
Controls Engineer- Building Automation Jobot
- $90,000–$120,000 Per Year
| Location | Norfolk, VA |
| Salary | $95,000–$100,000 Per Year |
Zachary Piper Solutions is seeking an IDAM Engineer to support a long-term DOD program focused on Navy enterprise identity management, infrastructure automation, cybersecurity, and platform reliability. This position is 100% onsite in Norfolk, VA; San Diego, CA; or Honolulu, HI. The IDAM Engineer will support enterprise identity and Windows infrastructure with a focus on Active Directory, identity management, authentication, automation, system reliability, and security compliance across mission-critical Navy infrastructure.
Responsibilities of the IDAM Engineer include: Administer, configure, maintain, and troubleshoot enterprise Active Directory, Group Policy, DNS, DHCP, and Windows Server environments
Support and maintain identity management technologies including Microsoft Identity Manager (MIM), ADFS, Delinea, and PKI
Perform system patching, STIG remediation, upgrades, troubleshooting, and lifecycle management
Develop and maintain PowerShell, Python, Ansible, and other automation to improve identity and infrastructure operations
Support CI/CD pipelines, infrastructure-as-code, and automated deployment workflows
Monitor system performance, reliability, and availability using Splunk and other monitoring tools
Develop and execute automated performance, load, resilience, and failure testing
Identify and resolve system issues, performance bottlenecks, and reliability concerns
Support cloud and containerized infrastructure using technologies such as Azure, AWS, Kubernetes/OpenShift, and Docker
Collaborate with SRE, DevOps, systems, network, cybersecurity, application, vendor, and customer teams
Support infrastructure modernization, upgrades, automation initiatives, and technical projects
Maintain technical documentation, system configurations, automation scripts, and operational procedures
Qualifications of the IDAM Engineer include: 2+ years of experience supporting identity management, Active Directory, Windows Server, systems engineering, or enterprise IT environments
Active Secret clearance
Current Security+ or equivalent DoD IAT Level II certification
Hands-on experience with Active Directory, Group Policy, DNS, and DHCP
Experience with Windows Server administration and troubleshooting
Experience with scripting or automation using PowerShell, Python, Ansible, or similar tools
Knowledge of SRE, DevOps, CI/CD, or infrastructure automation concepts
Strong troubleshooting, analytical, communication, and collaboration skills
Preferred Qualifications of the IDAM Engineer Experience with Microsoft Identity Manager (MIM) / Forefront Identity Manager (FIM)
Experience with ADFS, Delinea, PKI, or identity federation
Experience with Jenkins, GitLab, Bitbucket, Jira, or Azure DevOps
Experience with Terraform, Ansible, CloudFormation, Chef, Puppet, or other IaC tools
Experience with Azure, AWS, Kubernetes/OpenShift, or Docker
Experience with Splunk or enterprise monitoring platforms
Experience with DISA STIGs, IAVA, RMF, or DoD cybersecurity compliance
Experience supporting large-scale Navy, DoD, NMCI, or NGEN environments
Experience with SQL Server
ITIL, Agile, Scrum, or SAFe experience/certification
Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field
Compensation for the IDAM Engineer includes: Salary: $95,000-$100,000 depending on experience
Benefits: Medical, Dental, Vision, 401k Plan, Holidays, PTO, sick leave as required by law
Keywords: IDAM Engineer, Identity Engineer, Identity Management Engineer, IAM Engineer, Identity and Access Management, Identity Access Management, Identity Services Engineer, Active Directory Engineer, Active Directory Administrator, Microsoft Identity Engineer, Windows Systems Engineer, Systems Engineer, Infrastructure Engineer, Site Reliability Engineer, SRE, DevOps Engineer, Active Directory, AD, Group Policy, GPO, Microsoft Identity Manager, MIM, Forefront Identity Manager, FIM, ADFS, Active Directory Federation Services, Delinea, PKI, Public Key Infrastructure, identity federation, authentication, authorization, DNS, DHCP, WINS, Windows Server, Windows Server 2016, Windows Server 2019, Windows Server 2022, Windows Server 2025, PowerShell, Python, Ansible, automation, infrastructure automation, Infrastructure as Code, IaC, Terraform, CloudFormation, Jenkins, GitLab, CI/CD, DevSecOps, SRE, Splunk, Azure, AWS, Kubernetes, OpenShift, Docker, cloud infrastructure, application integration, system reliability, performance testing, load testing, stress testing, resilience testing, monitoring, troubleshooting, production support, patching, STIG, DISA STIG, IAVA, RMF, Risk Management Framework, security hardening, cybersecurity compliance, DoD, DOD, Department of Defense, Navy, Navy Marine Corps Intranet, NMCI, NGEN, Secret clearance, active Secret, Security+, CompTIA Security+, DoD 8570, DoD 8140, Norfolk, Virginia, VA, San Diego, California, CA, Honolulu, Hawaii, HI, Pearl Harbor
#LI-SW1#LI-ONSITE


