Systems Engineer - IT
Job description
Systems Engineer - IT at Read Ai.
About the role
You will take full ownership of IT and systems operations at Read AI and share the front line of security operations with our security team. This role moves IT from a queue of manual, one-off requests into engineered systems that scale past our current headcount. Your first major project will be building real automation for onboarding and offboarding across Ravenna, Google Workspace, and Gusto, partnering directly with our People Operations lead. You will share security operations duties by administering our phishing simulation and security awareness program, triaging alerts from AWS and Panther, and answering security questions from across the company. This position is designed as an on-ramp where you will start weighted toward IT and systems operations and over time take on more security engineering scope. You will deliver security tooling initiatives yourself, with our Staff Security Engineer as a direct partner and coach. The explicit mandate is to engineer systems that reduce manual effort and make the company more efficient. You will play a key role in securing and scaling our infrastructure as we grow.
Key facts
What you'll do
- Assume end-to-end ownership of the laptop fleet, including procurement, imaging, hardware and OS refresh cycles, and support.
- Administer FleetDM MDM and the Apple Business Manager account, maintaining full enrollment and patch compliance across devices.
- Roll out and manage BYOD mobile enrollment for iOS and Android using work profiles, ensuring work resources remain in a managed, independently wipeable container.
- Maintain the IT equipment closet and keep a precise asset inventory of all equipment.
- Administer Google Workspace, covering user lifecycle, groups and group membership, and organizational settings.
- Own SSO, SAML, and SCIM integrations and standardize how new applications get onboarded to these systems.
- Run recurring access reviews and keep groups as the single source of truth for access management.
- Build automated onboarding and offboarding workflows across Ravenna, Google Workspace, and Gusto, implementing role-based access on day one and ensuring provably complete deprovisioning on exit.
- Field IT support requests through Ravenna, Slack, and in person, defining and meeting clear response and resolution targets.
- Document recurring requests into self-service knowledge so ticket volume reduces over time and processes become more efficient.
- Manage our Unifi network and office infrastructure, including oversight of our Xerox printer and related systems.
- Administer our phishing triage and security awareness program (Adaptive Security), including campaigns, reporting, and remediation loops.
- Perform first-pass triage of security alerts and events from AWS and Panther, following documented runbooks and escalating with sound judgment.
- Answer general and low-level security questions from across the company in a clear and patient manner.
- Support and help operate our security tooling stack to keep it reliable and effective.
- Write real code in Python, Go, or TypeScript to eliminate manual operational work and improve system reliability.
- Use infrastructure-as-code (Terraform) for the systems you own to ensure consistency and repeatability.
- Scope, deliver, and document security and IT tooling initiatives end to end from requirements to production.
Requirements
- Bring 3+ years in IT operations, systems administration, or a similar hands-on role, with real ownership of the systems you ran.
- Demonstrate hands-on experience administering an MDM platform such as FleetDM, Jamf, Kandji, or Intune and managing macOS fleets at scale.
- Show practical identity administration experience with Google Workspace or Okta, group-based access, and SSO/SAML/SCIM integrations.
- Prove automation ability by having written scripts or services that replaced manual processes, using Python, Go, TypeScript, or similar languages.
- Maintain working familiarity with AWS and cloud access models to support infrastructure and security operations.
- Exhibit strong service instincts, including patience with interruptions, clarity in writing, and organization to protect project time.
- Apply sound security judgment, including knowing when you are uncertain and escalating early to the right stakeholders.
- Be based in the Seattle area and able to work on a hybrid schedule, including in-person support and physical equipment handling as needed.
Nice to have
Only include preferences that are explicitly stated in SOURCE. The SOURCE does not enumerate additional Nice to have items, so this section remains empty.
Practical notes
The SOURCE does not specify hours, travel requirements, visa sponsorship details, or application deadlines. No information is added beyond what is stated.