Duties May Include- Implement ICAM modernization designs for PEP/PIP, EMS, and RPMS components, ensuring alignment with architectural patterns and modernization goals, including transition from the legacy PDP to JBlocks.
- Develop and integrate microservices supporting identity, attributes, authorization, resource registration, and policy distribution.
- Collaborate with the Architect to translate high-level designs into detailed engineering tasks, technical artifacts, and system interfaces.
- Support the Technical Lead by providing technical input during Program Increment (PI) planning, backlog refinement, work estimation, and risk identification.
- Develop new PEP/PIP patterns, including enforcement endpoints, policy decision integrations, and attribute retrieval mechanisms.
- Enhance EMS and RPMS services by implementing automation for resource/role lifecycle management, attribute orchestration, and policy ingestion workflows.
- Coordinate with DevOps engineers on CI/CD, containerization, infrastructure automation, and deployment to Kubernetes or the government's currently installed application platform.
- Troubleshoot complex identity, authentication, authorization, and policy-related issues across legacy and modernized components.
- Produce engineering documentation, including design specifications, data flow diagrams, configuration standards, and interface definitions.
- Ensure modernization activities reduce operational overhead and improve system reliability, maintainability, and observability.
- Participate in integration testing, operational readiness testing, and deployment validation across multiple environments and security domains.
- Mentor junior engineers and promote best practices in secure coding, microservices development, and ICAM integration.
RequirementsRequired Qualifications- Bachelor's degree in a Science, Technology, Engineering, and Mathematics (STEM) field and 8+ years of relevant experience, or equivalent experience.
- Hands-on experience developing or integrating systems related to identity, authentication, authorization, or enterprise security.
- Experience implementing distributed systems or microservices architectures on modern platforms.
- Experience supporting Agile teams and contributing to iterative delivery of new capabilities.
- Ability to interpret architectural guidance and convert designs into high-quality, maintainable engineering solutions.
- Ability to obtain CompTIA Security+ within 90 days of hire.
- Active Top Secret security clearance upon hire with SCI eligibility.
- U.S. citizenship.
Desired Qualifications- Experience with Kubernetes or OpenShift for deployment and container orchestration.
- Programming experience with Java and/or Python.
- Familiarity with GitOps tools.
- Experience with Amazon Web Services (AWS), Linux, or containerization technologies.
- Knowledge of identity and access standards: X.509, SAML, OAuth2, OIDC, LDAP.
- Experience with Oracle products or similar ICAM vendor technologies.
- Experience implementing ABAC/RBAC models, policy-based access controls, and Zero Trust-aligned authorization patterns.
- Experience supporting Intelligence Community (IC) or Department of War (DoW) systems, particularly authorization and identity-centric services.
BenefitsAt Trinity Global Consulting (TGC), we value our employees and provide a comprehensive benefits package that includes:
- Medical, Dental & Vision Coverage - Coverage for eligible employees and family through CareFirst and VSP.
- Paid Time Off - PTO granted in accordance with contract requirements.
- Paid Holidays - 11 federal holidays observed annually.
- Disability & Life Insurance - Short-term/long-term disability, life insurance, and AD&D coverage included.
- 401(k) Retirement Plan - Competitive plan managed through Ameritas.
- Professional Training - Formal training provided as required, with additional learning opportunities based on role.