Okta ICAM Engineer

Location
Remote (United States)
Workplace
Remote ok

About this role

About the role

Concept Plus is seeking an Okta ICAM Engineer to support client ICAM modernization initiatives. This role focuses on integrating and optimizing identity solutions within environments that utilize client credentials, federation services, and Zero Trust architecture aligned with federal standards, including NIST SP 800 63, OMB ICAM guidelines, and client identity directives.


What you'll do

  • Design, implement, and maintain ICAM solutions using Okta Identity Cloud in support of federal identity requirements, including Workforce Identity, SSO, MFA, and adaptive authentication.
  • Integrate Okta with client credential systems, including certificate-based authentication, PKI validation, and federation with government identity providers.
  • Configure and support identity federation using SAML, OIDC, and OAuth across government applications, platforms, and on-prem enterprise systems.
  • Develop and manage identity lifecycle processes aligned with federal access control policies, RBAC/ABAC models, and authoritative identity sources.
  • Implement Zero Trust identity pillars, including strong authentication, device trust, continuous validation, and least-privilege access principles.
  • Build automation and identity workflows using Okta Workflows, APIs, and scripting tools to support compliance and operational efficiency.
  • Troubleshoot identity-related issues across client authentication flows, PKI chains, SSO integrations, and SCIM provisioning.
  • Ensure compliance with NIST 800 63, FICAM architecture standards, DoW IdAM policies, and FedRAMP security controls where required.
  • Collaborate closely with cybersecurity, cloud engineering, and system owners to support secure identity integration for mission systems.
  • Contribute to ICAM modernization roadmaps, ATO support documentation, and continuous improvements in identity posture..


Required Qualifications

  • US Citizen
  • 5–8+ years of experience in ICAM/IAM engineering within federal or government environments.
  • 3–5+ years of hands-on experience with Okta Identity Cloud (administration, integration, federation).
  • Practical experience supporting PIV/CAC-based authentication, PKI trust chains, certificate mapping, and federation with federal IdPs.
  • Strong understanding of authentication protocols (SAML, OIDC, OAuth), SCIM provisioning, and directory services (Active Directory, Azure AD).
  • Experience with identity policy, RBAC/ABAC, account lifecycle management, and enterprise identity governance.
  • Hands-on experience with automation (PowerShell, Python, or Bash).
  • Familiarity with Zero Trust identity architecture, especially in federal or DoW environments.
  • Excellent documentation, communication, and collaboration skills.


Preferred Qualifications

  • Experience supporting ICAM modernization initiatives in federal agencies or DoW environments.
  • Okta Professional or Consultant Certification.
  • Familiarity with NIST SP 800 63, NIST CSF, OMB ICAM guidance, DoW Zero Trust Strategy, and FedRAMP controls.
  • Experience integrating identity services with Azure Government, or on-prem mission systems.


Concept Plus is an Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.


Tired of cold applications?

Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.

Know someone who'd be great for this?