Zero Trust Policy Engineer

ID 2025-3162
Job Locations
US
Category
Information Technology
Type
Regular Full-Time

Overview

DecisionPoint seeks a Zero Trust Policy Engineer to support implementation, development, and enforcement of enterprise Zero Trust access policies across a federal and DoD-aligned mission environment. This role translates mission priorities, security requirements, threat intelligence, and risk indicators into actionable policy sets governing identity, device, network, application, and data access. 

The Zero Trust Policy Engineer will help define and refine enterprise access rules, authorization decisions, segmentation criteria, and adaptive policy enforcement mechanisms that support continuous authentication and least-privilege access across hybrid environments. 

This position is fully remote. 

Note: By applying to this position, you acknowledge and consent to having your resume included in an active competitive government contract bid. 

Duties & Responsibilities

The Zero Trust Policy Engineer will: 

  • Develop and maintain Zero Trust access policies across identity, device posture, network segments, applications, and data resources. 
  • Translate mission requirements, risk assessments, and threat intelligence into adaptive access control rules. 
  • Define policy logic, enforcement patterns, and authorization decision workflows aligned with Zero Trust principles. 
  • Collaborate with IAM, network, cloud, and application teams to implement and validate policy execution points. 
  • Map identity attributes, device health signals, behavioral indicators, and contextual factors to access decisions. 
  • Support microsegmentation planning, policy creation, and rule refinement. 
  • Assist in developing Zero Trust governance structures, documentation standards, and policy control baselines. 
  • Participate in architecture and design discussions to ensure Zero Trust policy coverage across enterprise systems. 
  • Conduct policy impact assessments, test enforcement changes, and support troubleshooting during rollout. 
  • Review access activity logs, policy violations, and behavioral signals to refine policies. 
  • Contribute to Zero Trust playbooks, implementation roadmaps, and cross-team knowledge sharing. 
  • Support alignment with DoD cybersecurity requirements, mission resiliency needs, and continuous monitoring frameworks. 

Qualifications

Clearance Requirement 

Must hold an active Top Secret clearance, supported by a Tier 5 background investigation. 

 

Education (Required) 

Bachelor’s degree in Cybersecurity, Information Assurance, Information Technology, Public Policy with an IT focus, or a related field. 

 

Experience (Required) 

  • Minimum 7 years of experience in cybersecurity, access control management, Zero Trust operations, or enterprise security policy design. 
  • Experience developing or maintaining enterprise access policies across identity, network, or application domains. 
  • Experience translating risk indicators, threat intelligence, and mission requirements into enforcement rules. 
  • Experience working with Zero Trust principles or implementing access controls in federal or DoD environments. 
  • Experience collaborating with IAM, network, cybersecurity, and cloud engineering teams on policy integration. 

 

Technical Knowledge (Required) 

  • Strong understanding of Zero Trust access principles, least-privilege enforcement, and conditional access. 
  • Knowledge of identity-based policies, device posture evaluation, and segmentation logic. 
  • Familiarity with policy enforcement points in cloud, network, and application environments. 
  • Understanding of DoD cybersecurity requirements and Zero Trust implementation guidance. 

Technical Knowledge (Preferred) 

  • Experience with identity governance tools, policy engines, or attribute-based access control (ABAC). 
  • Familiarity with Zero Trust network access (ZTNA), microsegmentation tools, or automation frameworks. 
  • Experience with behavioral analytics or identity risk scoring tools. 

 

Certifications 

Required: 

  • Security+ 

Preferred: 

  • Additional DoD 8570/8140 certifications 
  • Zero Trust or identity-focused certifications (e.g., Azure Identity, Okta, AWS IAM specialty) 

 

Skills 

  • Strong analytical skills for developing and refining detailed access policies. 
  • Excellent communication skills for collaborating across technical and non-technical teams. 
  • Ability to evaluate risk, interpret threat intelligence, and translate findings into controls. 
  • High attention to detail for maintaining accurate, auditable policy structures. 
  • Ability to balance security, usability, and mission-critical operational needs. 
  • Strong documentation skills for developing policy artifacts, standards, and playbooks. 

Our Equal Employment Opportunity Policy

  • EEO and Affirmative Action Policy: DecisionPoint Corporation is an Equal Employment Opportunity and Affirmative Action employer. It is the policy of DecisionPoint Corporation to provide equal employment opportunity in accordance with all applicable Equal Employment Opportunity/Affirmative Action laws, directives and regulations to all employees and qualified applicants without regard to race, ethnicity, color, religion, national origin, sex, age, disability status, pregnancy, sexual orientation, gender identity, genetic information, protected veteran status, or any other protected status under Federal, State or Local laws.
  • Pay Transparency Policy: In accordance with Presidential Executive Order 13665, DecisionPoint Corporation will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information.
  • Authorization to Share Resume and Personal Information: By expressing your interest and submitting your resume for this position, you authorize DecisionPoint Corporation to share your resume, as well as personal information included on the resume, with its subsidiaries, affiliates and teaming partners for the purpose of considering you for this position and other available positions requiring comparable skills, education and experience. Should DecisionPoint Corporation. or its affiliates and teaming partners wish to initiate pre-employment discussions, you will be asked to complete an employment application and related employment documents.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed