Responsibilities
The primary duty of this position is the independent application of systems analysis techniques and specialized technical knowledge to perform end user account lifecycle administration across NIPRNet, SIPRNet, and Yellow Network using Active Roles Server, DEPO, DEOS, and Defense Enterprise Email, including resolution of access-related shortfalls, dormant account processing, journaling administration, and PowerShell/Python scripting for bulk operations. The candidate exercises discretion and independent judgment in technical resolution decisions, in dormant account disposition, in journaling administration, and in scripting design for bulk operations — without continuous direct supervision on individual technical decisions.
- IndependentlyutilizesActive Roles Server and Government-provided provisioning tools to create, manage, andmodifyend user NIPRNet, SIPRNet, and Yellow Network accounts, processing approximately 5,700 transactions per month IAW Section 7 Performance Standards.
- Independently creates,modifies, disables, anddeletesaccounts across NIPRNet, SIPRNet, and Yellow Network using DISA DOD365-J DEPO, DEOS, and Defense Enterprise Emailcapabilities;creates local AD accounts prior to requesting provisioning.
- Resolves end-user access-related shortfalls including shared drive access, calendars, group mailboxes, VPN/Citrix account management, and SharePoint access IAW J6 Accounts Management SOP; exercises judgment in selecting theappropriate technicalremediation for each access shortfall.
- Develops andmaintainsthe Account Documentation Repository with received account-related documents including CAC Exclude forms, Dormant Account Exception Forms, and DD2875s, 95% of the time.
- Independentlyidentifiesand processes dormant and inactive accounts IAW J6 Accounts Management SOP; confirms with customer organization contacts; disables or removes target accounts; contributes to the monthly Dormant Accounts Report.
- Ensures CAPSTONE, GOFO, PAS, Honorable, and Judge accounts are flagged for journaling;validatesjournaling status and contributes to the monthly Accounts Journaling Report.
- Independently coordinates with VIP Support team prior to any VIP account modifications; provides Disabled or Deleted Accounts Lists monthly to Unclassified Mobile and Classified Mobile teams.
- Performs Python scripting and PowerShell scripting in support of bulk account creations, modifications, or deletions; supports persona bulk operations and enterprise-wide account setting projects; exercises judgment in script design and testing.
- Initiates resolution steps with DISA toestablish, delete, or resolve email-related issues; coordinates new customer codes for newly formed DOD organizations.
- Provides accounts management subject matterexpertisefor Cyber inspections, Continuous Monitoring audits, and data calls (approximately six per year) and information requests from DoD Inspector General, General Counsel, or Records Managers (approximately two per month).
Qualifications
- Active Secret security clearance at time of award.
- Demonstrated ability to independently apply systems analysis techniques and specialized technical knowledge to perform end user account lifecycle administration in a multi-network classified environment without continuous direct supervision.
- Ability to exercise discretion and independent judgment in technical resolution decisions, in dormant account disposition, in journaling administration, and in scripting design for bulk operations.
- Working knowledge of Active Directory administration, Active Roles Server, DOD365-J DEPO, DEOS, Defense Enterprise Email,PowerShelland Python scripting for IAM operations, shared drive/calendar/SharePoint/VPN account management, and DoD account-management policies.
- Strong analytical and problem-solving skills with a demonstrated record of resolving complex account management incidents.
- Strong customer service orientation withdemonstratedexperience in DoD or other large federal customer environments.
- Ability to effectively prioritize and execute tasks across multiple concurrent incidents and bulk operations in a high-pressure environment.
- Good written, oral, and interpersonal communication skills; ability to present technical ideas in business-friendly and user-friendly language.
- Ability to conduct research into PC and software issues and products asrequired.
- Highly self-motivated and directed; capable of operating with minimal supervision.
- Keen attention to detail and rigorous documentation standards consistent with DoD compliance requirements.
- Team-oriented and skilled in working within a collaborative environment.
-
- Required Education:Bachelor's degree in Information Technology, Computer Science, Information Systems, or a related technical discipline; or equivalent combination of advanced vendor certification (including vendor certification in the technology being applied) and directly relevant professional experience accepted in lieu of degree.
- Required Experience:6 or more years of progressively responsible professional experience in Active Directory administration, identity and access management, or DoD account lifecycle operations in roles requiring independent judgment and technical decision-making.
- Preferred Experience:Prior experience supporting a DoD or J6 customer environment, including multi-network classified IAM, Active Roles Server administration, DOD365-J operations, and PowerShell/Python scripting.
- Required Certifications:ITIL v4 Foundations, CompTIA Security+, Microsoft Active Directory or equivalent.Preferred Certifications:Microsoft Certified: Identity and Access Administrator, Azure Administrator Associate.
Pay Band MinUSD $72,160.00/Yr.
Pay Band MaxUSD $111,700.00/Yr.