Logo
Booz Allen Hamilton

PING Engineer

Booz Allen Hamilton, Colorado Springs, Colorado, United States, 80509

Save Job

The Opportunity You know that the user is the last frontier for cybersecurity.

It’s where the perimeter is drawn, and securing identities is pivotal in the fight against cybercriminals.

As an Identity and Access Management (IAM) specialist, you have the skills and experience to keep hackers from taking data and breaking processes.

We’re looking for someone like you to help our clients meet their missions without disruption.

As an IAM engineer at Booz Allen, you’ll play a critical role in the world of IAM and zero trust.

In this role, you’ll support large‑scale IAM projects for our clients, interface with stakeholders and engineering teams, analyze the identity lifecycle, and design, deploy and support systems that verify appropriate user privileges and manage credentials for accessing our clients’ most valuable assets.

From single sign‑on to privileged access systems, you’ll have the chance to implement enterprise‑class solutions and stop adversaries in their tracks.

You Have

5+ years of experience with Ping Federate, Okta, Entra ID, or ADFS

Experience with SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC)

Experience with Identity federation and Single Sign‑On (SSO)

Experience with access control models such as RBAC and ABAC

Experience integrating IdPs with directory services such as Active Directory (AD) and LDAP, including synchronization and authentication workflows

Knowledge of Zero Trust architectures and implementation of password‑less authentication or multifactor authentication (MFA) within the IdP environment

Ability to resolve complex identity and federation issues, including token validation errors, assertion mismatches, and connectivity problems

Ability to design and operate IdP solutions across on‑premises, hybrid, and cloud infrastructures, including AWS, Azure, or Google Cloud

Active TS/SCI clearance; willingness to take a polygraph exam

HS diploma or GED

Nice If You Have

Experience implementing System for Cross‑domain Identity Management (SCIM) protocols for automated user provisioning and lifecycle management between identity providers and applications

Experience with advanced platform features such as Okta Workflows, Ping Identity Suite advanced policy scripting, adaptive authentication, and the development of custom login pages

Experience with scripting languages such as Python, PowerShell, or Bash to automate IdP configuration, monitoring, and remediation tasks

Knowledge of cloud‑native IAM services, including Azure Active Directory, AWS IAM, or Google Cloud Identity

TS/SCI clearance with a polygraph

Clearance Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.

Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well‑being.

Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work‑life programs, and dependent care.

The projected compensation range for this position is $86,800.00 to $198,000.00 (annualized USD).

This posting will close within 90 days from the posting date.

Identity Statement As part of the application process, you are expected to be on camera during interviews and assessments.

We reserve the right to take your picture to verify your identity and prevent fraud.

Work Model Our people‑first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.

If this position is listed as remote or hybrid, you’ll periodically work from a Booz Allen or client site facility.

If this position is listed as onsite, you’ll work with colleagues and clients in person, as needed for the specific role.

Commitment to Non‑Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.

Job Details

Seniority level: Not Applicable

Employment type: Full‑time

Job function: Engineering and Information Technology

Industries: IT Services and IT Consulting

#J-18808-Ljbffr