About The Position

Empower AI is seeking an Identity and Directory Management Services (IDMS) Engineer to support the design, administration, management, execution & maintenance of GSA’s Identity & Directory Management Services (IDMS) and Identity, Credential, and Access Management (ICAM) solutions. These services include directory services management, ICAM, privileged account management, Single Sign-On (SSO), Active Directory (AD) Domain Name System (DNS) services, Public Key Infrastructure (PKI), Multi-Factor Authentication (MFA), auditing and log management, and appliance management. GSA IT currently uses Microsoft (MS) AD as the authoritative account management system. This role is part of a task order supporting the General Services Administration (GSA) Office of Digital Infrastructure Technologies (IDT) to drive digital transformation and deliver continuous improvement. The team utilizes advanced technologies and best practices to transform GSA’s IT capabilities and shift offerings to a more flexible service delivery model, supporting the agency’s shift to a fully digital experience and adoption of emerging technologies like intelligent automation, AI, and machine learning.

Requirements

  • Public Trust Clearance by start date.
  • ITILv4 Foundation Certification, may be obtained within 120 days after hire.
  • Previous experience supporting IDMS systems in a large enterprise environment.
  • Previous experience supporting PKI.
  • Previous experience supporting Microsoft Active Directory.
  • Proven ability to work independently in a full and/or partial remote environment with limited supervision and may supervise/lead others.
  • Possess the ability to communicate in both oral and written forms, demonstrating an ability to communicate effectively with all levels of staff as well as clients.
  • Maintain standard working hours per the DIGIT contract and to be available for meetings, and other collaborative efforts during working hours.
  • Demonstrated ability to apply comprehensive knowledge across key tasks and high impact assignments with the ability to use practical experience and training to determine how to accomplish tasks.
  • 4 - 9 years of experience and bachelor's degree
  • Experience as a remote worker demonstrating time management and self discipline with cultural change management and Agile mindset.

Nice To Haves

  • Strong knowledge of the different identity and access management (IAM) concepts, technologies and authentication protocols.
  • Public Key Infrastructure (PKI): Active Directory Certificate Services (AD CS), HID Credential Management System (CMS), HID ActivClient, Federal PIV/CAC, Safenet Hardware Security Module (HSM’s).
  • Identity Management services operations including but not limited to: Forefront Identity Manager/Microsoft Identity Manager, Okta, Fastpass, WebauthN, MFA Authentication, SAML 2.0, OIDC, Regex Expression Language, Okta Workflows, Postman, API Generation/Configuration
  • Active Directory including but not limited to: Microsoft Active Directory, NetIQ DRA, NetIQ Group Policy Administrator (GPA), Active Directory Lightweight Directory Services, Vulnerability Mitigation
  • Proficiency in the Google Suite (Gmail, Calendar, Chat, Meet, Docs, Slides, Sheets), Slack, and ServiceNow.
  • Must be willing to work a variety of shifts, including holidays as scheduled.

Responsibilities

  • Active Directory including but not limited to: Microsoft Active Directory, Azure Active Directory, NetIQ DRA, NetIQ Group Policy Administrator (GPA), Active Directory Lightweight Directory Services, Vulnerability Mitigation
  • Identity Management services operations including but not limited to: Forefront Identity Manager/Microsoft Identity Manager, Okta, Fastpass, WebauthN, MFA Authentication, SAML 2.0, OIDC, Regex Expression Language, Okta Workflows, Postman, API Generation/Configuration
  • Hands-on experience with cloud computing services (O365/Microsoft Azure/AWS).
  • Experience with network architecture.
  • Powershell, java and .NET scripting.
  • An understanding of Zero Trust concepts.
  • Strong experience with Directories, SSO, Federation, Delegated administration, API gateways, SOA services.
  • Strong communication skills with customers over phone, email, or ticketing system.
  • Must be willing to work a variety of shifts, including holidays as scheduled.
  • Providing on-call rotation support on a routine basis.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service