Senior IT Analyst (IAM & O365) at A global leadership advisory firm known for executive search · Gurugram · 4 - 8 years · ₹15L - ₹22L / yr · Posted 22 Jul 2025

Senior IT Analyst (IAM & O365)
at A global leadership advisory firm known for executive search
Job Title: Sr. IT Analyst – IAM & Office 365
Location: Sector 32, Gurgaon
Work Mode: Hybrid
Shift Timing: 10:30 AM – 7:30 PM
Working Days: Monday to Friday (Should be comfortable working on weekends if needed)
About the Role
We are looking for a seasoned IT Security professional with a strong focus on Identity and Access Management (IAM) and Office 365 administration. This role is critical to ensuring secure access to enterprise systems, managing user identity lifecycles, and supporting ongoing cloud security initiatives.
You will work with cross-functional teams to implement security best practices, support operational tasks, and contribute to projects around IAM automation, Office 365 feature rollouts, and policy implementations.
Key Responsibilities
Identity and Access Management (IAM):
- Administer and maintain IAM systems across cloud and on-prem environments.
- Manage user provisioning, de-provisioning, and access reviews.
- Implement and optimize Conditional Access Policies, MFA, and RBAC.
- Integrate IAM solutions with Azure AD, Office 365, and other enterprise tools.
- Automate workflows for identity lifecycle management and secret/certificate rotation.
- Maintain documentation such as SOPs and process flows.
Office 365 Administration:
- Manage services like SharePoint Online, Teams, and PowerApps.
- Configure and monitor security features like DLP and Defender for Office 365.
- Troubleshoot Office 365 issues and respond to service requests.
- Ensure Office 365 logs are properly integrated into the SIEM system.
Operational Security & Projects:
- Conduct user access audits, incident handling, and vulnerability remediation.
- Participate in security tool upgrades and rollout of new O365 features.
- Ensure compliance with internal policies and external standards.
- Drive improvements in access control and security posture.
Requirements
- Education: Bachelor’s in Computer Science, IT, Cybersecurity, or a related field.
- Experience:
- 4+ years in IT Security with expertise in IAM and Office 365.
- Hands-on experience with Azure AD, MFA, Conditional Access, and O365 security.
- Technical Skills:
- Strong knowledge of IAM principles, RBAC, authentication protocols.
- PowerShell scripting for automation.
- Exposure to Microsoft Graph API is a plus.
- Soft Skills:
- Strong problem-solving and analytical skills.
- Excellent communication and collaboration.
Good to Have
- Microsoft Certification – MS-102 or equivalent.

Similar jobs (10)
Azure AD + Windows & SQL Administrator
Location: Faridabad, Haryana
Experience: 8+ Years
Employment Type: Full-time
Role Overview
We are looking for an experienced Azure AD / Microsoft Entra ID + Windows & SQL Administrator with 8+ years of hands-on experience in managing enterprise infrastructure and hybrid Microsoft environments.
The candidate will be responsible for administration, troubleshooting, security, monitoring, backup, patching, and maintenance of Azure AD/Entra ID, Active Directory, Windows Server, and Microsoft SQL Server environments.
Required Skills
- Strong hands-on experience with Microsoft Azure AD / Entra ID.
- Strong knowledge of Active Directory and Azure AD Connect / Entra Connect.
- Extensive experience in Windows Server Administration – 2016/2019/2022.
- Strong experience with Microsoft SQL Server Administration.
- Hands-on experience with SQL Backup, Restore, Patching, and Performance Tuning.
- Good knowledge of DNS, DHCP, and Group Policy (GPO).
- Strong PowerShell scripting and automation skills.
- Experience working with Hybrid Identity and Azure Infrastructure.
- Strong troubleshooting and problem-solving skills.
- Ability to work in an enterprise/global infrastructure environment.
Active Directory Admin. , M365 Identity management
Experience: 6–9 Years
Location: Pan India
Notice Period: Immediate to Short Notice Preferred
Required Skills
- Strong experience in Microsoft Active Directory Administration
- Experience in Designing and Implementing Active Directory
- M365 Identity Management
- User, Group and Computer Object Management
- Active Directory Domain Services (AD DS)
- Group Policy Management (GPO)
- Active Directory replication and troubleshooting
- Identity and Access Management (IAM)
- Microsoft Entra ID / Azure AD
- User provisioning and de-provisioning
- Authentication and authorization management
- DNS and Active Directory integration
- PowerShell scripting for AD administration and automation
- Incident, Problem and Change Management
- Experience with ServiceNow or other ITSM tools
Required Technical Skill Set
MS Azure, M365, PowerShell
No of Requirements
1
Desired Experience Range
5 to 10 Years
Location of Requirement
Bangalore/Hydrabad
Desired Competencies (Technical/Behavioral Competency)
Must-Have
· Hands-on experience in Automating solutions in Power shell at L3 level
· Experience in monitoring, troubleshooting, and executing Azure Runbooks for operational automation
· Working knowledge of Microsoft 365 Groups management and support
· String Experience in M365 License Management
· Strong understanding of Agile methodologies, with experience working in Scrum or Kanban environments
· Knowledge of Azure monitoring and diagnostics tools (Log Analytics, Application Insights, Alerts)
· Good understanding of application security, reliability, and performance optimization in cloud environments
· Excellent problem-solving, collaboration, and communication skills
· Proficiency in DevOps practices, including CI/CD pipeline implementation and maintenance (Azure DevOps or GitHub Actions)
Good-to-Have
· AZ-204
· Good understanding of M365 Security and Compliance features, including retention, audit, and data governance policies
Location : Kochi
Candidated must be in Kerala and should be willing to relocate.
Notice Period : up to 30 days
Job Summary
We are seeking a motivated and detail-oriented Junior Azure Cloud Engineer with 2–3 years of experience in Microsoft cloud technologies. The ideal candidate will have hands-on experience in Microsoft Azure infrastructure services and Microsoft 365 administration. This role involves supporting cloud environments, managing identity and security, and assisting in cloud-based deployments and operations.
Key Responsibilities
- Manage and support Azure Entra ID (Azure Active Directory) including user management, group policies, conditional access, and identity governance.
- Configure and maintain Azure networking components such as Virtual Networks (VNet), Subnets, NSGs, VPN, and Load Balancers.
- Deploy and manage Azure Compute services including Virtual Machines, App Services, and related infrastructure.
- Administer Azure Storage services (Blob, File Shares, Backup, etc.).
- Monitor and maintain Microsoft 365 environments including Exchange Online, Teams, and SharePoint Online.
- Administer SharePoint Online sites, permissions, and configurations.
- Manage and monitor security policies using Microsoft 365 Security Center.
- Support cloud governance, compliance, and security best practices.
- Troubleshoot cloud infrastructure and M365-related issues.
- Collaborate with internal teams to support cloud migration and deployment activities.
- Document configurations, processes, and standard operating procedures.
Required Skills & Qualifications
- 2–3 years of hands-on experience in Microsoft Azure cloud services.
- Strong experience with Azure Entra ID, Azure Networking, Azure Storage, and Azure Compute services.
- Experience in Microsoft 365 Administration.
- Hands-on experience in SharePoint Online administration.
- Experience working with Microsoft 365 Security Center.
- Good understanding of cloud security, identity management, and governance.
- Strong troubleshooting and problem-solving skills.
- Good communication and documentation skills.
Nice to Have (Added Advantage)
- Experience with Azure DevOps (CI/CD pipelines, Repos, Boards, etc.).
- Basic scripting knowledge (PowerShell, Azure CLI).
- Azure or Microsoft 365 certifications.
About Nerve Solutions
Nerve Solutions is a team of engineers building products for real-time risk management and surveillance in financial markets. Our solutions enable market participants to identify, monitor, and quantify risks and anomalies in live markets, allowing them to take corrective action at sub-second speeds.
We also develop products for automated trading and have become a trusted technology partner to some of the largest financial services organizations in the region.
About the Role
We are looking for a proactive and detail-oriented IT & Information Security Engineer to manage and maintain the organization's IT infrastructure while ensuring the security, availability, and reliability of our systems. The role involves providing technical support, administering hardware and software, strengthening cybersecurity practices, monitoring network activities, and implementing security controls to safeguard organizational assets.
The ideal candidate should have strong infrastructure knowledge, a security-first mindset, and the ability to troubleshoot technical issues while continuously improving the organization's IT environment.
Roles & Responsibilities
- Manage and maintain the organization's IT infrastructure, including hardware, software, servers, and network systems.
- Provide technical support to employees by troubleshooting hardware, software, network, and system-related issues.
- Configure, deploy, and maintain desktops, laptops, peripherals, printers, and other IT equipment.
- Set up user accounts, systems, and required software for new employees and support onboarding activities.
- Monitor network performance and employee network activities to ensure system security and compliance.
- Implement and maintain endpoint security solutions, antivirus tools, firewalls, and access control mechanisms.
- Perform regular system updates, security patching, vulnerability assessments, and preventive maintenance.
- Identify infrastructure risks and recommend security enhancements to minimize vulnerabilities.
- Maintain documentation for IT assets, software licenses, network configurations, security policies, and system inventories.
- Assist in implementing information security best practices, security audits, and compliance initiatives.
- Coordinate with internal teams to ensure IT services effectively support business operations.
- Stay updated with the latest cybersecurity threats, technologies, and industry best practices.
Required Skills
- 2–4 years of experience in IT Infrastructure, System Administration, or Information Security.
- Strong knowledge of Windows operating systems, networking, servers, and IT infrastructure.
- Experience troubleshooting hardware, software, network, and user-related issues.
- Knowledge of network security, endpoint protection, firewalls, VPNs, and vulnerability management.
- Experience with Active Directory, user access management, and system administration.
- Familiarity with Microsoft 365 administration is an added advantage.
- Understanding of backup, disaster recovery, and IT asset management.
- Strong analytical and problem-solving skills with attention to detail.
- Good communication and documentation skills.
- Ability to work independently and collaboratively in a fast-paced environment.
Preferred Qualifications
- Bachelor's degree in Information Technology, Computer Science, or a related field.
- Certifications such as CompTIA A+, Network+, Security+, Microsoft, CCNA, or equivalent will be an added advantage.
About the role
We’re hiring an IT Systems Administrator for an NBFC to secure endpoints, SaaS, and networks across ~50 branches, ~250+ field staff, and ~50+ office users.
This is primarily an IT Admin + Security role, with secondary exposure to AWS cloud ops + light DevOps + basic DB access management.
If you’re an IT Admin aiming to break into AWS Cloud Ops + DevOps, this role is a strong next step — you’ll own core IT/security and get hands-on exposure to cloud operations and deployments.
Key responsibilities (Primary: IT Admin + Security)
- Manage endpoint security for laptops and mobiles (policies, patching, encryption, antivirus/EDR); drive MDM implementation now/future (e.g., Intune/Jamf).
- Administer Google Workspace (Gmail/Drive/Calendar): users, groups, permissions, SSO, MFA, sharing controls.
- Own joiner–mover–leaver lifecycle: provisioning/deprovisioning, access controls, periodic access reviews.
- Secure branch connectivity: VPN, internal Wi-Fi, internet usage controls; coordinate troubleshooting and standardization across branches.
- Manage HO security stack: firewall operations, rule changes with change control, monitoring/log review (basic but consistent).
- Secure SaaS tools (CRM/HRMS/comms like Slack/Zoom): role-based access, MFA enforcement, offboarding, integration/OAuth controls.
- Maintain IT asset inventory: procurement coordination, issuance/return, audits, warranty/AMC, license renewals; remote lock/wipe for lost devices.
- Handle security incidents: phishing, account compromise, device loss/theft — contain, investigate, recover, and prevent recurrence.
- Run backups and basic DR testing; maintain SOPs/documentation and train staff on cyber hygiene.
- Provide hands-on user support: laptop builds, software installs, Outlook/Excel issues, VPN/Wi-Fi troubleshooting, escalations and vendor coordination.
Secondary responsibilities (AWS + DevOps + DB ops support)
- Support AWS administration: IAM users/roles/policies, MFA, access key hygiene, basic log review (e.g., CloudTrail).
- Manage AWS access controls: security groups/firewall rules, IP allowlists/whitelisting (admin tools, databases, vendor access).
- Assist engineering with DevOps operations:
- CI/CD support (deployment coordination, rollbacks, environment configuration)
- Secrets/credentials management and rotation (no shared creds)
- DNS + SSL/TLS certificates, basic monitoring/alerting coordination
- Bonus: Docker/Kubernetes and Terraform exposure
- Basic database operations (admin-lite):
- DB user creation, roles/permissions, least-privilege access
- IP allowlisting/whitelisting for DB access via VPN/approved sources
- Backup/restore verification coordination and basic monitoring signals (connections/storage)
Requirements
- 3+ years in IT security / systems administration (BFSI or branch-heavy org preferred).
- Hands-on with Google Workspace or Microsoft 365 administration.
- Must have hands-on experience leading or executing an email suite migration (e.g., Google Workspace ↔ Microsoft 365), including mailbox migration, DNS cutover, MX/SPF/DKIM/DMARC reconfiguration, and user transition management.
- Strong endpoint/security fundamentals: encryption, patching, AV/EDR, remote support, device compliance.
- Comfortable with networks: VPN/Wi-Fi/LAN troubleshooting; firewall basics and change discipline.
- Strong operational discipline: asset tracking, vendor management, documentation, ticketing, user communication.
- Practical AWS familiarity (IAM, access controls, logging) and ability to support DevOps workflows.
Nice to have
- Experience implementing MDM at scale (Intune/Jamf/SureMDM).
- Exposure to SOC2 / ISO27001 evidence, controls, and audit workflows.
- Scripting for automation (PowerShell/Bash/Python).
- Familiarity with managed databases and secure access patterns.

The recruiter has not been active on this job recently. You may apply but please expect a delayed response.
Job Title: Citrix & Azure AVD Administrator
Experience: 4–6 Years
Job Summary
We are looking for an experienced Citrix & Azure AVD Administrator with hands-on experience managing enterprise Citrix environments and Azure Virtual Desktop (AVD). The candidate should have strong troubleshooting skills and knowledge of Windows Servers, Active Directory, GPO, PowerShell, Nutanix, and ITIL processes.
Key Responsibilities
- Administer and support Citrix DaaS in hybrid environments and Azure AVD.
- Manage large and complex Citrix DaaS and AVD environments.
- Manage Windows Servers and Nutanix hypervisor environments.
- Troubleshoot Citrix issues and perform root cause analysis (RCA).
- Manage Citrix printing and printer-related issues.
- Configure and manage Active Directory, GPO, and Citrix policies.
- Develop automation scripts using PowerShell for Citrix and Azure AVD.
- Support Citrix site upgrades and Cumulative Updates (CU).
- Handle incidents, changes, problems, and service requests according to ITIL processes.
- Monitor system performance and ensure a stable virtual desktop environment.
Required Skills
- 4–6 years of experience in Citrix Administration.
- Hands-on experience with Citrix DaaS and Azure AVD.
- Strong knowledge of Citrix hybrid environments.
- Experience with Windows Server administration.
- Knowledge of Nutanix Hypervisor.
- Strong troubleshooting and root cause analysis skills.
- Good knowledge of Active Directory, GPO, and Citrix Policies.
- Experience with Citrix Printer Management.
- Good knowledge of PowerShell automation.
- Understanding of ITIL processes: Incident, Change, Problem, and Service Request.
Good to Have
- Experience with Citrix Site upgrades and CU upgrades.
- Knowledge of Microsoft technologies.
- Experience managing large-scale enterprise Citrix environments.
Job Overview
We are looking for a technically strong IT Infrastructure & Automation Engineer to manage, implement, migrate, and optimize enterprise IT environments across Microsoft infrastructure, endpoint management, identity, collaboration, security, and AI-powered automation.
The ideal candidate should have strong hands-on experience with Microsoft technologies, excellent communication skills, and the ability to deliver infrastructure and digital transformation projects end-to-end. Experience with non-Microsoft technologies and multi-vendor environments will be an added advantage.
Key Responsibilities
Microsoft Intune & Endpoint Management
- Implement and manage Microsoft Intune environments.
- Configure device enrollment, application deployment, policies, compliance, and security baselines.
- Manage Windows, macOS, iOS, and Android devices.
- Configure Conditional Access, endpoint security, and compliance controls.
- Manage Windows Autopilot and device lifecycle activities.
- Monitor and resolve endpoint compliance and configuration issues.
SCCM / Configuration Manager
- Deploy, configure, and maintain SCCM infrastructure.
- Manage OS deployment, imaging, software distribution, and patch management.
- Support SCCM and Intune co-management.
- Generate reports and troubleshoot SCCM issues.
- Assist with migration to modern endpoint management.
Microsoft Exchange
- Administer Exchange Online and Hybrid Exchange environments.
- Support mailbox and tenant migration activities.
- Manage mail flow, connectors, transport rules, and email security.
- Configure SPF, DKIM, DMARC, anti-spam, and anti-phishing controls.
- Troubleshoot messaging and mail delivery issues.
Active Directory & Identity
- Manage Active Directory and Group Policy environments.
- Configure Microsoft Entra ID integration and synchronization.
- Implement SSO, MFA, Conditional Access, and identity security.
- Handle user provisioning, onboarding, offboarding, and access management.
- Support hybrid identity environments.
SharePoint & Microsoft 365
- Implement and administer SharePoint Online.
- Configure sites, permissions, document management, and governance.
- Support file-share and legacy platform migrations.
- Integrate SharePoint with Teams, Power Platform, and business applications.
- Support knowledge and collaboration solutions.
- AI & Automation
- Implement Microsoft 365 Copilot and Copilot Studio solutions.
- Develop AI-powered assistants and agents for business functions.
- Work with Azure OpenAI, Azure AI Search, and Document Intelligence.
- Design RAG and knowledge management solutions.
- Integrate AI solutions with SharePoint, Teams, Dataverse, and enterprise applications.
- Implement workflow automation using Power Automate and Power Platform.
- Support AI governance, security, compliance, and responsible AI adoption.
- Security & Compliance
- Work with Microsoft Defender, Conditional Access, Identity Protection, and endpoint security.
- Implement Microsoft Purview, DLP, information protection, and governance solutions.
- Support security and compliance initiatives across Microsoft environments.
- Identify infrastructure and security gaps and recommend improvements.
Required Technical Skills
- Microsoft Intune
- SCCM / Microsoft Configuration Manager
- Exchange Online & Hybrid Exchange
- Active Directory
- Microsoft Entra ID
- SharePoint Online
- Microsoft Teams Administration
- Windows Server Administration
- Microsoft 365 Administration
- PowerShell
- Microsoft Defender Suite
- Conditional Access
- Identity Protection
- Microsoft Purview
- Endpoint Security
- Device Compliance
- Data Loss Prevention
- Microsoft 365 Copilot
- Copilot Studio
- Azure OpenAI
- Azure AI Services
- Power Automate
- Power Platform Integration
- Preferred Experience
Experience with AWS, GCP, VMware, Citrix, Cisco, Fortinet, Palo Alto, Linux, Veeam, ServiceNow, Trend Micro, CrowdStrike, or similar enterprise technologies will be an advantage.
Knowledge of enterprise architecture, cybersecurity, governance, and compliance frameworks is also preferred.
Candidate Profile
- 5+ years of relevant implementation and administration experience.
- Strong troubleshooting and analytical skills.
- Excellent communication and stakeholder management abilities.
- Strong documentation and reporting skills.
- Ability to manage multiple projects independently.
- Comfortable working with business stakeholders and technical teams.
- Bachelor's degree in IT, Computer Science, Engineering, or a related field.
Preferred Certifications
- Microsoft Certified: Endpoint Administrator Associate
- Microsoft 365 Certified: Administrator Expert
- Microsoft Certified: Identity and Access Administrator Associate
- Microsoft Certified: Azure Administrator Associate
- Microsoft Certified: Azure AI Engineer Associate
- Microsoft Certified: Information Protection Administrator Associate
- ITIL Foundation
Key Deliverables
- Intune implementation and endpoint management.
- SCCM deployment, migration, and optimization.
- Exchange Online and Hybrid Exchange implementation.
- Active Directory and Entra ID integration.
- SharePoint Online deployment and governance.
- Microsoft 365 security and compliance implementation.
- AI and Copilot deployment and governance.
- Technical documentation, knowledge transfer, and operational handover.
- Integration of Microsoft and third-party enterprise technologies.
- Strong hands-on experience in Microsoft Azure Cloud.
- Good understanding of Azure services such as Compute, Storage, Event Hub, Event Subscription, Storage Queue, and PaaS services.
- Basic understanding of Azure AI Foundry and AI-related Azure service setup.
- Good Azure networking basics: VNet, subnet, routing, and basic troubleshooting.
- Strong knowledge of Terraform, especially:
- Terraform state
- plan / apply
- troubleshooting failures
- migration risks
- Terraform Enterprise concepts
- Strong Python coding capability, not just basic scripting.
- Experience using Python for API integration, automation, JSON/YAML handling, and internal tooling.
- Good understanding of CI/CD pipelines.
- Ability to troubleshoot pipeline failures.
- Comfortable with YAML and JSON.
- Ability to troubleshoot Azure infrastructure/platform issues.
- Ability to collect logs/evidence and coordinate with network/app/Microsoft support teams.
- Basic awareness of agentic AI / LLM concepts.
- Awareness of security and cost best practices.
Good to Have Skills
- Hands-on experience with Harness.
- Hands-on experience with Terraform Enterprise.
- Exposure to LangGraph / LangChain.
- Exposure to agentic AI workflows or skill creation.
- Exposure to Claude or enterprise LLM integrations.
- Knowledge of Azure ML Workspace, model registry, and managed endpoints.
- MLOps / LLMOps knowledge.
- FinOps / Azure cost optimization experience.
- Azure certifications: AZ-104, AZ-305, AZ-400, AZ-500.
Screening Priority:
Azure Cloud + Terraform + Python Coding + CI/CD Troubleshooting + YAML/JSON + Basic Agentic AI Awareness
IT Systems Engineer
Location: Bengaluru, India · On-site | Experience: 5+ years in IT systems / infrastructure
Department: IT & Information Security | Employment Type: Full-time | Reports To: Engineering Leadership
Focus: Own the identity, endpoints, network, and compliance backbone that powers immersive technology at
scale.
The Mission
About Metadome.ai
Metadome.ai is an immersive 3D & XR technology company that enables cloud-based, photorealistic, and captivating customer experiences for brands. Our technology offers a complete stack for creating immersive 3D & XR applications with omni-channe deployment across both in-store and digital touchpoints, and over a multitude of devices. These experiences span a spectrum of use cases across the automotive, home décor, fashion, and cosmetics & accessories sectors. Our flagship automotive platform — Autodome — enables unprecedented photorealistic, cloud-based immersive 3D & XR applications that cover the entire pre-retail funnel, empowering brands to launch products virtually and drive awareness, engagement, and bookings among modern automotive consumers. Today, we are trusted partners to leading brands across the globe — including Unilever, MG Motor, Lexus, Asian Paints, Tata Motors, and Royal Enfield, among others. We have also partnered with the likes of TCS, SAP , and PwC, and are an active voice in the XR community, including the
Metaverse Standards Forum and the VR/AR Association.
About the Role
We are looking for a hands-on IT Systems Engineer to own and run the technology backbone that keeps our teams productive and our data secure. You will be the single point of accountability for IT operations and information security across a multi-location business where 24x7 systems availability is core to how we operate — managing identity, endpoints, network, and our cloud workspace, while operating and continuously hardening our GDPR, SOC 2, and ISO 27001 compliance posture.
This is a builder-operator role, not a supervisory one. We run a tight ship on security and compliance, and we expect you to have personally implemented and operated the systems and controls described below — you should know them inside out, down to the configuration, the evidence, and the edge cases.
Core Responsibilities
● Identity & Access Management — JumpCloud:
○ Own the JumpCloud directory end-to-end: user lifecycle (joiner / mover / leaver), groups, and organizational structure.
○ Administer SSO, enforce MFA, and configure conditional and device-based access policies across all SaaS applications.
○ Manage cross-platform device policies (macOS, Windows, Linux) via JumpCloud device management, including disk encryption and compliance baselines.
○ Integrate RADIUS / LDAP for Wi-Fi and application authentication.
○ Automate onboarding and offboarding to guarantee least-privilege access and clean, auditable deprovisioning.
● Google Workspace Administration — GWS:
○ Administer the Google Workspace tenant: users, groups, organizational units, and email routing.
○ Configure and enforce security controls — 2-Step Verification, context-aware access, DLP rules,
and sharing / visibility policies.○
○ Manage retention, eDiscovery, and legal holds through Google Vault. Optimize licensing and SaaS spend across Workspace and other portals.
Endpoint & Threat Protection — Sophos:
○ Deploy, configure, and manage Sophos Central (Intercept X / XDR) across all endpoints and
servers.
○ Monitor alerts, triage threats, and lead incident detection, response, and remediation.
○ Maintain endpoint encryption, web / application control, and device-hardening standards.
○ Where Sophos Firewall is in use, manage firewall policies, IPS, and secure remote access.
Network, Firewall & Wi-Fi:
○ Design, configure, and maintain firewalls, VLAN segmentation, VPN, and secure remote access.
○ Administer enterprise Wi-Fi and wired networks (switches, access points), including
RADIUS-backed authentication.
○ Manage LAN / WAN connectivity, ISP relationships, and network performance and uptime.
○ Implement network monitoring, intrusion detection, and centralized logging.
Hardware, Software & Asset Management:
○ Own the full hardware lifecycle — procurement, provisioning / imaging, maintenance, repair, and
decommissioning.
○ Support a mixed fleet of macOS, Windows, and Android devices, including high-performance workstations and XR / VR hardware used by our creative and engineering teams.
○ Maintain an accurate hardware and software inventory and asset register.
○ Manage software deployment, patch management, and license compliance.
Security, Risk & Compliance — GDPR · SOC 2 · ISO 27001:
○ Operate and continuously improve the company's Information Security Management System
(ISMS).
○ Own day-to-day compliance for GDPR, SOC 2 (Type II), and ISO/IEC 27001 — including control
implementation, evidence collection, and continuous monitoring.
○ Conduct risk assessments, internal audits, periodic access reviews, and vendor security / DPA
assessments.
○ Serve as a primary point of contact during external audits and customer security reviews.
○ Maintain security policies, records of processing (RoPA), DPIAs, and incident / breach-response
runbooks.
○ Drive security-awareness and phishing-simulation programs across the organization.
IT Operations & Support:
○ Ensure 24x7 high availability of core systems and meet defined uptime and SLA metrics.
○ Provide escalation-level troubleshooting and support across macOS, Windows, and Android.
○ Manage backups, disaster recovery, and business-continuity testing.
○ Coordinate internal teams and third-party vendors to deliver IT projects on time and within
budget.
○ Maintain documentation, runbooks, and standard operating procedures.
○ Own and report on the IT budget and asset allocation.
Required Skills & Experience
● 5+ years in IT systems / infrastructure engineering — with direct, hands-on ownership of the systems
below rather than purely supervisory exposure.
● JumpCloud — demonstrated hands-on expertise across identity, SSO, MFA, and device management.
● Google Workspace (GWS) — deep admin-console experience including security, DLP , and Vault.
● Sophos — hands-on endpoint / XDR administration and threat response.
● Networking — firewall configuration, Wi-Fi, VLANs, VPN, LAN / WAN, and RADIUS / LDAP fundamentals.
● GDPR, SOC 2 & ISO 27001 — hands-on — you have personally taken an organization through at least one
full audit / certification cycle and know the controls, evidence, and auditor expectations inside out.
Cross-platform support — proven troubleshooting across macOS, Windows, and Android in a 24x7, multi-location environment.
System security — solid grasp of IDS / IPS, endpoint hardening, encryption, and backup / recovery.
Education — B.Sc. / B.Tech in Information Technology, Computer Science, or a related discipline.
Mindset — strong documentation discipline, ownership, resourcefulness, and a structured, problem-solving approach.
Preferred Qualifications
●Relevant certifications — e.g., ISO 27001 Lead Implementer / Auditor, CompTIA Security+ / Network+, or vendor certifications from JumpCloud and Sophos.
●Experience with compliance-automation platforms such as Sprinto, Vanta, or Drata.
●Scripting and automation for IT operations (Bash, PowerShell, or Python).
●Experience in a fast-paced SaaS or technology company serving enterprise and global clients.
●Familiarity with supporting creative, 3D, or XR workflows and high-performance computing environments.
Why Join Us
You will own the systems and security posture of a company building category-defining immersive technology for some of the world's most recognizable brands. It is a high-trust, high-ownership role with the autonomy to design things properly — and the visibility that comes with keeping a security- and compliance-first business running
flawlessly.






