Senior Identity Cybersecurity Engineer
The MITRE Corporation Colorado Springs, Colorado, United States · $129K–$194K/yr
Research Services · 5,001-10,000 employees
About the role
The role involves designing and assessing Zero-Trust-aligned ICAM architectures and engineering authentication, authorization, and federation solutions. You will also collaborate with engineers and vendors to perform technology evaluations and support high-priority mission applications.
What they look for
Requirements
Candidates must have at least 5 years of related experience with a bachelor's degree and possess an active Secret U.S. Government security clearance. Strong analytical skills and the ability to work effectively in secure environments are essential for this position.
Benefits
Full description
Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work for the public interest, with no commercial conflicts to influence what we do. The R&D centers we operate for the government create lasting impact in fields as diverse as cybersecurity, healthcare, aviation, defense, and enterprise transformation. We're making a difference every day—working for a safer, healthier, and more secure nation and world. Our workplace reflects our values. We offer competitive benefits, exceptional professional development opportunities for career growth, and a culture of innovation that embraces adaptability, collaboration, technical excellence, and people in partnership. If this sounds like the choice you want to make, then choose MITRE - and make a difference with us.
The Cryptography, ICAM, & System Assurance (L527) Department is comprised of an inspired multi-disciplinary team of researchers and practitioners driving innovation in the department’s technical areas of focus, with particular emphasis in Cryptography; System Assurance; and Identity, Credential and Access Management (ICAM). We develop and apply scalable approaches for systems and software, evaluate technology and solutions, lead and foster external partnerships within the communities we support, and conduct novel research and development. We serve in critical roles including:
- Aiding the Federal Government as a community in architecting and applying modern ICAM technologies to secure systems, software, and protocols. We specialize in the application of well-founded ICAM techniques including the design and application of emerging ICAM technologies for security and privacy, zero trust architectures, post-quantum cryptography, non-human and agentic identity, and secure multi-party federation, among others.
- Developing strategies, assessing policy and technical constraints, and facilitating the deployment of ICAM solutions into cloud, hybrid, and on-premises infrastructures for enterprise and tactical environments. As senior trusted advisors and leaders within the ICAM community internally and external to MITRE, we apply our knowledge of industry trends, advances in commercial technology, and relevant industry standards and protocols to inform our sponsors’ decision-making.
- Working at the intersection of Cybersecurity and AI on trustworthy approaches to applying AI to ICAM applications (e.g., autonomous network defense, assessing code for software weaknesses) as well as developing and applying frameworks for evaluating the assurance of AI-based techniques.
- Performing research and development, evaluation and testing and operational support for high-priority sponsor mission applications, MITRE Labs strategic initiatives, and MITRE’s internal research and development program.
Roles & Responsibilities:
- Understand mission needs into ICAM technical requirements, interfaces, and measurable outcomes.
- Perform duties that lead to the design and assessment of Zero‑Trust‑aligned ICAM architectures and reference designs.
- Engineer authentication, authorization, and federation solutions (e.g., SAML/OIDC, step‑up auth) and manage credentials/trust services (PKI, certificates).
- Support Identity Governance & Administration (IGA) including provisioning, joiner‑mover‑leaver workflows, and authoritative source integration.
- Support project efforts that develop, evaluate, and steer RBAC/ABAC/PBAC models, entitlement/attribute strategies, and privileged‑access controls.
- Collaborate with engineers, integrators, and vendors on technology evaluation, trade studies, reusable assets, and mentorship.
Basic Qualifications:
- Typically requires a minimum of 5 years of related experience with a bachelor’s degree; or 3 years and a master’s degree; or a PhD with relevant experience who can immediately contribute at this job step; or equivalent combination of related education and work experience.
- Strong analytical/problem-solving skills and sound technical judgment.
- Strong written and verbal communication skills.
- Demonstrated ability to deliver results and collaborate across teams.
- Ability to work effectively in secure/classified environments.
- Continued employment on this work is contingent upon meeting and maintaining government security eligibility requirements (requirements may change based on sponsor needs).
- Must have an active Secret U.S Government issued Security Clearance. Per the U.S. Government’s eligibility requirements, you must be a U.S Citizen to be considered for a security clearance.
- This position requires a minimum of 4 days a week on-site
Preferred Qualifications:
- Degree in Computer Science, Cybersecurity, Electrical/Computer Engineering, or related field.
- Systems engineering experience (requirements, architecture, integration, test) and familiarity with development lifecycles.
- Experience applying security principles to enterprise architecture and system design.
- Strong understanding of ICAM concepts supporting a Zero Trust security model.
- Familiarity with threats/attack patterns relevant to identity and access systems.
- Interest in applied research and building reusable, scalable technical approaches.
- TS/SCI eligibility preferred;
- Preferred that candidate has willingness to take and successfully complete a CI polygraph.
- Active TS/SCI with CI polygraph preferred.
This requisition requires the candidate to have a minimum of the following clearance(s):
Secret
This requisition requires the hired candidate to have or obtain, within one year from the date of hire, the following clearance(s):
Secret
Salary compensation range and midpoint:
$129,200 - $161,500 - $193,800 Annual
Work Location Type:
Onsite
It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local or international law.
MITRE intends to maintain a website that is fully accessible to all individuals. If you are unable to search or apply for jobs and would like to request a reasonable accommodation for any part of MITRE’s employment process, please email recruitinghelp@mitre.org for general support and collegerecruiting@mitre.org for intern positions. This service is for individuals requiring reasonable accommodation requests. Please note that vendor solicitations will not receive a reply.
Benefits information may be found here.
Copyright © 1997-2026, The MITRE Corporation. All rights reserved. MITRE is a registered trademark of The MITRE Corporation. Material on this site may be copied and distributed with permission only.
Similar roles
-
Senior Security Engineer
Commonwealth Bank Bengaluru, Karnataka, India
-
Security Engineer, Vulnerability Management (ACAS/Tenable.sc) - Secret clearance
PGTEK Ogden, Utah, United States · $130K–$160K/yr
-
Security Engineer, GKE
Google Seattle, Washington, United States · $174K–$252K/yr
-
Cybersecurity Incident Response Triage Analyst
Accenture Federal Services Careers Marketplace Arlington, Virginia, United States · $57K–$109K/yr
-
Cybersecurity Incident Response Triage Analyst
Accenture Federal Services Arlington, Virginia, United States · $57K–$109K/yr
-
Information Security Engineer
EverBank Jacksonville, Florida, United States