IT Security Engineer (Jamf)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
IT Security Engineer (Jamf): Managing endpoint compliance and security infrastructure for a large-scale macOS fleet with an accent on Jamf Pro administration, Zscaler ZTNA integration, and security hardening. Focus on aligning device configurations with CIS/NIST baselines, automating security policies via scripting, and ensuring audit readiness for Cyber Essentials Plus and SOC 2 certifications.
Location: Must be based in Central Europe
Company
is a technology services company partnering with innovative firms to build and scale cloud-based software solutions across various industries.
What you will do
- Audit and harden the macOS fleet against CIS and NIST baselines using Jamf.
- Develop and maintain hardening scripts in bash, zsh, or Python.
- Rebuild and optimize the Jamf environment, including policy hygiene and smart group logic.
- Deploy Zscaler Client Connector and integrate device trust signals into Zero Trust access policies.
- Integrate Jamf with Okta and Google Workspace for conditional access enforcement.
- Produce comprehensive compliance documentation, including runbooks and architecture decision records.
Requirements
- 5+ years of hands-on Jamf Pro administration in enterprise environments.
- Deep expertise in macOS security hardening and scripting (bash, zsh, or Python).
- Proven experience implementing or auditing against CIS, NIST, or SOC 2 frameworks.
- Experience with Zscaler ZPA/ZIA integration and Okta conditional access.
- Strong written communication skills for documentation and asynchronous collaboration.
- Practical experience using AI tools for scripting, troubleshooting, and research.
Culture & Benefits
- Paid vacation and sick days.
- Floating holidays.
- Sport and insurance compensation.
- English classes and training compensation.
- Support for charitable initiatives.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →