Description
About the Role
We are looking for a hands\-on **IT Systems Administrator** to join our Internal IT team in a fast\-growth environment. In this role, you will operate at the intersection of startup speed and banking\-grade security.
You won't just be resolving tickets; you will actively build and refine our identity architecture, design automated lifecycle workflows (Joiner/Mover/Leaver), and author device compliance policies across our fleet.
Responsibilities
* **Identity \& Access Management:** Administer Google Workspace as our master source of identity (Primary IdP) for authentication and access control.
* **Workflow \& Provisioning Automation:** Design, build, and maintain automated lifecycle management (JML) using **Okta Workflows** and SCIM provisioning to downstream apps (Slack, Jira, Zoom, 1Password, etc.).
* **MDM Policy \& Configuration:** Author, deploy, and audit system configuration profiles and compliance policies in **JumpCloud** across both macOS and Windows fleets.
* **Service Desk \& Escalations:** Provide high\-UX, tier\-2/3 support via **Jira Service Management (JSM)** and Slack, using ticket data to identify root causes and automate repeat issues.
* **Security \& Compliance Enforcement:** Maintain Zero Trust access controls, enforce SOC2/ISO 27001 compliance standards, and manage endpoint protection (**Sophos**) with minimal user friction.
* **Global Standardization:** Work closely with the team to author knowledge base documentation in Confluence, standardizing IT operations across international offices.
* **Proactive Maintenance:** Monitor IT infrastructure, audit permissions, and recommend tooling or API\-first improvements to eliminate manual workload.
Professional Experience \& Qualifications
* **Minimum 5 years** of relevant Internal IT experience in a fast\-paced, scale\-up, or regulated Fintech environment.
* **Hands\-on Okta Expertise:** Proven experience building workflows with **Okta Workflows** and managing SCIM/LCM app integrations.
* **Google Workspace Administration:** Deep knowledge of GWS as a primary IdP, including domain security settings, OU management, and admin workflows.
* **MDM Policy Creation:** Direct experience creating, testing, and deploying compliance baselines, FileVault/BitLocker policies, and configuration profiles in **JumpCloud** (or equivalent cloud MDM).
* **OS \& Endpoint Proficiency:** Strong track record supporting and securing both **macOS** and **Windows** workstations.
* **Automation\-First Mindset:** Demonstrated ability to automate manual administrative tasks using native workflow hooks or API integrations.
* **Security \& UX Focus:** Solid understanding of Zero Trust architecture, least\-privilege principles, and security baselines, paired with a focus on seamless user experience.
* **Communication:** Fluent in **English** at a professional working level with excellent documentation skills.