Identity Infrastructure Engineer

Back to Jobs
ECS Federal logo

Identity Infrastructure Engineer

ECS Federal

120,000–130,000 / Year

Location

2nd St SW D St SW-PF

Experience

Senior

Posted

Jul 30, 2026

Apply by

August 29, 2026

Applicants

0

Early applicantEasy applyFull-timeHybrid

Job Description

Everforth ECS is seeking an Identity Infrastructure Engineer to work in our Washington, DC office / remote. The role is contingent upon additional funding. We are looking for an experienced and technically sharp Identity Infrastructure Engineer to join our Identity Governance and Administration (IG&A) team. This team oversees the design, implementation, and ongoing support of the organization's directory and identity management solutions which is the foundational layer that underpins access, authentication, and security across the entire enterprise. In this role, you will own the health, integrity, and security of the organization's identity infrastructure. That means administering Microsoft Active Directory and related directory services, managing PKI and certificate lifecycle operations, and ensuring that the identity backbone supporting thousands of users and systems is reliable, well-documented, and hardened against threats. This is a hands-on senior-level role for someone who takes pride in keeping complex infrastructure running cleanly, communicates clearly with teams across the organization, and understands that identity is not just a technical function but a critical security control. Salary Range: $120,000 - $130,000 [General Description of Benefits](https://ecstech.com/careers/benefits) Active Directory & Directory Services - Minimum of 5+ years of experience administering Microsoft Active Directory and Active Directory Federation Services - Experience performing daily system monitoring, verifying the integrity and availability of hardware, server resources, systems, and key processes - Proficiency in reviewing system and application logs and taking appropriate corrective action - Ability to create and maintain thorough system documentation covering installation, configuration, and troubleshooting procedures - Experience monitoring and analyzing architecture, communication, policies, and protocols from a cybersecurity perspective PKI & Certificate Management - Experience designing, implementing, and managing enterprise PKI environments, including certificate authority (CA) hierarchy management - Proficiency in certificate lifecycle management — issuance, renewal, revocation, and auditing - Understanding of cryptographic standards and their application within enterprise security policy - Ability to troubleshoot certificate-related issues across large, complex environments - Experience integrating PKI across Active Directory, web services, and endpoint devices Identity & Access Management - Experience with Microsoft Azure Active Directory and hybrid identity environments - Familiarity with Single Sign-On (SSO), Multi-Factor Authentication (MFA), and enterprise identity governance platforms - Ability to assist with security continuous monitoring, including risk assessments and system patching, within the identity and access management space - Experience supporting large, cross-functional projects through collaboration with project and support teams A minimum of 5+ years of experience administering enterprise Active Directory environments and supporting identity and access management solutions is required. Candidates who bring dedicated PKI experience alongside domain administration will be strongly preferred.

Key Responsibilities

  • Administer Microsoft Active Directory and Active Directory Federation Services
  • Manage enterprise PKI environments and certificate lifecycle operations
  • Ensure health, integrity, and security of the organization's identity infrastructure
  • Monitor system logs and take corrective action for security and availability issues
  • Create and maintain system documentation for installation, configuration, and troubleshooting
  • Integrate PKI across Active Directory, web services, and endpoint devices
  • Support security continuous monitoring, risk assessments, and system patching

Skills Required

Microsoft Active DirectoryActive Directory Federation ServicesPKICertificate ManagementMicrosoft Azure Active DirectorySingle Sign-OnMulti-Factor AuthenticationSystem MonitoringLog AnalysisCommunicationProblem solvingAttention to detailCollaborationPKI experience

Benefits

  • Health insurance
  • 401(k) match
  • Unlimited PTO
  • Equity
  • Remote work

App exclusive · Free

Smart Job AI Coach

Your personal interview coach on every job — readiness tips, profile improvements, and role-specific prep. Available only in the Pulse Job app.

Interview readiness

See how prepared you are and what to improve for each role.

Personalized tips

Actionable suggestions based on your profile and the job.

After you apply

Keep coaching momentum from job detail through application success.

Get Smart Job AI Coach in the appFree on iOS and Android