Access Management Administrator

LLNL$121K — $185K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • U.S. citizenship required; must obtain a DOE Q-level security clearance.
  • Bachelor's degree in Computer Science or related field, or equivalent experience.
  • Experience managing application authentication software like PingAM or ADFS.
  • Basic knowledge of software security fundamentals (SSL, access control, firewalls).
  • Experience using command line tools for Linux and Windows OS administration.
  • Familiarity with authentication protocols (SAML2, OIDC, OAuth2).
  • Strong analytical skills for troubleshooting complex systems.

Responsibilities

  • Design and maintain Access Management solutions with PingAM and ADFS.
  • Collaborate with teams to integrate access management solutions into various applications.
  • Develop strategies for single sign-on and access management implementation.
  • Ensure high availability and disaster recovery for PingAM services.
  • Utilize automation tools to streamline configurations and support upgrades.
  • Provide systems administration in Linux and Windows, focusing on security compliance.
  • Enforce security policies and perform vulnerability remediation.

Benefits

  • Hybrid work schedule post-probation, allowing flexible remote work options.
  • Career indefinite position providing job stability.
  • Opportunity to work with advanced identity management technologies.
  • Engagement in cross-functional teamwork that enhances collaboration skills.
  • Involvement in modernization of infrastructure in a secure network environment.
Full Job Description
Job Description

We have an opening for an Access Management (AM) Administrator to support both PingAM and Active Directory Federated Services (ADFS) access management solutions in a private cloud environment. This role is responsible for maintaining the existing PingAM stack while assisting with the integration and adoption of ADFS as the new solution. Collaboration with cross-functional teams will be essential to implement and support identity and access management solutions, contribute to the modernization of infrastructure, and address technical challenges as they arise. This position is in the IT Solutions (ITS) Division within the Computing Directorate, supporting the NNSA Enterprise Secure Network (ESN) program.

This position may offer a hybrid schedule, which includes the flexibility to work from home one or more days per week, after a probationary period. The specifics of the hybrid schedule, including the exact number of days required in the office and virtual work options, may vary based on the needs of the team and the organization.

This position will be filled at either level based on knowledge and related experience as assessed by the hiring team. Additional job responsibilities (outlined below) will be assigned if hired at the higher level.

You will
  • Design, implement, and maintain tailored Access Management solutions using PingAM and ADFS.
  • Collaborate with cross-site teams to integrate PingAM and ADFS into diverse systems and applications, leveraging expertise in SAML, OAuth2 and OIDC.
  • Develop and implement strategies for single sign-on (SSO) and access management.
  • Ensure high availability and disaster recovery capabilities for PingAM Services
  • Leverage orchestration/automation utilities (e.g. Gitlab, Amster, Ansible, etc.) to standardize configurations, support patching, and support upgrades across multiple sites.
  • Provide systems administration support in both Linux and Windows environments, ensuring proper security compliance, patch level, and adherence to our configuration management standards.
  • Enforce security and systems administration policy requirements such as vulnerability remediation, and system build standards.
  • Perform other duties as assigned.

Additional job responsibilities, at the SES.2 level
  • Manage multiple advanced parallel tasks and priorities of customers and stakeholders to ensure deadlines are met, while leveraging other team members' skills.
  • Apply technical expertise to solve complex technical problems and develop solutions using judgment in determining methods, techniques, and evaluation criteria.
  • Develop tools and procedures to facilitate automation efforts as well as cross-platform/environment monitoring solutions both on-premise and using various cloud providers.


Qualifications
  • Ability to secure and maintain a U.S. DOE Q-level security clearance which requires U.S. citizenship.
  • Bachelor's degree in Computer Science, or related field; or the equivalent combination of education and related work experience.
  • Fundamental experience in operationally managing application authentication software such as PingAM, PingDS or ADFS
  • Basic understanding of software security fundamentals such as SSL certificates, group-based access control, role-based access control, firewalls & network security.
  • Experience administering Linux and Windows operating systems using command line tools, including performing routine system wellness checks, accessing remote servers, reviewing error logs, and basic troubleshooting.
  • Fundamental experience with authentication and authorization protocols (SAML2, OIDC, OAuth2).
  • Strong analytical skills for troubleshooting and analyzing complex systems and networks.
  • Excellent verbal and written communication skills necessary to effectively collaborate in a team environment and present and explain technical information.

Additional qualifications at the SES.2 level
  • Broad experience in operationally managing application authentication software, ensuring compliance with stringent Support Level Agreements that demand high availability.
  • Comprehensive knowledge of access management services and Linux or Windows operating systems administration. This includes tasks such as layered product installation and configuration, performance tuning, networking, security policy enforcement, troubleshooting, monitoring, backup/archiving, and hardware management.
  • Broad experience with cloud providers such as Amazon Web Services, Azure or Google Cloud Platform. Proficient understanding of topics such as virtual private clouds, scalability, high availability, containerization, and orchestration tools.

Pay Range

Pay Range

$121,830 - $185,544 Annually

$121,830 - $154,500 Annually for the SES.1 level

$146,340 - $185,544 Annually for the SES.2 level

This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting; pay will not be below any applicable local minimum wage. An employee's position within the salary range will be based on several factors including, but not limited to, specific competencies, relevant education, qualifications, certifications, experience, skills, seniority, geographic location, performance, and business or organizational needs.

Additional Information

#LI-Hybrid

Position Information

This is a Career Indefinite position, open to Lab employees and external candidates.

About LLNL

LLNL Careers

There has never been a more opportune time to join the distinguished team at LLNL—the forefront of scientific research and innovation.

Opportunities Await

LLNL offers a plethora of job opportunities aimed at fostering professional growth and innovation. Join a team where science and technology pave the way for significant contributions in global security and scientific advancement.

Embark on a Career of Innovation

At LLNL, every position contributes to a culture of innovation, leadership, and diversity. The company is committed to transforming challenges into technological triumphs through the collective expertise of its team. LLNL stands as a beacon of scientific and engineering excellence, driving forward with cutting-edge research and development.

Professional Growth and Development

LLNL is dedicated to the professional growth of its employees, offering unmatched benefits, career development programs, and diversity training. The team at LLNL thrives in an environment that values knowledge-sharing and continuous learning, supported by comprehensive leadership programs.

Internship Programs

Start with an internship at LLNL and step into a world of potential. These positions are designed to harness academic knowledge and apply it in real-world scenarios, providing a robust foundation for future career endeavors in various scientific and administrative fields.

Join a Diverse and Inclusive Team

LLNL is committed to creating a diverse and inclusive workplace. The company believes in harnessing the power of diverse perspectives to drive innovation and solve complex problems. Employment at LLNL means being part of a team that values each member's unique skills and backgrounds.

Networking and Career Advancement

Networking at LLNL opens doors to expansive career trajectories in numerous disciplines. Employees are encouraged to connect with leaders and peers within and beyond their immediate teams to explore new ideas and career paths.

How to Apply

Discover the array of job opportunities at LLNL by searching available positions that match your skills and interests. Tailor your resume to highlight relevant experience and prepare for an interview that could lead to a rewarding career at one of the most prestigious labs in the world.

Stay Informed

Keep up to date with the latest from LLNL careers by subscribing to job alert emails. Receive personalized updates that align with your career preferences and learn about new job openings, company news, and professional insights directly from the team at LLNL.

Explore LLNL Jobs

Whether looking for a role in scientific research, engineering, or support services, LLNL offers a dynamic and supportive environment to start or advance your career. Join LLNL and contribute to a team that’s reshaping the future of science and technology.

Connect with LLNL Careers

Stay connected with LLNL through various channels to learn more about the company culture, upcoming networking events, and new job opportunities. Engage with a community that’s passionate about growth, innovation, and leadership in science.

APPLY TO LLNL JOBS

READ CAREERS BLOG

JOB ALERT EMAILS

Embark on a journey of professional discovery and innovation at LLNL, where every career is a pathway to making a substantial impact.
Learn more about LLNL

Similar Jobs

More Jobs at LLNL

More Information Technology Jobs

Find similar Access Management Administrator jobs: