Systems Engineer (DevSecOps and ICAM)

GCyber

$100K — $130K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active DoD Top Secret clearance with SCI eligibility
  • Willingness to maintain CI Poly and Special Program Access
  • BS in Computer Science or related field and 8+ years in systems engineering (or equivalent experience)
  • IAT II Certification (e.g. Security+, CySA+)
  • Hands-on experience with SAML, OAuth2, and OpenID Connect federation technologies
  • Experience administering the ForgeRock platform (AM, IDM, DS)
  • Strong understanding of ICAM principles and enterprise access controls
  • Experience with Windows and Linux systems administration and scripting

Responsibilities

  • Engineer, deploy, secure, and maintain ForgeRock IdP/ICAM solutions using DevSecOps practices
  • Design and implement enterprise identity services like SSO, identity federation, and Zero Trust integration
  • Collaborate with teams to ensure compliance with cybersecurity standards and support audits
  • Perform system hardening and root-cause analysis for ForgeRock components
  • Develop operational documentation and technical diagrams for ICAM operations

Benefits

  • 26 Days of Paid Leave + Annual PTO Increase
  • An extra day of paid leave for every year of employment
  • Paid Parental Leave and additional military and jury duty leave
  • 401(k) Matching
  • 100% Company-funded Disability Insurance
  • 90% Company-Funded Health, Dental, and Vision Insurance
  • Training and Professional Development Plans
  • Commuter Benefits Plan and Transportation Allowance
Full Job Description
The Systems Engineer will contribute to the engineering, deployment, automation, and sustainment of an Identity-as-a-Service (IDaaS) platform that underpins CESO's Zero-trust Architecture and cross-domain capabilities. The engineer will work hands-on with Ping Identity components, enterprise directory services, automated pipeline, and large-scale ICAM integration patterns across secure environments.

As the Systems Engineer (DevSecOps and ICAM), you will:
  • Engineer, deploy, integrate, secure, and maintain ForgeRock IdP/ICAM solutions in complex, mission-critical environments using DevSecOps practices, CI/CD pipelines, configuration-as-code, and automated provisioning.
  • Design and implement enterprise identity services, including SSO, SAML, OAuth2, OIDC, identity federation, Zero Trust integration, API-based connectors, and automated identity lifecycle workflows.
  • Collaborate with cybersecurity, development, and infrastructure teams to deliver secure ICAM architectures aligned with DoD, DISA, RMF, and enterprise security standards, supporting ATOs, audits, and compliance initiatives.
  • Perform system hardening, monitoring, performance tuning, troubleshooting, and root-cause analysis for Linux-based ForgeRock components while ensuring service availability and SLA compliance.
  • Develop engineering documentation, technical diagrams, SOPs, CONOPS, performance dashboards, and operational metrics to support continuous improvement and enterprise ICAM operations.
Minimum Qualifications and Experience:
  • Active DoD Top Secret clearance with SCI eligibility
  • Candidate must be willing to take and maintain a CI Poly and Special Program Access.
  • BS in Computer Science, IT, or related discipline and 8+ years of systems engineering experience (or equivalent experience in lieu of degree.)
  • IAT II Certification (e.g. Security+, CySA+, GICSP, GSEC, SSCP)
  • Hands-on experience with federation technologies (SAML, OAuth@, OpenID Connect) and Zero-Trust identity principles.
  • Experience engineering or administering the ForgeRock platform (AM, IDM, DS)
  • Strong understanding of ICAM concepts, identity lifecycle management, and enterprise access controls.
  • Experience with Windows and Linux systems administration, shell scripting, system tuning, and troubleshooting
  • Ability to work across highly technical and non-technical teams in a fast-paced environment.
  • Experience with any of the following preferred:
    • JISG Access Controls
    • AWS cloud engineering, IAM, and security services
    • Ansible playbooks and automated configuration management
    • CI/CD pipeline (GitLab, Jenkins, etc.)
    • API gateway, identity orchestration, or cross-domain service integrations patterns.

Our Benefits

GCyber is committed to the well-being and development of every employee. Our benefits are designed to support your personal and professional goals, from health and wellness programs to retirement savings and career development opportunities. Highlights include:
  • 26 Days of Paid Leave + Annual PTO Increase
  • An extra day of paid leave for every year of employment with GCyber
  • Paid Parental Leave
  • Additional Leave Allowances for Military Duty, Jury Duty, and Bereavement Leave
  • 401(k) Matching
  • 100% Company-funded Disability Insurance
  • 90% Company-Funded Health, Dental, and Vision Insurance, with contributions to insurance benefits for spouses, children, and family members
  • Training and Professional Development Plans
  • Commuter Benefits Plan
  • Parking and Transportation Allowance

Stay in Touch

For future job notifications please follow GCyber on LinkedIn. https://linkedin.com/company/gcyber

Similar Jobs

More Jobs at GCyber

More Aerospace & Defense Jobs

Find similar Systems Engineer (DevSecOps and ICAM) jobs: