About the Role:

We are seeking a technically focused and detail-oriented Authentication Engineer to join our client's Cybersecurity Operations team. This role is dedicated to the deployment, management, and continuous improvement of enterprise authentication systems, with a particular emphasis on Multi-Factor Authentication (MFA) and modern identity protocols. If you bring deep technical knowledge of authentication systems, experience integrating them across complex enterprise environments, and the communication skills to support both technical teams and end users, we want to hear from you.

Role Description: You will work at the intersection of identity security and user experience, ensuring that authentication systems are correctly configured, performing reliably at scale, and aligned with the organization's security policies. This is a proactive role where you will identify gaps in authentication coverage, evaluate emerging authentication technologies, and work across teams to drive adoption and strengthen the organization's overall identity security posture.

Day-to-day responsibilities include:

• Deploying, configuring, and administering enterprise MFA platforms and related authentication services

• Integrating MFA and Single Sign-On (SSO) capabilities with Active Directory, Entra ID, and enterprise applications

• Troubleshooting authentication failures across complex, multi-system environments and coordinating resolution with support teams

• Developing, documenting, and enforcing authentication policies aligned with organizational security standards and zero-trust principles

• Supporting risk assessments and security continuous monitoring efforts related to identity and authentication

• Partnering with end users, help desk, and project teams to drive MFA adoption at scale

Required Qualifications & Education:

8-10 years of overall IT experience with a minimum of 3–5 years of experience in identity and access management, with direct hands-on experience deploying and managing enterprise authentication and MFA solutions. Candidates with experience supporting large-scale MFA deployments or authentication migrations will be highly preferred.

MFA & Authentication Systems

• Hands-on experience deploying and managing enterprise MFA platforms (e.g., Okta, Microsoft Authenticator, Duo, RSA SecurID, or equivalent)

• Strong understanding of modern identity and authentication protocols including SAML, OAuth 2.0, OpenID Connect, and RADIUS

• Experience integrating MFA solutions with Active Directory, Entra ID (formerly Azure Active Directory), and Single Sign-On (SSO) platforms

• Ability to troubleshoot authentication failures across complex, multi-system enterprise environments

• Experience developing and enforcing MFA policies aligned with organizational security standards and zero-trust principles

Identity & Access Management

• Working knowledge of enterprise identity and access management (IAM) frameworks and platforms

• Familiarity with Microsoft Active Directory, Entra ID (formerly Azure Active Directory), and related Windows-based systems

• Understanding of privileged access management (PAM) concepts and how authentication controls integrate within that model

• Ability to support risk assessments and security continuous monitoring efforts related to identity and authentication

Collaboration & Documentation

• Ability to support large, cross-functional projects and communicate clearly with both technical and non-technical stakeholders

• Experience creating and maintaining clear documentation for authentication configurations, procedures, and troubleshooting guides

• Comfortable working with end users and support teams to resolve authentication issues and support MFA adoption at scale

Education

• Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field preferred

• Relevant certifications such as Microsoft Identity and Access Administrator (SC-300), Security+, CISSP, or equivalent are strongly preferred

Desired Qualifications:

• Scripting and automation experience in PowerShell, Bash, Perl, or VBScript to support authentication administration and reporting

• Experience with cloud-based identity platforms such as Microsoft Azure or AWS IAM

• Familiarity with WebAuthn / FIDO2 and passwordless authentication technologies

• Microsoft License Management experience

• Knowledge of zero-trust security principles and how modern authentication fits within that framework

Clearance and Location Requirements:

• Candidates must be eligible to obtain and maintain a Public Trust security clearance.

• This is a hybrid position with on-site support requirements at the client location in the Washington, D.C. and Manassas, VA; specific on-site and telework expectations will be confirmed at the time of hire.

Washington, DC

Hybrid

Apply now

Need help? Lets talk.

We're ready to discuss your needs or dive in on your cyber defense journey. Let us know how we can help.

Contact us