Where multiple locations are listed for this role, the position may be based in any of those locations, with priority determined according to the order of listing.
We are looking for an IT Operations Specialist to build and maintain our IT infrastructure, drive security compliance, and ensure system reliability as we grow.
What You Will Do
- Own our SOC 2 Type II and HIPAA compliance programmes end to end, including control management, evidence collection, policy documentation, and audit readiness.
- Manage company IT infrastructure including device management (MDM), identity and access control, and endpoint security.
- Ensure system reliability by building monitoring and alerting, leading incident response, and running post-mortems.
- Manage and optimise cloud infrastructure (AWS/GCP) covering security configuration, network architecture, and cost control.
- Lead vendor security assessments, third-party risk reviews, and customer security questionnaire responses.
- Drive automation across IT and compliance workflows to reduce manual work.
- Handle IT provisioning and deprovisioning for employee onboarding and offboarding.
- Work with the engineering team to embed security best practices into CI/CD and deployment processes.
You might be a fit if
- Degree in Computer Science, Information Systems, or a related field.
- 3 to 5 years of experience in IT operations, security operations, or SRE.
- Hands-on experience with SOC 2 and/or HIPAA compliance, including at least one full audit cycle.
- Comfortable with AWS or GCP, with practical experience in networking, IAM, and monitoring.
- Experience with MDM, SSO/IdP tools (such as Okta or Google Workspace), and endpoint security tooling.
- Familiarity with infrastructure-as-code tools such as Terraform or Ansible.
- Strong documentation habits and a structured approach to work.
Bonus
Experience working at an early-stage startup where you have worn multiple hats. ITIL or relevant information security certifications.