plus years of progressive information technology infrastructure, identity and access management, or security engineering experience, including at least three years in a leadership or senior engineering capacity.
  • Proof expertise with Microsoft Active Directory and Microsoft Entra Identity (Azure Active Directory), including user lifecycle management, conditional access, and on-premises integration.
  • Experience with cloud identity and access management platforms including AWS Identity and Access Management (roles, policies, service accounts, resource-level controls).
  • Experience with Google Cloud IAM and Google Cloud Identity, including policy-based access, service account management, and federated identity.
  • Familiarity with enterprise single sign-on and federation platforms such as Okta or Ping Identity, covering multi-factor authentication, SSO, software-as-a-service applications integration, and user provisioning.
  • Hands-on experience with open-source or on-prem IAM platforms such as Keycloak (SSO, OAuth2, OIDC, federation, LDAP/AD integration) and OpenLDAP or FreeIPA (users, groups, schema extensions, Kerberos integration).
  • Experience with other platforms such as Gluu, FusionAuth, or Apache Syncope is a plus.
  • Strong knowledge of authentication and access control standards including SAML, OAuth2, OIDC, and PKI.
  • Proven ability to design and enforce RBAC/ABAC policies, just-in-time access, and least privilege across hybrid environments.
  • Demonstrated success implementing and managing MFA, SSO, and conditional access across diverse systems.
  • U.S. Citizenship is required and clearance eligibility.
Responsibilities
  • Oversee Active Directory and Entra ID (Azure AD) provisioning, access controls, group policies, and lifecycle management.
  • Manage AWS IAM roles, service accounts, and resource-level access controls.
  • Administer Google Cloud IAM/Cloud Identity policies, federated access, and service accounts.
  • Configure and manage SSO and federation solutions (Okta, Ping, Keycloak, etc.).
  • Enforce RBAC/ABAC access policies, least privilege, MFA, and conditional access controls.
  • Implement and drive adoption of Zero Trust principles across IAM and directory solutions.
  • Manage Microsoft Exchange, Office 365, and Teams, ensuring performance, security, and availability.
  • Enforce email security standards (SPF, DKIM, DMARC), retention, and encryption policies.
  • Lead migration and modernization of messaging and collaboration platforms.
  • Drive hybrid and cloud-based migrations (Azure, M365/O365, AWS IAM, Google IAM).
  • Ensure scalability, high availability, and disaster recovery readiness.
  • Automate IAM/directory processes using scripting (PowerShell, Python, etc.).
  • Align IAM and messaging systems with FedRAMP, NIST, DISA STIGs, ISO 27001, HIPAA, SOX.
  • Establish and maintain audit-ready documentation and access governance processes.
  • Monitor, report, and remediate IAM-related metrics, risks, and compliance adherence.
  • Supervise technical staff and escalation point for complex IAM/directory issues.
  • Partner with IT, security, and vendors to deliver secure, enterprise-wide IAM solutions.
  • Provide technical leadership, updates, and recommendations to senior management.
Desired Qualifications
  • Experience with Federal risk and authorization management programs such as FedRAMP, NIST 800-53, DISA Security Technical Implementation Guides, ISO 27001, HIPAA, and SOX compliance frameworks.
  • Knowledge of Zero Trust architecture and security best practices.
  • Familiarity with Google Workspace IAM and federation with software as a service and enterprise applications.
  • Scripting and automation skills in PowerShell, Python, or similar languages.
  • Relevant certifications such as Certified Information Systems Security Professional, Certified Cloud Security Professional, AWS Security Specialty, or IAM-specific certifications.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

INACTIVE