Responsibilities
- Lead the end-to-end management of our Zero Trust (ZTNA) platform. You’ll design granular access policies, manage Tunnels for private applications, and configure the client with a seamless, identity-first security model.
- Act as a strategic bridge between IT and our Engineering and Product teams. You will work better together by proactively designing secure access paths for new tools and dev environments that empower the team rather than slowing them down.
- Serve as the final escalation point for complex connectivity puzzles. You’ll sweat the details; logs, diagnostics, and network telemetry to solve root causes—whether it’s a policy mismatch, a device posture failure, or a local network conflict.
- Use scripting (Python, PowerShell, or Bash) and Infrastructure as Code to manage global configurations, ensuring our security posture is version-controlled, consistent, and reproducible.
- Own the management and security posture of a global, hybrid fleet using Kandji/Iru (macOS) and Intune (Windows). You’ll lead the configuration of CrowdStrike Falcon and ensure every device meets our security baseline through automated compliance and zero-touch deployment.
- When a vulnerability is identified via CrowdStrike Spotlight, you own the problem. You’ll design the remediation plan and use Real Time Response (RTR) for surgical, remote fixes across the fleet to keep us ahead of threats.
- Manage our core productivity stack, including Okta (Workflows/Lifecycle Management), Google Workspace, Zoom, Slack, and Azure AD/O365, ensuring identity is the foundation of every access decision and building customer trust through reliable systems.
- Provide IT service desk support, including change requests, troubleshooting, and break/fix support as needed, mainly serving as an escalation point and SME.
- Help ensure a strong security posture and incident response process is being followed across systems you own and manage. You will also assist with security/compliance initiatives when relevant.
- Act as an AI thought leader, promoting the use of approved AI solutions across our tech stack. Work closely with our Security team, relevant stakeholders, and broader user base to administer and secure AI tools increasing adoption and productivity throughout Juniper Square.
Requirements
- Bachelor's degree
- 6-10 years of experience in Systems Administration with a proven track record of managing global, high-growth, cloud-first environments.
- Deep, hands-on experience building context-aware access policies.
- Ability to explain the 'why' behind security architecture to both technical and non-technical audiences.
- Strong experience with security incident prevention, detection, and response.
- Expert-level knowledge of CrowdStrike Falcon (specifically RTR and vulnerability modules) and how it integrates with ZTNA for posture-based access.
- High proficiency in Python, PowerShell, Javascript, and/or Bash scripting languages.
- Identity-focused mindset with vast Okta and IAM experience.
- Strong experience with cloud infrastructure services like AWS and GCP.
- Strong experience maintaining Kandj(Iru), Intune, ZTNA, O365, Azure AD/Entra ID in a distributed, enterprise setting.
- Expert knowledge of Google Workspace.
- Experience with cloud service integrations like Zoom, Slack, Atlassian.
- Experience managing and maintaining Agentic AI or LLM solutions.
- Experience contributing to AI-powered features (e.g., intelligent search, conversational interfaces, recommendations, automation)
- Designing and integrating LLM-powered systems — including agents, copilots, and tool-using workflows — into production environments
- Navigate high-pressure 'connection is down' situations with empathy and clarity, prioritizing the user experience while maintaining our security integrity.
- Willingness to juggle multiple projects in a fast-paced startup environment, and be on-call as needed.
Nice to Have
- Technical field is a plus, but not necessary
- Experience with security assurance standards such as SOC 2 is a plus.
- Windows and Linux knowledge is a plus.
- Enterprise experience managing fleets of both Macs and Windows across multiple tenants. Specifically managing both Kandji/Iru and Intune MDMs. You know how to build profiles and policies that 'just work.'
Benefits
- Health, dental, and vision care for you and your family
- Life insurance
- Mental wellness coverage
- Fertility and growing family support
- Flex Time Off in addition to company-paid holidays
- Paid family leave, medical leave, and bereavement leave policies
- Retirement saving plans
- Allowance to customize your work and technology setup at home
- Annual professional development stipend
Work Arrangement
Hybrid
Team
Team size: 1000. Structure: 1,000+ employees strong
Additional Information
- The application deadline for this role is May 10th, 2026