About the Role
This is an on-site position requiring versatility across technical domains—from configuring secure device workflows to installing physical infrastructure like A/V systems and network cabling.
Responsibilities
- Manage mobile device management platforms such as Microsoft Intune and Jumpcloud for both Windows and macOS, covering device enrollment, configuration, compliance, and software distribution
- Design and deploy zero-touch provisioning using Windows Autopilot and Apple Business Manager to automate device setup without manual intervention
- Conduct regular audits of device enrollment to ensure full compliance with organizational standards across all managed endpoints
- Create and maintain bring-your-own-device policies and enrollment processes that support secure access from personal devices
- Oversee identity management in Microsoft Entra ID, including user lifecycle, group configurations, dynamic membership, and Conditional Access rules
- Enforce adaptive access controls by integrating device compliance, identity signals, and geographic context into access decisions
- Maintain single sign-on and application provisioning integrations using SCIM and SAML across cloud applications
- Advance the organization's zero trust strategy by converting security policies into enforceable technical configurations
- Lead operations and scaling of on-site physical systems, including access control, badge readers, and door hardware
- Deploy and support printers and print management solutions across office locations
- Maintain and troubleshoot on-premises network infrastructure, including switches, cabling, and wireless connectivity
- Support office expansions and renovations by coordinating IT infrastructure deployment for new or updated spaces
- Collaborate with facilities teams and external vendors on audiovisual systems and conference room technology projects
- Assist in implementing a compliance framework such as NIST by mapping requirements to specific IT controls and documentation
- Establish and enforce security baselines for endpoints, including patch cycles and device health monitoring
- Work with leadership to define and implement information security policies covering acceptable use, access governance, and incident response
- Monitor endpoint security alerts and telemetry, coordinating with stakeholders to address threats and vulnerabilities
- Act as the escalation point for complex technical issues involving hardware, software, and identity systems
- Provide mentorship and knowledge transfer to grow the technical capabilities of the support team
- Improve service workflows by refining ticketing procedures, documentation practices, and knowledge base content in Confluence and Jira Service Management
- Define scalable technical support processes that align with organizational growth
Work Arrangement
On-site — Portland, Oregon
Other
This is an on-site role in our Portland office. You should be comfortable operating at multiple levels: one day you’re writing configuration profiles to automate workstation security, the next you’re installing A/V equipment and running patch cables.