Senior Cybersecurity Engineer (IAM)

Posted Yesterday
Be an Early Applicant
Richmond, VA, USA
In-Office
120K-149K Annually
Senior level
Security • Cybersecurity
The Role
Lead implementation and operation of enterprise IAM security controls across Entra ID, Okta, and Active Directory in a hybrid, multi-tenant environment. Translate architecture into secure configurations, enforce policies for compliance (CMMC, NIST), tune identity controls (PAM, JIT, MFA), investigate identity incidents as a 2nd-level SOC escalation point, automate IAM operations, support audits, maintain documentation, and provide occasional off-hours and travel support.
Summary Generated by Built In

Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in science, security and sustainability. Our people apply undaunted curiosity, relentless ambition and boundless imagination to challenge convention and drive progress. Our commitments are underpinned by the belief that safety, collaboration and well-being are integral to success. Headquartered in Chantilly, Virginia, we have approximately 50,000 employees in more than 70 countries across all 7 continents.


Amentum is seeking a Senior Cybersecurity Engineer with deep Identity and Access Management (IAM) expertise to protect enterprise assets across a multi-tenant, hybrid (cloud/on-premises) environment. This is a fully remote, hands-on role spanning identity security, multi-cloud security, and endpoint protection. This position is US Remote telework and US Citizenship is required.

Responsibilities:

  • Implement and operate enterprise IAM security controls across a multi-tenant/multi-domain hybrid environment spanning Entra ID, Okta, and Active Directory — including PAM, JIT access, conditional access, and MFA policy enforcement (not day-to-day user/group provisioning or account administration)
  • Execute IAM designs defined by security architecture, translating architectural standards into working security configurations, policies, and integrations
  • Maintain and enforce IAM-related security policies, standards, and best practices in alignment with regulatory and compliance requirements (CMMC, NIST 800-171/800-172, and other applicable frameworks)
  • Configure and tune identity security controls — access policies, privileged access workflows, authentication requirements — protecting users, systems, applications, and data across Entra ID, Okta, and AD environments
  • Serve as 2nd-level SOC escalation point for critical identity-related security incidents
  • Investigate identity-related security anomalies using platform reporting, network traffic, log files, and automated alerts
  • Support audit and assessment activities by maintaining compliant configurations and evidence for IAM controls
  • Automate recurring IAM security operations tasks
  • Maintain system and process documentation, including compliance-relevant control documentation
  • Provide off-hours support as needed (infrequent)
  • Cover other assignments as needed

Knowledge, Skills, & Abilities (KSAs):

  • Working knowledge of Zero Trust, RBAC, and ABAC
  • Working knowledge of regulatory/compliance frameworks relevant to IAM (CMMC, NIST 800-171/800-172, or similar)
  • Understanding of network security fundamentals: boundary protection, segmentation, firewalls, endpoint security, threat hunting, data protection
  • Self-starter, strong written/verbal communication, comfortable with minimal supervision and shifting priorities
  • Ability to travel up to 10%

 

Qualifications:

  • Typically, 8 years of hands-on IAM security engineering experience with a Bachelor’s degree in Computer Science, Information Systems or related field plus; 4 with Master's.  IAM security engineering experiences includes implementing access controls, privileged access management, and authentication policy, rather than general user/account administration.
  • Hands-on experience securing and administering Entra ID, Okta, and Active Directory identity infrastructure in a hybrid environment
  • Solid experience in Privileged Access Management (PAM), Self-Service Password Management, and Just-In-Time (JIT) access
  • Current CISSP, CISM, or equivalent certification
  • Solid MFA and access-protection implementation experience
  • Solid Microsoft Azure/M365 experience
  • U.S. Citizen (required)

Preferred qualifications, KSAs, and experience:

  • Experience implementing an IAM governance platform such as Saviynt, SailPoint, or similar
  • Experience supporting CMMC assessments or audits
  • Familiarity with GDPR, SOX, ISO 27001
  • Entra/Azure GCC High exposure

       

Compensation Details:

$120k-$149k

       

The compensation range or hourly rate listed for this position is provided as a good-faith estimate of what the company intends to offer for this role at the time this posting was issued. Actual compensation may vary based on factors such as job responsibilities, education, experience, skills, internal equity, market data, applicable collective bargaining agreements, and relevant laws.


Benefits Overview:

Our health and welfare benefits are designed to support you and your priorities. Offerings include:

  • Health, dental, and vision insurance

  • Paid time off and holidays

  • Retirement benefits (including 401(k) matching)

  • Educational reimbursement

  • Parental leave

  • Employee stock purchase plan

  • Tax-saving options

  • Disability and life insurance

  • Pet insurance


Note: Benefits may vary based on employment type, location, and applicable agreements. Positions governed by a Collective Bargaining Agreement (CBA), the McNamara-O'Hara Service Contract Act (SCA), or other employment contracts may include different provisions/benefits.

       

Original Posting:

08/03/2026 - Until Filled

Amentum anticipates this job requisition will remain open for at least three days, with a closing date no earlier than three days after the original posting. This timeline may change based on business needs.

       

Amentum is proud to be an Equal Opportunity Employer. Our hiring practices provide equal opportunity for employment without regard to race, sex, sexual orientation, pregnancy (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, ancestry, United States military or veteran status, color, religion, creed,  marital or domestic partner status, medical condition, genetic information, national origin, citizenship status, low-income status, or mental or physical disability so long as the essential functions of the job can be performed with or without reasonable accommodation, or any other protected category under federal, state, or local law. Learn more about your rights under Federal laws and supplemental language at Labor Laws Posters.

Skills Required

  • Approximately 8 years hands-on IAM security engineering experience (or 4 years with a Master’s)
  • Bachelor's degree in Computer Science, Information Systems, or related field (Master's can substitute for experience)
  • Hands-on experience securing and administering Entra ID, Okta, and Active Directory in hybrid environments
  • Experience with Privileged Access Management (PAM), Self-Service Password Management, and Just-In-Time (JIT) access
  • Experience implementing and enforcing MFA and conditional access policies
  • Solid Microsoft Azure and Microsoft 365 (M365) experience
  • Current CISSP, CISM, or equivalent certification
  • Working knowledge of Zero Trust, RBAC, and ABAC
  • Understanding of regulatory/compliance frameworks relevant to IAM (CMMC, NIST 800-171/800-172)
  • U.S. Citizenship (required)
  • Ability to travel up to 10% and provide infrequent off-hours support
  • Serve as 2nd-level SOC escalation point and investigate identity-related security incidents
  • Preferred: Experience implementing an IAM governance platform such as Saviynt or SailPoint
  • Preferred: Experience supporting CMMC assessments or audits
  • Preferred: Familiarity with GDPR, SOX, ISO 27001
  • Preferred: Entra/Azure GCC High exposure

Amentum Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Amentum and has not been reviewed or approved by Amentum.

  • Healthcare Strength Healthcare offerings are described as comprehensive, with medical, dental, and vision plans and multiple PPO/HSA options. Mental health support via an employee assistance program and other wellness resources is also included in the benefits mix.
  • Retirement Support Retirement support is positioned as a meaningful part of total rewards through a 401(k) plan with employer matching. Profit-sharing contributions and immediate or near-term vesting in some cases further strengthen the retirement value proposition.
  • Leave & Time Off Breadth Time-off benefits are presented as solid for the sector, including tiered PTO accrual by tenure and a set of paid holidays. Role-dependent flexible or remote work options and leave programs add to perceived work-life support.

Amentum Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chantilly, VA
18,261 Employees

What We Do

Amentum is a premier global technical and engineering services partner supporting critical programs of national significance across defense, security, intelligence, energy, and environment. We draw from a century-old heritage of operational excellence, mission focus, and successful execution underpinned by a strong culture of safety and ethics. Headquartered in Germantown, Md., we employ more than 20,000 people in 48 states and 28 foreign countries and territories. Visit us at amentum.com to explore how we deliver excellence for our customers’ most vital missions.

Similar Jobs

ServiceNow Logo ServiceNow

Consultant

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Vienna, VA, USA
29000 Employees
169K-200K Annually

Samsara Logo Samsara

Integration Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
4000 Employees
106K-160K Annually

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Store Manager

eCommerce • Fashion • Retail • Sales • Wearables • Design
Remote or Hybrid
14 Locations
16000 Employees
62K-94K Annually

DraftKings Logo DraftKings

Reliability Engineer

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
United States
6400 Employees
112K-140K Annually

Similar Companies Hiring

SEON Thumbnail
Artificial Intelligence • Cybersecurity
Budapest, Budapest
415 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account