Okta IAM / Identity Integration Engineer

2026-168751

CAtegory:

Information Technology

Clearance:

Public Trust

Location:

,

Telecommute:

Remote work allowed 100%
About Peraton

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.

About The Role

Peraton is seeking a highly experienced Okta IAM/Identity Integration Engineer to support the Department of Defense's next-generation enterprise Identity, Credential, and Access Management (ICAM) platform that is replacing DS Logon and providing secure authentication services for millions of Service Members, Veterans, Family Members, and Beneficiaries. The Alternative Multi-factor Authentication Support Services (AMASS) Program provides secure, scalable identity and access management services across the Department of Defense, enabling authentication, authorization, and digital identity interoperability for high‑visibility DoD systems.

 

In this role, you will design, integrate, and sustain identity services using the Okta Identity Engine (OIE), implement secure authentication flows using the Okta Embedded SDK, and ensure compliance with DoD cybersecurity policies, including RMF, STIG, and NIST guidelines. This position requires extensive hands‑on experience with modern identity protocols, mobile authentication, and enterprise IAM/ICAM solutions within Federal environments.

 

This is a 100% remote role.

 

Responsibilities

  • Configure, administer, and optimize Okta Identity Engine (OIE) to support DoD enterprise identity workflows.
  • Implement and support the Okta Embedded SDK to deliver secure and standardized authentication for partner applications.
  • Develop and enhance mobile identity integrations for native iOS and Android platforms supporting DoD mission applications.
  • Implement modern identity standards including OAuth 2.0, OpenID Connect (OIDC), and PKCE.
  • Configure phishing‑resistant authentication methods, including FIDO2/WebAuthn, in alignment with DoD Zero Trust objectives.
  • Design and maintain adaptive and risk-based authentication policies.
  • Integrate identity federation services (OIDC, SAML 2.0) including external Identity Provider (IdP) connections.
  • Manage authentication token lifecycles (JWT, ID, Access, Refresh tokens) across DoD application ecosystems.
  • Implement secure API authentication using OAuth scopes, claims, and structured authorization patterns.
  • Build identity automation using Okta Workflows and no‑code/low‑code orchestration tooling.
  • Integrate Okta with DoD authoritative data sources and enterprise-level IAM services.
  • Evaluate and document multiple Okta Mobile implementation alternatives and contribute to the Government Analysis of Alternatives (AoA).
  • Design headless authentication architectures supporting embedded mobile authentication.
  • Design reusable authentication services supporting multiple relying-party mobile applications.
  • Design secure device-bound credential registration and provisioning.
  • Support Configuration Control Board (CCB) reviews and technical architecture presentations.
  • Design alternative MFA pathways for users without CAC credentials.
  • Design proxy authentication capabilities supporting beneficiary relationships.
  • Support identity lifecycle processes, including provisioning, deprovisioning, profile management, and attribute governance.
  • Troubleshoot complex identity, federation, and mobile SDK integration issues across multiproduct DoD environments.
  • Utilize REST APIs, Postman, and related tooling for API development, testing, and validation.
  • Work with DevSecOps teams to integrate IAM capabilities into CI/CD pipelines supporting DoD modernization.
  • Ensure identity implementations comply with DoD RMF, DISA STIGs, NIST SP 800‑63, and other Federal cybersecurity mandates.
Qualifications

Required Qualifications

  • 5 years with BS/BA; 3 years with MS/MA; 0 years with PhD
  • Must be able to obtain and maintain a Public Trust
  • U.S. Citizenship required
  • Experience configuring and administering Okta Identity Engine (OIE).
  • Experience implementing Okta Embedded SDK and designing secure custom authentication flows.
  • Strong knowledge of OAuth 2.0, OIDC, PKCE, and related identity protocols.
  • Experience implementing FIDO2/WebAuthn for phishing‑resistant authentication.
  • Experience developing adaptive/risk-based authentication policies.
  • Strong background in identity federation and IdP integrations (OIDC, SAML 2.0).
  • Experience developing secure mobile authentication for native iOS and Android.
  • Deep understanding of authentication token lifecycle management.
  • Experience designing structured API authorization models using OAuth scopes and claims.
  • Experience with Okta Workflows, identity automation, and enterprise identity integrations.
  • Experience with identity lifecycle processes, provisioning, and directory synchronization.
  • Strong troubleshooting skills related to authentication, federation, and SDK integrations.
  • Experience working with REST APIs and tools such as Postman.
  • Familiarity with DevSecOps, CI/CD pipelines, and secure configuration management.
  • Experience supporting RMF, STIG, DoD cybersecurity compliance, and Federal ICAM requirements.

 

Preferred Qualifications

  • Okta Certified Administrator or Okta Certified Professional.
  • Hands-on experience with the Okta Identity Engine Embedded SDK for native app authentication.
  • Experience supporting large-scale Federal ICAM/CIAM implementations.
  • Knowledge of NIST SP 800‑63 Digital Identity Guidelines.
  • Experience with CAC/PIV, derived credentials, or Purebred mobile credential solutions.
  • Experience integrating identity proofing, identity verification, or credential issuance services.
  • Familiarity with DoD Zero Trust Architecture and enterprise IAM modernization initiatives.
Details

Target Salary Range: $66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at&nbsp;<a href="https://www.careers.peraton.com/benefits?" target="_blank" rel="noopener">https://www.careers.peraton.com/benefits.

Application Statements: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates.&nbsp;By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity.

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

VIEW
SAVED
JOBS