IT Engineer II
Job description
About the role
You are the technical operator who ensures that the right people, systems, and data connect securely and efficiently across the organization. You own the daily health and configuration of the SaaS stack, ensuring that identity, access, and compliance controls function as intended. You will manage the lifecycle of user access, from onboarding to offboarding, while maintaining strict adherence to security policies. You troubleshoot complex integration failures and automate repetitive tasks to improve team efficiency. You serve as a bridge between security requirements and operational execution. You document every configuration and process so that the environment remains transparent and maintainable. You act as the first line of defense and response for IT and security incidents.
Key facts
What you'll do
Manage the full lifecycle of SaaS applications including provisioning, deprovisioning, licensing, and access control for Google Workspace, Slack, Zoom, Notion, and other business tools.
Enforce least-privilege and role-based access control standards while managing vendor escalations and maintaining strong vendor relationships.
Monitor application performance, usage analytics, and license optimization to improve cost efficiency and operational reliability.
Design, build, and maintain secure integrations between SaaS platforms and Rippling, including SCIM provisioning, single sign-on, and automated workflow triggers.
Deploy and manage configuration profiles and mobile device management policies to enforce organizational IT and security standards.
Identify, document, and automate manual IT processes to reduce operational overhead and potential points of failure.
Troubleshoot synchronization errors, authentication failures, and integration outages across interconnected systems and services.
Monitor and maintain Cisco Meraki switching and wireless infrastructure to ensure stable and high-performance network connectivity.
Manage virtual LANs, firewall rules, access policies, and traffic segmentation to support secure network architecture.
Coordinate ISP circuit management, upgrades, and performance monitoring to maintain consistent network availability.
Maintain accurate and current network topology diagrams and infrastructure documentation for audit and operational purposes.
Follow formal change management procedures for all modifications to network and security infrastructure components.
Triage and remediate security alerts generated by endpoint detection tools such as SentinelOne.
Conduct vulnerability assessments across endpoints, applications, and network infrastructure to identify and mitigate risks.
Maintain Rippling mobile device management policies, including configuration profiles, security settings, and patch compliance.
Contribute to the development and refinement of security policies based on best practices and evolving threat landscapes.
Function as the end-of-tier support resource for internal and external IT issues, providing guidance and resolution strategies.
Partner with security and external auditors to support SOC 2 Type II compliance initiatives, including evidence collection and control testing.
Maintain audit-ready records of access logs, change logs, configuration baselines, and system documentation.
Respond directly to auditor requests and provide clear, accurate information to support compliance reviews.
Requirements
You must have 4-6 years of experience in an IT engineering or systems administration role within a fast-paced, dynamic environment.
You must have demonstrated expertise in Google Workspace administration, including user management, Drive policies, and security settings.
You must have hands-on experience with Rippling or comparable HRIS and mobile device management platforms, including device provisioning and integrations.
You must have network administration experience with Cisco Meraki devices such as switches and access points.
You must have experience with next-generation firewalls, specifically Sophos XGS or equivalent platforms.
You must have practical endpoint security experience using platforms such as SentinelOne or CrowdStrike.
You must have working knowledge of SCIM, SSO protocols including SAML and OIDC, and identity lifecycle management processes.
You must be familiar with SOC 2 compliance frameworks and evidence collection practices.
You must be able to clearly document systems, creating network diagrams, runbooks, and integration specifications.
You must have scripting or automation experience using languages such as Python, Bash, or PowerShell to support workflow tasks.
Nice to have
You may hold relevant certifications such as Google Workspace Admin, CompTIA Security+, Meraki ECMS, CCNA, or CCNP.
You may have experience with SIEM or log aggregation tools such as Splunk, Datadog, or similar platforms.
Practical notes
The role is full-time.
The position offers flexible hybrid work.
The position offers 10 paid company holidays per year.
The position provides 80 hours of paid sick leave annually.
The position includes employer-paid life insurance and short-term and long-term disability coverage.
Additional voluntary insurance coverage is available for accident, critical illness, and hospital indemnity.
The position includes a 401(k) plan with a 100 percent match up to 3 percent and a 50 percent match up to 5 percent, subject to IRS limits.
The position offers a cell phone reimbursement stipend.
Based on location, the position provides a monthly parking or commuter stipend for VA-based employees.