SITEC - Red Hat IDM / Identity Management Systems Engineer - MacDill AFB
Peraton · MacDill AFB, FL, US
About this role
## SITEC - Red Hat IDM / Identity Management Systems Engineer (MacDill AFB) ### Responsibilities - Support the Special Operations Command Information Technology Enterprise Contract (SITEC) 3 EOM at **MacDill AFB (Florida)**, providing Operations & Maintenance (O&M) services for **24x7x365** mission operations. - Provide **advanced tier-three engineering and operational support** aligned with the SIE OPORD. - Perform analytical troubleshooting, systems architecture, and system design across enterprise/government technology environments. - Participate in **architecture working groups**, **design reviews**, and **system testing**; develop and execute technical roadmaps. - Apply systems engineering practices across the full lifecycle (requirements, documentation, and quality assurance) with strong project management. ### Technical Proficiency - **Enterprise Linux** (e.g., **RHEL 8/9**) and associated open-source enterprise directory platforms. - **Red Hat IdM / FreeIPA**: architect, deploy, secure, and maintain IdM/FreeIPA at enterprise scale (supporting **80,000+ users**). - Identity management technologies: **LDAP (389 Directory Server)**, **Kerberos**, **integrated DNS**, **Certificate System / PKI**, and **SSSD**. - **Enterprise identity integration & trust**: configure and maintain **Cross-Forest Trusts** between Linux identity domains and **Microsoft Active Directory (AD DS)** for cross-platform Kerberos, identity mapping, and centralized authorization. ### Key Responsibilities (Detailed) - **Infrastructure Integration**: integrate Red Hat IdM/Linux directory infrastructure with corporate networks, perimeter security appliances, messaging platforms, remote access (VPN/PAM), and virtualized/cloud infrastructure. - **Security & Compliance Governance**: define/enforce baseline configuration standards and best practices for Linux identity infrastructure; ensure compliance with **DoD STIGs**, **CIS Benchmarks**, and **SELinux enforcing** policies. - **Lifecycle Management**: manage mission-critical identity services from design/architecture review through deployment, replication tuning, backup/DR, and ongoing maintenance. - **Infrastructure as Code & Automation**: build and maintain automation workflows using **Ansible**, **Bash**, and **Python** for IdM deployment, drift remediation, and automated provisioning. - **Mentorship & Tier Support Escalation**: serve as **Tier 3** escalation authority for directory service/authentication outages; mentor Tier 2 administrators and lead knowledge-transfer. - **Strategic Innovation**: evaluate, prototype, and roll out emerging identity/security technologies to improve mission readiness. - Availability for **on-call rotations**, weekend maintenance windows, and shift work as required. ### Qualifications **Required** - Education/experience (minimums): - **12+ years** with HS degree, **10+ years** with AS/AA, **8+ years** with BS/BA, or **6+ years** with MS/MA - **DoD 8570 IAT II Certification** - **DoW TS/SCI clearance** - Must be **DoW 8140 compliant** under **Work Role Code 451 – System Administrator (Intermediate or higher)** - Minimum experience: - **4+ years** hands-on designing/operating **Red Hat IdM, FreeIPA**, or complex enterprise-scale **LDAP/Kerberos** environments - **6+ years** progressive, relevant IT experience - Experience administering and hardening Enterprise Linux servers in **multi-site, high-availability, mission-critical** environments - IAM controls experience: **RBAC
Listing freshness
CronJobs last confirmed this listing 2h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.