TL;DR
Senior IT Systems Engineer: responsible for designing, deploying, and ensuring the operational reliability of hirify.global's corporate infrastructure and endpoint ecosystem with an accent on device fleet management, cloud and network infrastructure maintenance, and compliance standards. Focus on maintaining a resilient, scalable, and audit-ready infrastructure in accordance with SOC 2 and HIPAA frameworks.
Location: SF Office, Hybrid
Salary: $176K – $195K • Offers Equity
Company
hirify.global is an AI-powered platform purpose-built for medical conversations, improving clinical documentation efficiencies while enabling clinicians to focus on what matters most—their patients.
What you will do
- Own the full lifecycle of corporate endpoints, macOS, iOS, and Linux, including imaging, configuration management, patch enforcement, and compliance remediation using MDM platforms.
- Manage and maintain cloud infrastructure components (GCP, AWS, and/or Azure) supporting corporate IT, including identity federation, network segmentation, and access controls.
- Implement and enforce CIS benchmarks, endpoint security baselines, and configuration standards aligned with SOC 2 Trust Service Criteria and HIPAA technical safeguards.
- Administer and maintain SSO, MFA, and directory services (Okta, Google Workspace, or equivalent); support access provisioning and deprovisioning workflows.
- Maintain an accurate CMDB and asset inventory; enforce configuration-as-code practices where applicable.
- Partner with Security, Engineering, and IT Automation peers to evaluate new tooling, respond to audit requests, and drive continuous improvement of the infrastructure posture.
Requirements
- Experience: 5–8 years in IT Systems Engineering, Corporate Infrastructure, or a closely related discipline within an enterprise environment.
- Deep hands-on experience managing macOS fleets at scale using MDM platforms; iOS and Linux experience a plus.
- Working knowledge of at least one major cloud platform (GCP, AWS, or Azure) in a corporate IT context, IAM, networking, logging, and access controls.
- Strong understanding of SSO (SAML/OIDC), MFA enforcement, SCIM provisioning, and directory services administration.
- Practical experience implementing technical controls aligned to SOC 2, HIPAA, or equivalent frameworks; familiarity with audit evidence collection.
- Proficiency in Bash, Python, or equivalent scripting for system administration and operational automation tasks.
Nice to have
- Experience with Fleet for open-source device management and osquery-based visibility.
- Familiarity with IaC tooling (Terraform) for infrastructure configuration management.
- Exposure to SIEM platforms and endpoint detection and response (EDR) tooling.
- Experience in healthcare or other regulated industries.
Culture & Benefits
- Generous Time Off: 14 paid holidays, flexible PTO, and accrued time off.
- Comprehensive Health Plans: Medical, Dental, and Vision coverage.
- 401(k) Matching: Contribution matching to help invest in your future.
- Lifestyle Wallet: Monthly contributions for fitness, professional development, coworking, and more.
- Mental Health Support: Dedicated access to therapy and coaching to help you reach your goals.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →