BLOCKSKYE INC is seeking an IT Systems Engineer to own the backbone of our modern workplace. You will be the primary architect and guardian of our identity management, device orchestration, and productivity suites, creating a seamless, secure, and automated experience for every employee.
What You'll Do
- Serve as the subject matter expert for Okta, managing SSO integrations, MFA policies, and Advanced Server Access.
- Automate user lifecycle management (provisioning/deprovisioning) using Okta Workflows or API integrations.
- Perform regular security audits and health checks of the Okta tenant.
- Engineer and maintain our Jamf Pro environment to manage a fleet of macOS devices.
- Develop and deploy configuration profiles, policies, and scripts to automate software distribution and patch management.
- Ensure Zero-Touch deployment through Apple Business Manager.
- Administer the full M365 stack, including Exchange Online, SharePoint, Teams, and OneDrive.
- Manage Azure AD (Entra ID) synchronization, conditional access policies, and license optimization.
- Lead migrations and implement data loss prevention and eDiscovery protocols.
- Harden system configurations based on SOC2 Type 2 and CIS benchmarks.
- Partner with the Security team to remediate vulnerabilities and respond to incidents.
- Maintain detailed documentation for architecture, standard operating procedures, and compliance audits.
- Administer the Google Workspace stack, including Gmail, Drive, and Groups.
- Manage DLP, email routing, and other related features for Google Workspace.
- Occasionally support the helpdesk team with tickets as needed.
What We're Looking For
- Proven expertise in Okta (Workflows, LCM, Adaptive MFA).
- Deep experience with Entra ID (Azure AD).
- Hands-on administration of Jamf Pro and Apple Business Manager.
- Comprehensive knowledge of the Microsoft 365 E5 stack.
- Experience providing secondary support for Google Workspace.
- Familiarity with tools like Freshdesk, Jira, Confluence, and Torii.
- Foundational knowledge of networking (DNS, DHCP, VPN), APIs, SCIM, and SAML/SSO.
Nice to Have
- Relevant Okta certifications.
- Additional knowledge of Intune and Autopilot.
Technical Stack
- Identity & Access: Okta, Azure AD (Entra ID)
- Device Management: Jamf Pro, Apple Business Manager
- Productivity Suites: Microsoft 365, Google Workspace
- Operations Tools: Freshdesk, Jira, Confluence, Torii
- Core Infrastructure: DNS, DHCP, VPN, APIs, SCIM, SAML/SSO
Work Mode
This is a fully remote position open to global candidates.



