What are the responsibilities and job description for the Identity & Access Management (IAM) Engineer position at Base2 Solutions?
Base-2 Solutions is seeking an Identity and Access Management (IAM) Engineer to support the National Media Exploitation Center (NMEC). The System Administrator will be responsible for maintaining existing enterprise identity management solutions, troubleshooting incidents, and assisting with transitioning new capabilities to production. My duties will include validating the health and status, operating, and maintaining identity management systems such as Keycloak and OpenID Connect (OIDC) technologies. This individual will work in a team environment supporting a large enterprise spanning multiple enclaves and sites.
This is a 100% on-site position. All work must be performed at the customer site in Bethesda at the Intelligence Community Campus.
Primary Responsibilities
- Design and implement IAM solutions using Keycloak for secure authentication and authorization based on OIDC, OAuth2, and SAML protocols.
- Integrate Keycloak with internal and external applications, APIs, and third-party services to enable secure access and identity federation.
- Manage and maintain the Keycloak infrastructure, including clustering, performance tuning, and monitoring.
- Implement custom authentication flows, policies, and user federation strategies using Keycloak.
- Collaborate with DevOps and infrastructure teams to ensure the scalability, security, and high availability of Keycloak deployments.
- Automate the management of identity and access workflows, including user provisioning, de-provisioning, and role-based access control (RBAC).
- Provide technical expertise for OIDC / OAuth2 standards, keeping up with industry trends and ensuring compliance with evolving security requirements.
- Troubleshoot issues related to authentication, authorization, and access control, ensuring a seamless user experience.
- Document system configurations, processes, and troubleshooting procedures for internal teams and stakeholders.
- Conduct regular security audits and recommend improvements for IAM practices and systems.
- Participate in and contribute to cross-functional teams working on broader IAM, DevSecOps, and security initiatives.
- Provide support for implementing, troubleshooting and maintaining of identity management systems.
- Rapidly distinguish isolated user problems from enterprise-wide application / system problems and provide recommended solutions.
- Provide follow-up reports (technical findings, feedback, resolution steps taken) for root cause analysis, engineering technical assessment and process improvement initiatives.
- Update operations and maintenance documentation for 24 / 7 / 365 enterprise watch personnel.
- Work with Operations, Engineering, and vendor support to develop solutions to complex technical issues.
- Work independently as part of a virtual team
- Provide mentorship and training for junior team members.
Basic Qualifications
Education
Clearance
Preferred Qualifications