Skip to content

IT Systems Engineer

130k – 190kPlymouth Meeting, PANew York, NYSan Francisco, CAOnsite4+ YOE
Summary

Designs, implements, and manages IT infrastructure including MDM (JAMF, Intune), SaaS apps, and IAM (Okta) for employee experience and security. Requires 4+ years experience with endpoint management, identity providers, and automation scripting.

About the role

Responsibilities

IT Asset Management (ITAM) & Endpoint Engineering

  • Own and administer MDM platforms, including JAMF for macOS and Microsoft Intune for Windows, to automate device deployment, enforce security policies, and manage software distribution.
  • Develop and maintain a comprehensive ITAM strategy, overseeing the full hardware lifecycle from procurement and deployment to maintenance and secure retirement.
  • Implement and refine zero-touch deployment workflows to create a seamless and secure onboarding experience for all employees.

SaaS Administration & Optimization

  • Serve as the primary administrator for SaaS applications, managing licensing, integrations, security configurations, and cost-optimization.
  • Develop automated workflows for user provisioning and de-provisioning across the application ecosystem.
  • Partner with business departments to evaluate, onboard, and secure new SaaS tools.

Identity and Access Management (IAM)

  • Manage and enhance Identity Provider (Okta), including user lifecycle rules, group management, application integrations (SAML/SCIM), and MFA policies.
  • Design and enforce role-based access control (RBAC) policies to ensure least-privilege access.
  • Act as SME on identity, authentication, and authorization, driving security best practices.

Requirements

  • 4+ years of experience in an IT Systems Engineer, Infrastructure Engineer, or similar role.
  • Deep, hands-on expertise with modern MDM platforms, specifically JAMF Pro and Microsoft Intune.
  • Proven experience managing an Identity Provider, with strong preference for Okta.
  • Demonstrable experience administering a wide range of SaaS applications (e.g., Google Workspace, Slack, Atlassian).
  • Strong understanding of ITAM principles and hardware lifecycle management.
  • Solid knowledge of networking concepts (TCP/IP, DNS, DHCP, VPNs).
  • Experience with scripting and automation highly desirable (e.g., PowerShell, Bash, Python).

Benefits

  • 100% company-paid medical, dental, and vision coverage.
  • Up to $100/month fitness reimbursement or gym membership.
  • 401(k) with 3.5% match.
  • Meal program, pre-tax benefits, HSA match, insurance, flexible PTO.
  • Bonus and equity eligibility.
Skills
JAMF ProMicrosoft IntuneOktaSaaS AdministrationITAMGoogle WorkspaceSlackAtlassianPowerShellBashPythonRBACMFASAMLSCIM
Similar roles at this salary range
All IT Support jobs →
Harvey

IT Operations Analyst

IT Operations Analyst providing hands-on IT support, onboarding/offboarding, SaaS administration, and A/V assistance for a fast-growing AI company in a hybrid New York office.

109k – 164kNew York, NYIT SupportHybrid3+ YOEMDMOkta
Maybern

Corporate IT Engineer

First dedicated IT and Security operator responsible for endpoint management, identity administration, SOC 2 compliance, and vendor security reviews at a scaling NYC fintech startup.

150k – 175kNew York, NYIT SupportOn-site6+ YOEMDMOkta
Turion Space

Manager IT Operations

Lead IT Operations team responsible for corporate infrastructure, help desk management, systems automation, and endpoint lifecycle at a spacecraft company. Requires 5+ years IT ops experience including 2 years leading teams.

150k – 185kIrvine, CAIT SupportOn-site5+ YOEBashLinux
Basis

Member of Technical Staff, IT

Own and scale IT systems for an AI company: identity/access (Okta), Mac endpoint management (Jamf/Kandji), SaaS lifecycle, security/compliance (SOC 2, ISO 27001), and day-to-day operations.

150k – 250kNew York, NYIT SupportOn-site5+ YOEVPNMDM
Headway

IT Engineer, Endpoints

Own endpoint lifecycle and device trust programs across macOS, Windows, and ChromeOS. Automate onboarding/offboarding and drive AI-powered endpoint operations in a HIPAA-regulated environment.

132k – 155kNew York, NY +2IT SupportRemote3+ YOEIAMOkta