Okta IAM / Identity Integration Engineer

Peraton

$66K — $106K *
US-AnywhereRemote in United States
Education, Government & Non-Profit
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of experience in identity management, particularly with Okta Identity Engine (OIE)
  • Experience with secure authentication flows and the Okta Embedded SDK
  • Deep knowledge of modern identity protocols (OAuth 2.0, OIDC, PKCE)
  • Proven background in mobile authentication for iOS and Android applications
  • Strong understanding of identity federation (OIDC, SAML 2.0) and token management
  • Experience with DoD cybersecurity compliance and RMF guidelines
  • Familiarity with REST APIs and DevSecOps processes.

Responsibilities

  • Configure and optimize Okta Identity Engine for DoD identity workflows.
  • Implement secure authentication using the Okta Embedded SDK for partner apps.
  • Develop mobile identity solutions for native applications supporting DoD.
  • Integrate phishing-resistant authentication methods aligned with Zero Trust objectives.
  • Design adaptive authentication policies and manage token lifecycles.
  • Collaborate with DevSecOps teams on CI/CD integration of IAM solutions.
  • Document and evaluate multiple implementation alternatives for Okta Mobile.

Benefits

  • Remote work flexibility for a better work-life balance.
  • Opportunities for professional development and growth.
  • Work on high-visibility projects within the Department of Defense.
  • Be part of a mission-driven team impacting Service Members and families.
  • Access to a collaborative work environment with cutting-edge technologies.
Full Job Description
Responsibilities

Peraton is seeking a highly experienced Okta IAM/Identity Integration Engineer to support the Department of Defense's next-generation enterprise Identity, Credential, and Access Management (ICAM) platform that is replacing DS Logon and providing secure authentication services for millions of Service Members, Veterans, Family Members, and Beneficiaries. The Alternative Multi-factor Authentication Support Services (AMASS) Program provides secure, scalable identity and access management services across the Department of Defense, enabling authentication, authorization, and digital identity interoperability for high‑visibility DoD systems.

 

In this role, you will design, integrate, and sustain identity services using the Okta Identity Engine (OIE), implement secure authentication flows using the Okta Embedded SDK, and ensure compliance with DoD cybersecurity policies, including RMF, STIG, and NIST guidelines. This position requires extensive hands‑on experience with modern identity protocols, mobile authentication, and enterprise IAM/ICAM solutions within Federal environments.

 

This is a 100% remote role.

 

Responsibilities

  • Configure, administer, and optimize Okta Identity Engine (OIE) to support DoD enterprise identity workflows.
  • Implement and support the Okta Embedded SDK to deliver secure and standardized authentication for partner applications.
  • Develop and enhance mobile identity integrations for native iOS and Android platforms supporting DoD mission applications.
  • Implement modern identity standards including OAuth 2.0, OpenID Connect (OIDC), and PKCE.
  • Configure phishing‑resistant authentication methods, including FIDO2/WebAuthn, in alignment with DoD Zero Trust objectives.
  • Design and maintain adaptive and risk-based authentication policies.
  • Integrate identity federation services (OIDC, SAML 2.0) including external Identity Provider (IdP) connections.
  • Manage authentication token lifecycles (JWT, ID, Access, Refresh tokens) across DoD application ecosystems.
  • Implement secure API authentication using OAuth scopes, claims, and structured authorization patterns.
  • Build identity automation using Okta Workflows and no‑code/low‑code orchestration tooling.
  • Integrate Okta with DoD authoritative data sources and enterprise-level IAM services.
  • Evaluate and document multiple Okta Mobile implementation alternatives and contribute to the Government Analysis of Alternatives (AoA).
  • Design headless authentication architectures supporting embedded mobile authentication.
  • Design reusable authentication services supporting multiple relying-party mobile applications.
  • Design secure device-bound credential registration and provisioning.
  • Support Configuration Control Board (CCB) reviews and technical architecture presentations.
  • Design alternative MFA pathways for users without CAC credentials.
  • Design proxy authentication capabilities supporting beneficiary relationships.
  • Support identity lifecycle processes, including provisioning, deprovisioning, profile management, and attribute governance.
  • Troubleshoot complex identity, federation, and mobile SDK integration issues across multiproduct DoD environments.
  • Utilize REST APIs, Postman, and related tooling for API development, testing, and validation.
  • Work with DevSecOps teams to integrate IAM capabilities into CI/CD pipelines supporting DoD modernization.
  • Ensure identity implementations comply with DoD RMF, DISA STIGs, NIST SP 800‑63, and other Federal cybersecurity mandates.
Qualifications

Required Qualifications

  • 5 years with BS/BA; 3 years with MS/MA; 0 years with PhD
  • Must be able to obtain and maintain a Public Trust
  • U.S. Citizenship required
  • Experience configuring and administering Okta Identity Engine (OIE).
  • Experience implementing Okta Embedded SDK and designing secure custom authentication flows.
  • Strong knowledge of OAuth 2.0, OIDC, PKCE, and related identity protocols.
  • Experience implementing FIDO2/WebAuthn for phishing‑resistant authentication.
  • Experience developing adaptive/risk-based authentication policies.
  • Strong background in identity federation and IdP integrations (OIDC, SAML 2.0).
  • Experience developing secure mobile authentication for native iOS and Android.
  • Deep understanding of authentication token lifecycle management.
  • Experience designing structured API authorization models using OAuth scopes and claims.
  • Experience with Okta Workflows, identity automation, and enterprise identity integrations.
  • Experience with identity lifecycle processes, provisioning, and directory synchronization.
  • Strong troubleshooting skills related to authentication, federation, and SDK integrations.
  • Experience working with REST APIs and tools such as Postman.
  • Familiarity with DevSecOps, CI/CD pipelines, and secure configuration management.
  • Experience supporting RMF, STIG, DoD cybersecurity compliance, and Federal ICAM requirements.

 

Preferred Qualifications

  • Okta Certified Administrator or Okta Certified Professional.
  • Hands-on experience with the Okta Identity Engine Embedded SDK for native app authentication.
  • Experience supporting large-scale Federal ICAM/CIAM implementations.
  • Knowledge of NIST SP 800‑63 Digital Identity Guidelines.
  • Experience with CAC/PIV, derived credentials, or Purebred mobile credential solutions.
  • Experience integrating identity proofing, identity verification, or credential issuance services.
  • Familiarity with DoD Zero Trust Architecture and enterprise IAM modernization initiatives.
Target Salary Range$66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Similar Jobs

More Jobs at Peraton

More Education, Government & Non-Profit Jobs

Find similar Okta IAM / Identity Integration Engineer jobs: