IT Systems Engineer
130k – 190kPlymouth Meeting, PANew York, NYSan Francisco, CAOnsite4+ YOE
Summary
Designs, implements, and manages IT infrastructure including MDM (JAMF, Intune), SaaS apps, and IAM (Okta) for employee experience and security. Requires 4+ years experience with endpoint management, identity providers, and automation scripting.
About the role
Responsibilities
IT Asset Management (ITAM) & Endpoint Engineering
- Own and administer MDM platforms, including JAMF for macOS and Microsoft Intune for Windows, to automate device deployment, enforce security policies, and manage software distribution.
- Develop and maintain a comprehensive ITAM strategy, overseeing the full hardware lifecycle from procurement and deployment to maintenance and secure retirement.
- Implement and refine zero-touch deployment workflows to create a seamless and secure onboarding experience for all employees.
SaaS Administration & Optimization
- Serve as the primary administrator for SaaS applications, managing licensing, integrations, security configurations, and cost-optimization.
- Develop automated workflows for user provisioning and de-provisioning across the application ecosystem.
- Partner with business departments to evaluate, onboard, and secure new SaaS tools.
Identity and Access Management (IAM)
- Manage and enhance Identity Provider (Okta), including user lifecycle rules, group management, application integrations (SAML/SCIM), and MFA policies.
- Design and enforce role-based access control (RBAC) policies to ensure least-privilege access.
- Act as SME on identity, authentication, and authorization, driving security best practices.
Requirements
- 4+ years of experience in an IT Systems Engineer, Infrastructure Engineer, or similar role.
- Deep, hands-on expertise with modern MDM platforms, specifically JAMF Pro and Microsoft Intune.
- Proven experience managing an Identity Provider, with strong preference for Okta.
- Demonstrable experience administering a wide range of SaaS applications (e.g., Google Workspace, Slack, Atlassian).
- Strong understanding of ITAM principles and hardware lifecycle management.
- Solid knowledge of networking concepts (TCP/IP, DNS, DHCP, VPNs).
- Experience with scripting and automation highly desirable (e.g., PowerShell, Bash, Python).
Benefits
- 100% company-paid medical, dental, and vision coverage.
- Up to $100/month fitness reimbursement or gym membership.
- 401(k) with 3.5% match.
- Meal program, pre-tax benefits, HSA match, insurance, flexible PTO.
- Bonus and equity eligibility.
Skills
JAMF ProMicrosoft IntuneOktaSaaS AdministrationITAMGoogle WorkspaceSlackAtlassianPowerShellBashPythonRBACMFASAMLSCIM
Similar roles at this salary range
All IT Support jobs →