Rocketdyne is a lean, fast-scaling IT organization, and this role is built for that reality: primary ownership sits with identity and access management, but the person in this seat will regularly work across server, cloud, and infrastructure domains as priorities shift.
This is not a narrow IAM specialist role — it's an infrastructure engineer whose center of gravity is identity, with the range to pick up cloud workload migration, server administration, and general infrastructure engineering as the environment matures and needs move. On a small team, overlapping skill sets aren't a nice-to-have.
This position will be based Remotely and work a 9/80 schedule.
Core Responsibilities
Identity & Access Management (primary ownership)
- Own day-to-day operation and roadmap of the Entra ID and any on-prem AD environment, including conditional access, PIM, application integrations, and lifecycle management
- Manage authentication integration across the application portfolio (ERP, PLM, MES, and other enterprise systems), tracking auth method per application
- Support CMMC/ITAR/DFARS compliance requirements as they relate to identity controls, access reviews, and audit evidence
- Work with cyber-team to ensure user friendly and secure multi-factory authentication capabilities
Server, Cloud & Infrastructure (secondary, expected to flex)
- Administer and support server infrastructure across on-prem and cloud environments
- Participate in workload migration and optimization efforts — moving applications and infrastructure to right-sized, cost-effective hosting (cloud IaaS, consolidated on-prem, or hybrid), and tuning existing workloads for performance and cost
- Contribute to cloud architecture decisions (e.g., OCI, Azure) alongside the Principal Architect, particularly where identity and infrastructure intersect
- Support datacenter, network, and systems engineering work during peak load or coverage gaps, even outside core identity scope
- Establish and maintain patching cadence and backup/DR plans for owned workloads
- Document workloads as they're migrated or brought under management (ownership, dependencies, auth method, hosting location), and drive optimization plans once workloads land in a Rocketdyne-owned environment
Cross-Domain Expectations
- Expect the balance of identity vs. infrastructure work to shift over time as the org matures, TSA exit progresses, and new priorities emerge — this role is scoped for adaptability, not a fixed lane
- Partner closely with the Principal Architect (architecture/design authority) and Cyber lead (security controls) — this role executes and operates, and feeds implementation realities back into architecture decisions
Qualifications
- 5+ years in infrastructure, systems, or identity engineering roles, ideally with direct Entra ID / Azure AD ownership
- Working knowledge of server administration (Windows/Linux) and at least one major cloud platform (Azure or OCI preferred given current environment)
- Experience with workload migration projects (on-prem to cloud, cloud-to-cloud, or consolidation efforts) a strong plus
- Comfort operating in a regulated environment (CMMC, ITAR, DFARS, or similar); prior defense/aerospace/manufacturing IT experience a plus
- Demonstrated ability to work independently in a small, resource-constrained IT team — this is not a role with deep specialist backup
What Success Looks Like in Year One
- Identity environment is stable, audit-ready, and scalable.
- All workloads are running in a Rocketdyne-owned environment (fully migrated off legacy/parent-org infrastructure)
- Patching and backup/DR plans are in place and operating for all workloads
- All workloads are documented (ownership, dependencies, auth method, hosting location)
- Optimization plans are in process for workloads that have been migrated
- Is a credible second set of hands across server/cloud infrastructure, reducing single-point-of-failure risk on the Principal Architect and Cyber lead