Zero Trust-Identity Engineer

Boston Government Services, LLC (BGS) - Knoxville Metropolitan Area

Hiring: Zero Trust-Identity Engineer Company: Boston Government Services, LLC (BGS) Location: Knoxville Metropolitan Area Job Posted Time: 2026-09-11 13:24:44 Employment Type: Full-time / Remote Target Skills & Keywords : AWS, Azure, IAM, Program Management, Zero Trust About the job Required Skills: •The Zero Trust-Identity Engineer provides senior engineering support for client Zero Trust architecture, identity security, privileged access controls, cloud/on-premise access patterns, and security reference architecture documentation. •Support implementation of Zero Trust architectures across on-premise and cloud-based environments. •Develop and document Zero Trust reference architectures, security patterns, and implementation guidance. •Support privileged access architecture, standardized administrative access procedures, and monitored access-control models. •Assist with identity, access management, endpoint, network, application, and data security alignment to Zero Trust principles. •Support OMB M-22-09-aligned planning, control implementation, and architecture documentation. •Coordinate with security operations, engineering, cloud, infrastructure, and system stakeholders. •Support development of Baseline Zero Trust Security Architecture Reference Documents and Privileged Access SOPs. Qualifications: •Bachelor’s Degree or equivalent. •Senior experience in identity security, Zero Trust architecture, privileged access management, cybersecurity engineering, cloud security, or enterprise access controls. •Operational familiarity with IAM, PAM, conditional access, segmentation, logging, monitoring, secure remote access, and cloud/on-premise hybrid environments. •Knowledge of federal Zero Trust strategy, OMB M-22-09, NIST guidance, and security architecture documentation. •Demonstrated capacity to create architecture documentation and translate security requirements into implementable patterns. •Must be a U.S. citizen. •Must be eligible to obtain and maintain a security or clearance badge. •CISSP, CCSP, Azure Security, AWS Security, Identity and Access Administrator, PAM vendor certification, or equivalent. •Schedule is full-time, Monday – Friday 40-hour week, 4/10’s, or 9/80’s and may require on call or overnight shifts depending on contract needs. •This position may be fully onsite or hybrid/remote depending on the needs of the specific contract. Compensation: •$178,401 - $211,060 / year •Competitive benefits and rewards package Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!