5 часов назад
IT Systems Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
IT Systems Engineer (Cloud/Identity & Access Management): Operating and improving corporate IT infrastructure across endpoint management, identity, cloud systems, automation, and compliance with an accent on secure, scalable operations. Focus on managing macOS and Windows fleets, enforcing least-privilege access, building infrastructure automation, and supporting export-controlled aerospace environments.
Location: CA, United States; hybrid remote/in-office schedule
Company
develops laser communications technology and temporospatial software-defined networking platforms for aerospace, satellite, airborne, cislunar, and deep-space communications.
What you will do
- Administer macOS and Windows endpoints with Jamf Pro, Intune, or equivalent MDM platforms, including enrollment, configuration, patching, compliance, and device lifecycle management.
- Manage Okta or another cloud identity provider, including SSO, MFA, lifecycle automation, group policies, and least-privilege access controls.
- Support GCP, AWS, or Azure infrastructure, VPNs, network segmentation, secure remote access, and infrastructure-as-code with Terraform or equivalent tools.
- Support SOC 2, FedRAMP, or CMMC initiatives by maintaining controls, evidence, documentation, and audit remediation.
- Build IT workflow automation with Python, Cloud Functions, or workflow tools, including agentic AI for common tasks.
- Create SOPs and runbooks and collaborate with Engineering, Security, and HR on cross-functional IT initiatives.
Requirements
- 3+ years of experience in corporate IT, IT engineering, or systems administration.
- Hands-on experience with at least one major MDM platform, such as Jamf Pro or Intune.
- Proficiency with a cloud identity provider such as Okta, Azure AD, or JumpCloud.
- Familiarity with GCP, AWS, or Azure and scripting or lightweight automation in Python, Bash, or PowerShell.
- Strong documentation habits and a process-oriented mindset.
- Access to export-controlled information requires meeting applicable U.S. export-control eligibility or authorization requirements.
Nice to have
- Experience with SOC 2, FedRAMP, CMMC, Terraform, HRIS-driven provisioning, PAM, or zero-trust networking.
- Experience with Python, Shell, or Golang and a security-conscious or regulated industry.
- Relevant certifications such as Google Professional Cloud Engineer, Jamf 200/300, Okta Certified Administrator, or CompTIA Security+.
- Open-source tooling contributions or personal homelab and infrastructure projects.
Culture & Benefits
- Work on aerospace communications and national security programs.
- Flexible hybrid remote/in-office arrangements.
- Professional development and advancement opportunities.
- Collaborative, supportive, and inclusive workplace.
- Competitive compensation, equity options, comprehensive health and insurance benefits, 401(k), and paid time off.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →