Everforth ECS is seeking an Identity Infrastructure Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding.
We are looking for an experienced and technically sharp Identity Infrastructure Engineer to join our Identity Governance and Administration (IG&A) team. This team oversees the design, implementation, and ongoing support of the organization's directory and identity management solutions which is the foundational layer that underpins access, authentication, and security across the entire enterprise.
In this role, you will own the health, integrity, and security of the organization's identity infrastructure. That means administering Microsoft Active Directory and related directory services, managing PKI and certificate lifecycle operations, and ensuring that the identity backbone supporting thousands of users and systems is reliable, well-documented, and hardened against threats.
This is a hands-on senior-level role for someone who takes pride in keeping complex infrastructure running cleanly, communicates clearly with teams across the organization, and understands that identity is not just a technical function but a critical security control.
Salary Range: $120,000 - $130,000
General Description of Benefits
Active Directory & Directory Services
- Minimum of 5+ years of experience administering Microsoft Active Directory and Active Directory Federation Services
- Experience performing daily system monitoring, verifying the integrity and availability of hardware, server resources, systems, and key processes
- Proficiency in reviewing system and application logs and taking appropriate corrective action
- Ability to create and maintain thorough system documentation covering installation, configuration, and troubleshooting procedures
- Experience monitoring and analyzing architecture, communication, policies, and protocols from a cybersecurity perspective
PKI & Certificate Management
- Experience designing, implementing, and managing enterprise PKI environments, including certificate authority (CA) hierarchy management
- Proficiency in certificate lifecycle management — issuance, renewal, revocation, and auditing
- Understanding of cryptographic standards and their application within enterprise security policy
- Ability to troubleshoot certificate-related issues across large, complex environments
- Experience integrating PKI across Active Directory, web services, and endpoint devices
Identity & Access Management
- Experience with Microsoft Azure Active Directory and hybrid identity environments
- Familiarity with Single Sign-On (SSO), Multi-Factor Authentication (MFA), and enterprise identity governance platforms
- Ability to assist with security continuous monitoring, including risk assessments and system patching, within the identity and access management space
- Experience supporting large, cross-functional projects through collaboration with project and support teams
A minimum of 5+ years of experience administering enterprise Active Directory environments and supporting identity and access management solutions is required. Candidates who bring dedicated PKI experience alongside domain administration will be strongly preferred.
Skills Required
- Minimum of 5 years administering Microsoft Active Directory and Active Directory Federation Services
- Experience administering enterprise Active Directory environments and supporting identity and access management solutions
- Experience performing daily system monitoring, verifying system integrity and availability
- Proficiency in reviewing system and application logs and taking corrective action
- Ability to create and maintain thorough system documentation covering installation, configuration, and troubleshooting
- Experience designing, implementing, and managing enterprise PKI environments including CA hierarchy management
- Proficiency in certificate lifecycle management (issuance, renewal, revocation, auditing)
- Experience with Microsoft Azure Active Directory and hybrid identity environments, including SSO and MFA
- Experience integrating PKI across Active Directory, web services, and endpoint devices
ECS Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about ECS and has not been reviewed or approved by ECS.
-
Healthcare Strength — ECS advertises multiple national-network medical plan options with HSA eligibility alongside dental and vision coverage. Coverage generally begins quickly and is paired with company-paid short- and long-term disability, adding stability to the health package.
-
Retirement Support — A 401(k) with Safe Harbor and immediate vesting on employer contributions is emphasized, with an employer match available. Access to an employee stock purchase plan via the parent company provides an additional savings avenue.
-
Parental & Family Support — Paid parental leave up to 30 days, adoption assistance, and other family-oriented leaves are highlighted. Feedback suggests these offerings add meaningful value beyond base pay for many roles.
ECS Insights
What We Do
ECS, a segment of ASGN (NYSE: ASGN), delivers advanced solutions and services in cloud, cybersecurity, artificial intelligence (AI), machine learning (ML), application and IT modernization, and science and engineering. The company solves critical, complex challenges for customers across the U.S. public sector, defense, intelligence and commercial industries. ECS maintains partnerships with leading cloud, cybersecurity, and AI/ML providers and holds specialized certifications in their technologies. Headquartered in Fairfax, Virginia, ECS has more than 3,400 employees throughout the U.S. and has been recognized as a Top Workplace by The Washington Post for the last five years.









