This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
EarnIn is scaling the systems and automations that power our people and protect our data. As a Senior IT Engineer (IC4), you’ll be a hands-on technical lead across identity and access, endpoint engineering, and SaaS/platform integrations. You’ll own high‑impact projects end‑to‑end, mentor teammates, and raise the bar on reliability, security, and employee experience. This role is designed for a seasoned IT professional who operates independently, drives complex initiatives to completion, and models our values in cross‑functional collaboration and customer-centricity.
Job Responsibility:
Identity and access (Okta/Entra): Design and operate secure, scalable identity architecture (SSO/MFA, RBAC, SCIM, lifecycle automation, role/group modeling)
Implement device trust (certificate-based authentication, posture checks) and context-aware access for web/SaaS applications
Enforce least‑privilege access and lead periodic access reviews aligned to audit requirements
Endpoint engineering (macOS and Windows): Own MDM platforms—Jamf Pro (macOS) and Intune (Windows)—including zero‑touch provisioning (ABM/Autopilot), baselines, CIS-aligned configuration, patching, and self‑service
Deploy and maintain Jamf Connect, kernel/system extensions, FileVault/BitLocker escrow, and secure Wi‑Fi/VPN profiles
Drive EDR/DLP coverage, policy-as-code, and timely compliance reporting
Automation and platform integrations: Automate joiner–mover–leaver, SaaS provisioning, software deployment, and remediation (Python/PowerShell/Bash, Okta Workflows, Tonkean)
Deliver Infrastructure as Code for internal IT (Terraform) and manage changes via Git
Build resilient integrations between financial systems (e.g., NetSuite, Carta, expensify) and data platforms (e.g., Tableau/Power BI) to enable business intelligence and comprehensive financial reporting with data quality, lineage, and reconciliation controls
Reliability, security, and compliance: Implement and sustain controls mapped to SOC 2 and PCI (as applicable) with repeatable evidence collection
Define SLIs/SLOs for core IT services
add monitoring/alerting, configuration drift detection, and incident runbooks
Serve as Tier 2/3 escalation for identity/endpoint/integration issues and lead incident reviews to drive corrective actions
Collaboration and leadership: Lead cross‑functional projects with IT, Security, People Ops, Finance, and Engineering from design through steady state
Mentor junior engineers through design reviews, code reviews, and operational best practices
Produce clear documentation and internal guides that support reliable operations
AI enablement: Evaluate and deploy AI tools for IT/productivity (ChatGPT, Glean, Gemini, Cursor) with guardrails and measurable outcomes
Automate helpdesk workflows (triage, summarization, routing, knowledge search) with an access-controlled knowledge base
Define and track AI value metrics (adoption, deflection rate, CSAT, MTTR improvement, time saved), and lead continuous improvement based on experiments and user feedback
Requirements:
4+ years in IT systems/infrastructure engineering with a record of independently delivering large, complex projects
Hands‑on expertise with: Identity: Okta and/or Microsoft Entra ID (SSO/MFA, RBAC, SCIM, app integrations, policies, device trust)
Endpoints: Jamf Pro (macOS) and Intune (Windows), zero‑touch provisioning, modern management, patching at scale
Collaboration: Google Workspace, Slack, and Zoom administration