Jobs and Careers
EY

PKI Engineer - REMOTE - Assistant Director - Government and Public Sector

EY
United StatesRemotefull_timeVerifiedPosted 1 Jan 2024
💰 $261,500/yr($126,800/yr$261,500/yr)

About the role

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.  

From strategy to execution, the Government & Public Sector (GPS) practice of Ernst & Young LLP provides a full range of consulting and audit services to help our Federal, State, Local and Education clients implement new ideas to help achieve their mission outcomes. We deliver real change and measurable results through our diverse, high-performing teams, quality work at the highest professional standards, operational know-how from across our global organization, and creative and bold ideas that drive innovation. We enable our government clients to achieve their mission of protecting the nation and serving the people; increasing public safety; improving healthcare for our military, veterans and citizens; delivering essential public services; and helping those in need. EY is ready to help our government build a better working world.   

 

Our GPS Technology Organization is a structure within the US GPS practice that implements and maintains a new operate and technology model designed specifically to support U.S. defense and Government engagements.   

 

The opportunity 

 

This is a remote opportunity that can be performed within Continental United States.

 

You’ll have responsibilities within the Identity and Access Management (IAM) team that supports various applications in cloud platform services across the Government and Public Sector (GPS) business unit. You’ll support the end-to-end aspects of services including but not limited to service engineering, break/fix support, service roadmaps and standards, vendor management. You’ll also have responsibilities to include ensuring stability for application platforms and/or services under their responsibility including resolution of incidents and problems, maintenance and support, application platform change control, and automation of processes and procedures. 

 

As IAM Engineer, you will also work with the PKI Architect in identifying and defining problems, designing optimum solutions, implement and provide support of new or enhanced PKI services across the GPS organization. 

 

Your key responsibilities  

 

  • Maintaining ongoing knowledge and support of aligned applications such as:  
    • Azure Cloud hosted services 
    • Active Directory Domain Services (AD DS) 
    • Active Directory Lightweight Directory Services (AD LDS) 
    • Active Directory Certificate Services (AD CS) 
    • Active Directory Rights Management Services (AD RMS)  
    • Public Key Infrastructure (PKI) 
  • Maintain ongoing knowledge and support of servers and networks aligned to the Active Directory environments including but not limited to:  
    • Systems Center Operations Manager Administration  
    • Windows 2008 and 2012 Administration and Infrastructure   
    • Single Sign-On (SSO) configuration and remediation, and   
    • Lightweight Directory Access Protocol (LDAP) 
  • Deploying AD DS on Azure VM’s and install replica Domain Controllers or Forests in an Azure virtual network as needed  
  • Integrating other Identity Infrastructure with Azure AD identity authentication services  
  • Creating and configuring Azure Active Directory services for authenticating applications in Azure Cloud  
  • Managing data stored in Azure Active Directory via Azure AD PowerShell cmdlet.   
  • Multi Factor Authentication (MFA) such as Azure MFA integration into the authentication, authorization, and single sign-on process for applications and systems 
  • API Gateways, Enterprise Databases, SSO and Access Management systems, identity federation protocols (SAML), OIDC, OAuth2 and LDAP  
  • Azure Management including application proxy, SSO, MFA, Licensing, Azure PIM and Microsoft Conditional Access Policies  
  • The role may also require the periodic allocation of additional time on the job to support multiple demands and escalating issues or to accommodate teams or staff in other time zones  
  • Assess and define problems or opportunities for improvement by providing documented business, functional, operational, and security requirements to be addressed by future state solutions
  • Communicate design approaches and recommendations effective to gain stakeholder approvals and agreements
  • Coordinate design activities across multiple teams and services to ensure successful completion of complex projects
  • Develop both technical and functional solutions that integrate with business processes

 

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

EY

View company profile →