We deliver science, technology and engineering solutions to governments and companies around the world.
Associate Security Engineer, Identity Security
Location
Texas
Posted
4 days ago
Salary
0
Seniority
Mid Level
Job Description
Associate Security Engineer, Identity Security
KBR, Inc.
• Support the administration and operation of Microsoft Entra ID, Active Directory, hybrid identity, and directory synchronization services. • Perform identity administration activities for users, groups, devices, applications, service accounts, and access permissions. • Troubleshoot authentication, authorization, provisioning, account lifecycle, and access-related issues. • Review logs, alerts, and system data to identify and resolve identity-related incidents and operational problems. • Support Conditional Access, multifactor authentication (MFA), passwordless authentication, and other modern access control solutions. • Assist with privileged access management activities, including role assignments, access reviews, and least-privilege enforcement. • Support identity governance processes, including access reviews, entitlement management, and joiner, mover, and leaver activities. • Assist with enterprise application integrations and identity federation technologies, including SAML, OAuth, OpenID Connect, and SCIM. • Support application identities, service principals, managed identities, workload identities, and service accounts. • Assist with Active Directory administration, Group Policy management, directory health monitoring, and hybrid identity operations. • Support PKI and certificate lifecycle management activities, including certificate issuance, renewal, inventory, and trust relationships. • Identify and help remediate identity-related risks, including excessive access, stale accounts, weak authentication, and unmanaged credentials. • Support security monitoring, threat detection, and incident investigations using Microsoft security platforms and related tools. • Gather technical evidence, perform root cause analysis, and assist with remediation activities during security and operational incidents. • Participate in cloud deployments, application onboarding, tenant migrations, and other identity-related projects and initiatives. • Support audit, compliance, and governance activities through evidence collection, documentation, and control validation. • Create and maintain technical documentation, procedures, knowledge articles, and operational runbooks. • Assist with reporting, automation, and continuous improvement efforts using PowerShell, Microsoft Graph, KQL, and related technologies. • Follow established security, change management, incident management, and operational procedures. • Collaborate with engineers, administrators, and stakeholders to improve identity security controls and operational effectiveness. • Communicate technical issues, findings, and project updates clearly while continuing to develop identity security knowledge and expertise.
Job Requirements
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, Engineering, or a related field
- 2+ years of experience in information technology, cybersecurity, identity administration, systems administration, cloud support, service desk support, or a related technical field
- U.S. citizenship required.
- Foundational understanding of information technology concepts, including user accounts, permissions, authentication, operating systems, networking, and cloud services.
- Familiarity with Microsoft Windows, Microsoft 365, Active Directory, Microsoft Entra ID, Azure, or comparable enterprise technologies.
- Understanding of core security principles such as least privilege, multifactor authentication, role-based access control, and identity lifecycle management.
- Strong technical aptitude and ability to learn new technologies and processes quickly.
- Strong troubleshooting, analytical, and problem-solving skills.
- Ability to follow established procedures, security standards, and change management requirements.
- Strong attention to detail and commitment to handling sensitive information responsibly.
- Effective written and verbal communication skills with the ability to document technical work clearly.
- Ability to collaborate within a team environment, manage assigned tasks, and escalate issues appropriately.
- Demonstrated reliability, integrity, professionalism, and commitment to continuous learning.
Benefits
- Health insurance
- Professional development opportunities
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
RMF Cybersecurity ISSO/SME 3
KBR, Inc.We deliver science, technology and engineering solutions to governments and companies around the world.
• Manage one or more information systems throughout the full six-step RMF lifecycle, including assessment, authorization, and continuous monitoring activities • Serve as an RMF Subject Matter Expert (SME), advising stakeholders on cybersecurity compliance, risk posture, and ATO readiness • Develop, review, and maintain RMF packages and associated documentation, including Security Plans, POA&Ms, Risk Assessment Reports, and security control policies • Assess system compliance against NIST SP 800-53 controls and DHA RMF requirements as part of self-assessment and annual reviews • Document and maintain evidence supporting control implementation and compliance • Lead and participate in A&A and stakeholder meetings to track system status, resolve issues, and drive RMF progress • Coordinate with engineers and system owners to develop architecture diagrams, system asset inventories, and security policies • Prepare and deliver status reports to DHA leadership on system authorization and compliance efforts
• Lead security audits and assessments—annual, periodic, and ad hoc—serving as the primary liaison to internal assessors and external auditors. • Guide implementation of security controls and ensure alignment with CBP, DHS, NIST, and federal requirements. • Oversee development and maintenance of security documentation, assessment artifacts, and audit evidence to support audit readiness. • Lead remediation of audit findings and security deficiencies, ensuring timely corrective actions. • Provide technical leadership on cybersecurity, vulnerability mitigation, and security compliance across the application lifecycle. • Partner with BEMSD stakeholders and development teams to integrate security requirements into application design, development, and operations. • Evaluate emerging cybersecurity technologies, threats, and best practices to strengthen program security. • Deliver security reports, risk assessments, dashboards, and compliance updates to BEMSD and GDIT leadership.
• Partner with clients to understand their business objectives, security concerns, and risk management priorities. • Assess Microsoft 365, Azure, and cloud security environments and provide actionable recommendations for improvement. • Design and implement Microsoft security solutions across identity, endpoint, threat protection, governance, compliance, and cloud security. • Configure and support Microsoft Entra ID capabilities, including Multi-Factor Authentication (MFA) and Self-Service Password Reset (SSPR). • Deploy and optimize Microsoft Defender technologies. • Implement endpoint management and security controls using Microsoft Intune. • Build and improve security monitoring, analytics, alerting, and reporting solutions using Microsoft Sentinel. • Support data protection and compliance initiatives utilizing Microsoft Purview, DLP, and sensitivity labeling capabilities. • Develop automation and operational efficiencies using PowerShell and Microsoft Graph. • Deliver trusted advisory services to clients.
Principal, Global Event Security and Risk Management
Wikimedia FoundationImagine a world in which every single human being can freely share in the sum of all knowledge.
• Working closely with Wikimedia movement organizers to mitigate risks and define best practices. • Strengthening the Foundation’s risk management approach. • Leading risk assessments for community conferences and other events. • Creating emergency response plans for physical security threats. • Being on-call to review emergency alerts and ensuring response to threats. • Briefing the Deputy General Counsel and senior leadership regularly.



