Zero Trust Security Engineer - Okta

ASRC FederalQuantico, VA
$130,000 - $159,890Hybrid

About The Position

ASRC Federal is actively hiring an Intermediate Okta Engineer in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Quantico, VA. We are seeking a skilled and highly motivated Identity and Access Management (IAM) professional to join our dynamic cybersecurity team. The ideal candidate will be responsible for the administration, configuration, maintenance, and integration of our Okta Identity Cloud platform, ensuring secure, seamless, and compliant access to DCSA applications and resources. This role will focus on leveraging Okta's core features, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Lifecycle Management (LCM), Universal Directory, and Okta Workflows—to support our Zero Trust architecture and secure our hybrid workforce.

Requirements

  • Minimum of 5 years of hands-on experience administering, configuring, and supporting the Okta Identity Cloud platform in an enterprise or federal environment.
  • IAM Expertise: Strong understanding of identity-centric security, directory services (Active Directory, LDAP), and modern federation protocols (SAML 2.0, OIDC, OAuth 2.0).
  • Active Top-Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI
  • Must meet 8570 certification requirements at the time of hire. IAT Level II (e.g., Security+ CE, CCNA Security, CySA+, GICSP, GSEC, SCCP or higher tiered 8570 certification
  • Bachelor’s Degree, in Cybersecurity, Information Systems Management or a related field or an equivalent combination of military service and/or at least five (5) years of significant, relevant work experience

Nice To Haves

  • Official Okta certifications are highly desired: Okta Certified Professional, Okta Certified Administrator, Okta Certified Consultant or Okta Certified Developer (plus)

Responsibilities

  • Manage, configure, and maintain the daily operations of the Okta Identity Cloud platform, including Universal Directory, Single Sign-On (SSO), and Multi-Factor Authentication (MFA).
  • Develop, implement, and enforce granular sign-on policies, adaptive MFA, and application-level access controls.
  • Design, implement, and troubleshoot automated provisioning, deprovisioning, and user lifecycle workflows (Lifecycle Management) across various target applications.
  • Utilize and configure Okta Workflows or scripting (e.g., PowerShell, Python) to automate manual IAM tasks and onboarding processes.
  • Connect and integrate Okta with authoritative source directories (Active Directory, LDAP, HR systems) and cloud environments (AWS, Azure AD).
  • Onboard and integrate SaaS, web-based, and legacy on-premise applications using SAML, OIDC, WS-Fed, and SCIM protocols.
  • Collaborate with cybersecurity teams to integrate Okta system logs with Security Information and Event Management (SIEM) tools (e.g., Splunk) for security monitoring and audit reporting.
  • Support the implementation of Zero Trust architecture by aligning Okta authentication policies with endpoint posture assessment tools (e.g., Palo Alto GlobalProtect, crowd-sourced agents).
  • Serve as the Tier-2/Tier-3 Subject Matter Expert (SME) for Okta-related issues, troubleshooting authentication failures, provisioning errors, federation mismatches, and user access issues.
  • Create and update high-quality engineering runbooks, standard operating procedures (SOPs), architecture diagrams, and user guides.
  • Train and mentor junior support technicians and help desk staff on basic Okta troubleshooting and identity lifecycle actions.

Benefits

  • health care
  • dental
  • vision
  • life insurance
  • 401(k)
  • education assistance
  • paid time off including PTO, holidays, and any other paid leave required by law
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service