
IT Systems Engineer
Posted Jul 17

Posted Jul 17
This is a fully remote position, open to applicants in Canada.
• Take ownership of Okta as the central framework for access management, overseeing the application catalog (SSO integrations for new SaaS applications), policy management (MFA, device trust), and directory cleanliness (Universal Directory, group management, breakglass access).
• Automate the processes of provisioning and deprovisioning to ensure access is assigned and revoked automatically rather than manually. Develop and sustain workflows using tools like Okta Workflows and n8n, manage access configuration as code, and maintain SCIM provisioning alignment with our HR system.
• Establish and streamline clear procedures within the identity framework, ensuring that access requests, approvals, and reviews adhere to one consistent, documented pathway instead of ad hoc methods.
• Oversee our internal systems comprehensively. Integrate, secure, and validate our SaaS environment, manage Google Workspace as our primary collaboration suite, connect our tools through Okta and our HR system, and take charge of the application validation process.
• Implement and demonstrate access controls for ISO 27001 and SOC 2 Type 2 in collaboration with our Security team, ensuring that access reviews and audit logs are the result of well-structured systems rather than a last-minute effort.
• Collaborate on administering Jumpcloud, our MDM solution across macOS, Windows, and Linux platforms, sharing endpoint and device management responsibilities with our IT Operations and Endpoint Manager to ensure scalability with the team.
• As a member of a small and growing IT team, your responsibilities will evolve over time. You are ready to engage with related systems tasks and provide support across the broader IT function as our requirements change.
• Identity expertise: Extensive, hands-on experience with Okta or a similar identity provider, encompassing SSO, SCIM, lifecycle automation, and API-driven provisioning.
• IT Experience: Typically, a minimum of 5 years in IT systems, identity, or access engineering, including experience in a developer-centric or engineering-focused setting.
• Automation skills: You excel at creating automation using tools like Okta Workflows, n8n, or comparable solutions, are comfortable with APIs and webhooks, and have scripting skills in Python or a similar programming language.
• Process optimization: You bring clarity to rapidly growing environments. You document clear procedures, standardize practices, and enhance system documentation beyond its original state.
• SaaS-first operations: You have operated within and integrated a SaaS-focused environment where identity and APIs take precedence over hardware and networking.
• Compliance fluency: You possess experience working within ISO 27001 or SOC 2 frameworks, ideally Type 2, where evidence is continuously maintained, and you understand auditor requirements.
• Remote collaboration: You thrive in a fully remote team environment without close supervision, communicating effectively with both technical and non-technical colleagues.
• Google Workspace administration: As we operate within a Google ecosystem, hands-on administration of Google Workspace is fundamental to this role, including managing users, groups, policies, and security settings.
• Working style: You are adaptable, comfortable taking on various roles within a small IT team, engaging in adjacent systems and endpoint tasks, and adjusting as priorities evolve.
• Flexible PTO
• Comprehensive healthcare coverage (UK, Canada, France, Spain)
• Company stock options
• Professional development budget
• Office equipment budget
• Wellness budget
• Annual team gatherings
• Internet reimbursement
• Inclusive parental leave
• Remote work travel program
Pure Storage
OhioHealth
Pure Storage
Arctiq
Get handpicked remote jobs straight to your inbox weekly.