4 open positions available
Manage PKI lifecycle and certificate automation with strategic technical guidance and documentation. | Strong PKI, certificate management tools, PowerShell scripting, REST API, Active Directory, and ability to pass federal clearance. | GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk. Network Security Engineer General Description We are looking for a skilled Network Security Engineer to support internal and external customers with certificate-related issues across USPS applications and services. This role will engage in the development of key stakeholders on PKI lifecycle management, processes and procedures while providing “Wow Them” service to clients and/or internal customers or co-workers. About the Federal Region GuidePoint Security is the trusted partner that defense and civilian government agencies rely on to lead their cybersecurity efforts and protect their organizations. We help solve their most complex security challenges, mature security architectures, and proactively reduce risk. Our purpose-built solutions ensure compliance, safeguard critical assets, and align security with organizational objectives. Backed by deep expertise, strong partnerships, and advanced technologies, we deliver scalable, adaptive capabilities that evolve with the threat landscape so Federal agencies can lead with confidence and protect what’s next. Roles and Responsibilities Create reports and documentation using AI and other automation tools. Review complex PKI and certificate-related issues, determine effective solutions, and recommend improvements to ensure efficient, reliable, and sustainable operations. Support certificate automation using Venafi/CyberArk TPP identifying opportunities to incorporate AI into automation efforts. Supervise the PKI team, develop project requirements for complex and critical applications, provides sound strategic advice, technical expertise, and guidance to program and project staff Ability to work independently, work in a fast-paced environment, and attention to detail Required Experience and Education Strong knowledge of REST API integration, Simple Certificate Enrollment Protocol (SCEP), and Microsoft AD auto-enrollment. Familiarity with technologies such as VCERT, Portable Git, Ansible, and Visual Studio Code. Proficiency in PowerShell scripting. Strong understanding of Public Key Infrastructure (PKI) including: Certificate Authority Administration Certificate Enrollment Web Service & Policy Web Service Active Directory Certificate Services (ADCS) monitoring Infrastructure experience in one or more of the following areas: IT or server administration, networking, Active Directory/LDAP, Unix/Linux, virtualization, or access control administration. Strong communication skills with IT customers, developers, and system administrators. Strong experience with certificate management tools, preferably Venafi/CyberArk, Microsoft Certificate Authority, and Hardware Security Modules (HSMs). Heavy experience troubleshooting digital certificate issues, with an interest in advancing automation and AI-driven solutions. Knowledge of Post Quantum Cryptography Preferred Experience and Education Experience with ServiceNow or other Change/Incident/Problem management ticketing technology IT system administration experience (systems management, networks, firewalls) in an enterprise environment Experience with user directory technologies for authentication (e.g., LDAP, Active Directory) Experience with Microsoft Windows Server configuration, deployment, and troubleshooting. Experience with Unix and Linux configuration and troubleshooting Experience with technologies that use TLS/SSL encryption (e.g., F5, Netscaler, IIS, Apache, WebLogic, WebSphere, etc.) Proficiency with server virtualization technologies (VMWare, HyperV) Database administration (MSSQL) experience A+, NET+, SEC+, nCSE, Venafi/CyberArk Admin, certified encryption engineer, CCENT, CCNA Travel Requirements Work will be REMOTE with candidates located in Morrisville, NC; Falls Church, VA; or Eagan, MN given preference. Additional Provisions Pass a client mandated clearance process to include drug screening, criminal history check and credit check. Once candidate’s resume is approved and interview passed; the agency is responsible for providing drug screening. Failure to submit the drug screening results will delay the security clearance process. If a candidate is given an interim clearance, continuation of employment is then based on the candidate receiving a sensitive clearance. All candidates must be a US Citizen or permanent status Green Card holder. Cannot have more than 6 months travel outside the United States within the last five years. Military Service excluded. (Exception does not include military family members.) All overtime must be pre-approved in writing by the client manager or his/her designated representative. Agency will not be reimbursed for overtime charges without previous written authorization. Authorized overtime will be reimbursed at straight time. The enforced dress code is business casual, i.e., collared shirt with slacks for men, no skirts above the knee for women. Physical Requirements Sedentary work Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day If you have additional physical requirements/changes, please discuss with HR first “Applicants selected will be subject to a security investigation and must meet eligibility requirements for access to classified information.” We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,300 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers. Firmly-defined core values drive all aspects of the business, which have been paramount to the company’s success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions) Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options) Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans 12 corporate holidays and a Flexible Time Off (FTO) program Healthy mobile phone and home internet allowance Eligibility for retirement plan after 2 months at open enrollment Pet Benefit Option
Lead identity and SecOps consulting engagements including assessments, design, implementation, mentoring, and presales support. | Requires 8+ years cybersecurity consulting with deep hands-on Microsoft Entra ID/Active Directory and IAM experience, leadership skills, and strong communication. | Job Description: • Lead and deliver identity-focused engagements from scoping through execution and final deliverables • Assess, design, and improve Microsoft Entra ID / Active Directory environments • Perform Conditional Access Policy assessments and identity hardening reviews • Design and advise on PKI, certificate lifecycle, and foundational cryptographic controls • Support Identity governance, MFA, PAM, Conditional Access, PIM, RBAC, and passwordless / FIDO2 initiatives • Advise on and help secure modern identity platforms including CrowdStrike Falcon Identity Protection, Microsoft Entra, Okta, and related solutions • Help customers address Non-Human Identity risks involving service accounts, workload identities, API keys, and secrets • Support SecOps initiatives including SIEM, SOC, ITDR, threat hunting, log ingestion, telemetry coverage, and alert tuning • Perform Security Architecture Reviews and technical assessments • Develop actionable remediation roadmaps • Mentor junior consultants and analysts and provide technical leadership • Support presales activities including scoping calls, solutioning, statements of work, and technical demonstrations • Produce customer deliverables and technical documentation • Use emerging technologies, including AI tools, to solve problems and improve business outcomes Requirements: • 8+ years of cybersecurity consulting, engineering, or architecture experience with demonstrated project delivery ownership • Deep hands-on experience with Microsoft Entra ID / Active Directory and M365 security • Experience implementing or administering IAM controls, PKI, and authentication technologies • Strong command of Conditional Access, MFA, SSO, RBAC, PIM, PAM, and Zero Trust concepts • Experience supporting SecOps functions including SIEM/Sentinel, SOC, ITDR, or threat hunting • Demonstrated leadership skills, including leading engagements, mentoring team members, and owning delivery outcomes • Strong customer-facing and presales skills • Ability to lead conversations and present to technical and executive audiences • Excellent written and verbal communication skills • Ability to manage multiple customer engagements in parallel • Eastern Time Zone availability required • Preferred: experience with VAR / solution provider business models and partner/vendor ecosystems • Preferred: experience with enterprise IAM / IGA / PAM platforms such as SailPoint, Saviynt, CyberArk, Delinea, BeyondTrust, Okta, or Ping • Preferred: experience with CrowdStrike Falcon Identity Protection / Next-Gen Identity Security, ITDR, or FCS • Preferred: familiarity with NHI governance and AI / agentic identity security • Preferred: experience with FIDO2 / passwordless authentication deployments • Preferred: familiarity with Microsoft Sentinel, Defender, Purview, or Duo • Preferred: Azure and/or AWS cloud security experience • Consulting or professional services background strongly preferred • Relevant certifications such as CISSP, CCSP, SC-300, AZ-500, SC-100, or Identity-specific credentials preferred Benefits: • Remote workforce primarily • Group Medical Insurance options: Zero Deductible PPO Plan or High Deductible Health Plan with HSA • GuidePoint pays 90% of the employee PPO premium and 70% of family PPO plans • GuidePoint pays 100% of employee HDHP premiums and 75% of family HDHP plans • HSA contribution of $850 annually per employee or $1,750 annually per family • Group Dental Insurance • GuidePoint pays 100% of employee dental premiums and 75% of family plans • 12 corporate holidays • Flexible Time Off (FTO) program • Healthy mobile phone allowance • Home internet allowance • Eligibility for retirement plan after 2 months at open enrollment • Pet Benefit Option
Design and implement Saviynt IGA solutions, lead client assessments and roadmaps, mentor junior engineers, and manage complex technical deployments. | Seven plus years of hands-on experience with Saviynt IGA solutions, strong technical skills in connectors and Java, and experience leading technical architecture discussions. | GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk. GuidePoint is expanding its Identity and Access Management service offerings and is hiring an Identity Governance and Administration Architect with Saviynt experience. Roles and Responsibilities: • Responsible for implementation of Saviynt solutions for clients • Perform assessment and IGA roadmap for clients • Help shape proposal for IGA deployments and assessments • Help shape statements of work for IGA related work • Develop deliverable templates and act as subject matter expert for client discussions • Provides mentoring and guidance to more junior level engineers; may provide feedback and direction on specific engineering tasks • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes Experience required: • Seven plus years of hands-on experience with designing, architecting & building IGA solutions involving Saviynt and other IGA solutions • Experience with most common connectors including Active Directory (AD), Azure AD, JDBC, exchange, Mainframe, web service connector and authoritative source integration (such as SAP and Workday) • Knowledge of Java/J2EE, Beanshell, XML and web services (REST/SOAP) • Experience with IIQ workflows including joiner, leaver, mover • Solid understanding of the IIQ object model, rules and policies • Experience with both life cycle manager and compliance manager modules • Experience with the software development lifecycle (SDLC) • Strong verbal and written skills to develop technical documentation and presentations • Experience in leading technical architecture and security design discussions with developers and infrastructure team • Experience with consultative and complex technical deployment projects, managing various stakeholder relationships • Understanding of cloud computing technologies, business drivers, and emerging computing trends • Demonstrated strong project delivery experience with regard to estimates, planning and deliverables using project management methodologies • Exposure to Privileged Access Management solutions or Okta is a big plus We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers. Firmly-defined core values drive all aspects of the business, which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions) • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options) • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans • 12 corporate holidays and a Flexible Time Off (FTO) program • Healthy mobile phone and home internet allowance • Eligibility for retirement plan after 2 months at open enrollment • Pet Benefit Option
Design and implement Microsoft identity and data security solutions including Entra ID, Purview, Intune, and Defender XDR for clients. | 2–5 years IT administration or security experience with hands-on Microsoft Entra ID, Active Directory, PowerShell scripting, and knowledge of Microsoft Purview and Intune. | GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk. General Description: We are seeking a security first, Microsoft focused engineer to join our Microsoft Cloud Security Team. This role will be primarily delivering hands-on security engagements for clients ranging from small businesses to large enterprises. Your work centers on Microsoft Entra ID (identity and access management) and Microsoft Purview (data protection), with supporting work in Intune and Defender XDR. You'll partner with architects and principal consultants across varied industries and environments. You'll own your technical delivery independently (80% billable target), managing your time and communication within assigned engagements, and contribute to internal practice and knowledge-sharing efforts between projects. Roles and Responsibilities: • Identity & Access (Entra ID / AD): Design and implement identity architecture, hybrid sync (Entra Connect), Conditional Access, MFA/passwordless, and identity governance (PIM, RBAC, access reviews, entitlement management). • Integrate applications via SSO (SAML/OIDC), enterprise app registrations, and SCIM provisioning. • Investigate and remediate identity risks using Entra ID Protection, sign-in and audit logs; drive hybrid identity hygiene (stale object cleanup, privileged account reduction, tiered admin models). • Data Security & Compliance (Purview): Design and implement sensitivity labels, DLP, and retention policies across M365; support data classification, information protection rollouts, and data security posture assessments. • Support eDiscovery, Insider Risk Management, communication compliance, and AI data security readiness (DSPM for AI) as engagements require. • Intune & Defender XDR: Configure device compliance, configuration profiles, and app deployments across platforms; support Defender for Endpoint, Office 365, Identity, and Cloud Apps in cloud and hybrid environments. • Other duties as assigned. • Adhere to GuidePoint Security Core Values. Required Experience: • Bachelor's degree preferred. • 2–5 years in IT administration, identity management, or security operations. • Hands-on production experience with Microsoft Entra ID and on-premises Active Directory, including Conditional Access, MFA, RBAC, and hybrid identity (Entra Connect). • Knowledge of core authentication protocols: SAML, OAuth 2.0/OIDC, Kerberos, LDAP. • Experience implementing Microsoft Purview (sensitivity labels, DLP, retention, or eDiscovery) and comfort supporting Intune and Defender XDR. • Basic PowerShell scripting for automation and reporting (e.g., Microsoft Graph PowerShell). • Strong troubleshooting skills, attention to detail, and clear written and verbal communication. • Embraces emerging technologies, including AI tools, to work smarter, solve problems, and drive better business outcomes. Preferred Experience: • Advanced AD work: multi-domain/forest design, migrations, tiered administration, legacy auth cleanup. • Microsoft Sentinel: log onboarding, detection development, or broader SIEM/SOAR experience. • Azure infrastructure and security (Azure Policy, network security, landing zones, RBAC). • SharePoint Online governance, Teams Voice, Power BI/Fabric, or Copilot Studio/Azure AI Foundry experience. Travel Requirements: • This role is 100% remote requiring less than 10% travel for corporate events Physical Requirements: • Sedentary work • Substantial movement of the wrists, hands, and/or fingers for a minimum of 8 hours a day • Required to have close visual acuity to view computer terminal and/or extensive reading for a minimum of 8 hours a day We use Greenhouse Software as our applicant tracking system and Zoom Scheduler for HR screen request scheduling. At times, your email may block our communication with you. Please be sure to check your SPAM folder so that you don't miss updates on your application. Why GuidePoint? GuidePoint Security is a rapidly growing, profitable, privately-held value added reseller that focuses exclusively on Information Security. Since its inception in 2011, GuidePoint has grown to over 1,200 employees, established strategic partnerships with leading security vendors, and serves as a trusted advisor to more than 6,200 customers. Firmly-defined core values drive all aspects of the business, which have been paramount to the company's success and establishment of an enjoyable workplace atmosphere. At GuidePoint, your colleagues are knowledgeable, skilled, and experienced and will seek to collaborate and provide mentorship and guidance at every opportunity. This is a unique and rare opportunity to grow your career along with one of the fastest growing companies in the nation. Some added perks…. • Remote workforce primarily (U.S. based only, some travel may be required for certain positions, working on-site may be required for Federal positions) • Group Medical Insurance options: Zero Deductible PPO Plan (GuidePoint pays 90% of the premium for employees and 70% for family plans (spouse/children/family) or High Deductible Health Plan with HSA (GuidePoint pays 100% of the employees premiums and 75% for family plans (spouse/children/family). If you choose the High Deductible / HSA plan, GPS will contribute in 4 equal quarterly installments: ($850 per EE annually / $1750 per family annually (includes spouse/children/family options) • Group Dental Insurance: GuidePoint pays 100% of the premium for employees and 75% of family plans • 12 corporate holidays and a Flexible Time Off (FTO) program • Healthy mobile phone and home internet allowance • Eligibility for retirement plan after 2 months at open enrollment • Pet Benefit Option
Create tailored applications specifically for GuidePoint Security with our AI-powered resume builder
Get Started for Free