5 часов назад
IT Infrastructure Engineer
75 - 110$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
IT Infrastructure Engineer (Identity and Endpoint Management): Building Kaizen’s corporate identity, device-management, access-review, and controlled-environment systems for government technology operations with an accent on Okta/Entra/JumpCloud administration, endpoint deployment, and auditable employee lifecycle controls. Focus on automating provisioning and offboarding, establishing evidence-ready access reviews, deploying managed devices with EDR, and creating runbooks that sustain the program after the engagement.
Location: Hybrid in New York, NY or Washington, D.C.; US person required
Compensation: $75–$110 per hour
Company
builds AI-native software that helps federal, state, and local government agencies modernize public services.
What you will do
- Complete the corporate identity-provider rollout, including application onboarding, SCIM provisioning, lifecycle rules, and automated deprovisioning.
- Select and deploy endpoint management across the company fleet, establish device and acceptable-use policies, and pair endpoint management with EDR.
- Build instrumented joiner, mover, and leaver processes with timed access revocation, credential recovery, hardware return, and audit evidence.
- Establish recurring access reviews and maintain evidence for auditors and government customers.
- Stand up a narrowly scoped enclave with separate identity, managed devices, controlled storage, documented boundaries, and operating runbooks.
- Inventory and rationalize the SaaS estate, separating privileged access and preparing for certificate- and smart-card-based authentication.
Requirements
- Experience administering a modern identity provider such as Okta, Entra, or JumpCloud, including app onboarding, SCIM provisioning, and lifecycle management.
- Experience deploying endpoint management from zero across a real fleet using tools such as Jamf, Kandji, Hexnode, or Intune.
- Experience pairing endpoint management with an EDR solution such as CrowdStrike or Huntress.
- Experience building auditable employee lifecycle processes and running access reviews accepted by auditors.
- Fluency with cloud-first, mostly macOS environments using Google Workspace, password management, AWS console access, and SSO.
- Must be a US person. Comfortable working as the sole IT specialist and writing operational runbooks.
Nice to have
- Experience supporting SOC 2, FedRAMP, or CMMC assessments on the IT side.
- Knowledge of certificate and smart-card authentication, PIV, CAC, and government PKI.
- Experience handling device, software, or account restrictions imposed by government contracts.
- Managed service provider background or prior contract-engagement experience.
Culture & Benefits
- Hybrid work with a company-provided laptop and home-office or desk setup stipend.
- Fully covered medical, dental, and vision insurance for employees and dependents, plus life insurance, FSA, and Dependent Care FSA.
- 401(k) with a 2% company match.
- Paid parental leave, unlimited PTO with a two-week minimum, federal holidays, and a company-wide winter break.
- Professional development, recreation, utility, commuter, fitness, and pet-care stipends.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →