IT Engineer

Second Front Systems, Inc.
Washington, DC, United States
25 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$95,000.0 - $110,000.0
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Systems Engineering User Authentication Bash Shell Business Systems Software as a Service Multi-Factor Authentication Identity and Access Management IT Management Information Technology Operations Python (Programming Language) Windows PowerShell
+9 more
Single Sign-On Software Deployment Software Vulnerability Management Scripting Okta Build Management Information Technology Casper Suite Gsuite

Job description

Second Front Systems (2F) is seeking an IT Engineer to help build, automate, and scale the internal technology ecosystem that powers our mission. As a fast-growing defense technology company operating at the intersection of national security and commercial innovation, we rely on secure, reliable, and efficient internal systems to enable our employees to deliver mission-critical capabilities to our government customers.

As an IT Engineer, you will own and evolve the identity, endpoint, and business systems that support our remote-first workforce. You’ll partner closely with Security, Engineering, and People Operations to deliver a seamless employee technology experience while ensuring our internal infrastructure remains secure, compliant, and scalable. This role is ideal for engineers who enjoy automating repetitive work, solving complex technical challenges, and building systems that enable organizational growth.

Beyond day-to-day operations, you’ll help shape the future of IT at 2F by driving automation, improving operational processes, and implementing scalable solutions that reduce manual effort and strengthen security across the organization.

Note: This position is open to U.S.-based candidates and is fully remote, with occasional travel for company offsites and team events. Candidates must reside in one of our approved hiring hubs:

  • DC/Maryland/Virginia
  • Raleigh/Durham/Chapel Hill, NC
  • Denver/Colorado Springs, CO
  • Dallas/Fort Worth, TX, * Own identity and access management across core enterprise platforms, including Okta and Google Workspace, administering user lifecycle management, Single Sign-On (SSO), Multi-Factor Authentication (MFA), and role-based access controls.
  • Lead endpoint management for company devices, primarily macOS systems managed through Jamf, developing secure endpoint baselines, software deployment workflows, and lifecycle management processes.
  • Design and build automation using APIs and scripting languages such as Python, Bash, or PowerShell to streamline IT operations, eliminate repetitive tasks, and improve operational efficiency.
  • Administer and support business-critical SaaS applications and collaboration platforms, ensuring secure, reliable, and scalable services that enable employees to work effectively.
  • Partner closely with Security to support access reviews, vulnerability remediation, asset management, and compliance initiatives across frameworks including FedRAMP, SOC 2, ISO 27001, and CMMC.
  • Serve as the senior escalation point for complex employee technology issues, major incidents, and advanced troubleshooting across identity, endpoint, and SaaS platforms.
  • Continuously improve IT operations through process optimization, documentation, self-service capabilities, and scalable infrastructure that supports company growth.
  • Collaborate across Engineering, Security, and People Operations to ensure internal technology solutions align with business needs while maintaining a secure and exceptional employee experience.

Requirements

  • 3-5+ years of experience in IT Engineering, Systems Administration, Enterprise IT, or a related technical discipline supporting cloud-first organizations.
  • Hands-on experience administering identity platforms such as Okta and Google Workspace, with strong knowledge of identity lifecycle management, authentication, and enterprise access controls.
  • Experience managing Apple device fleets using Jamf, including device provisioning, endpoint security, software deployment, and lifecycle management.
  • Proficiency developing automation through scripting languages such as Python, Bash, or PowerShell, along with experience leveraging APIs and workflow automation tools.
  • Strong understanding of SaaS administration, endpoint management, enterprise productivity platforms, and modern cloud-based IT infrastructure.
  • Excellent troubleshooting and problem-solving skills with experience supporting distributed, remote-first workforces in fast-paced environments.
  • Strong written and verbal communication skills with the ability to translate technical concepts for both technical and non-technical stakeholders.
  • A continuous improvement mindset with a passion for automation, operational excellence, and building scalable internal technology solutions., * Experience working in high-growth startups or rapidly scaling technology organizations.
  • Familiarity with security and compliance frameworks such as FedRAMP, SOC 2, ISO 27001, and CMMC.
  • Experience supporting remote-first organizations and designing employee technology experiences that scale effectively.
  • Relevant certifications such as Okta Certified Professional, Jamf Certified Tech, Google Workspace Administrator, Security+, or comparable enterprise IT certifications.
  • Experience partnering closely with Security teams to strengthen organizational security posture through automation, identity governance, and endpoint management.

The base salary for this position will fall between $95,000-110,000 Your ultimate compensation will be determined by professional background, technical proficiency, seniority, and regional cost factors. Furthermore, this opportunity includes potential eligibility for equity awards and discretionary bonuses, rounding out a comprehensive total rewards offering.

Benefits & conditions

Pulled from the full job description

  • Referral program
  • Parental leave
  • Health insurance
  • 401(k) matching
  • Paid time off
  • Vision insurance
  • Dental insurance, * Competitive Salary
  • 100% Healthcare, vision and dental coverage
  • 401(k) + 3% company contribution
  • Additional benefit perks (One Medical membership, mental health resources and family planning assistance)
  • Equity incentive plan
  • Tech + office supplies stipend
  • Annual professional development stipend
  • Flexible paid time off + federal holidays off
  • Parental leave
  • Work virtually, near one of our hub locations
  • Referral Bonus, In accordance with Colorado law, applicants may redact their date of birth, dates of attendance, and dates of graduation from any uploaded documents.

Maryland:

Under Maryland law, an employer may not require or demand, as a condition of employment, prospective employment, or continued employment, that an individual submit to or take a polygraph examination or similar test. An employer who violates this law is guilty of a misdemeanor and subject to a fine not exceeding $100.

Compensation Range: $95K - $110K

About the company

Second Front Systems (2F) is a public-benefit software company powering software for the free world. We eliminate the friction that slows innovation, enabling faster, more secure development and deployment of software across government and regulated networks. Built by national security veterans and backed by top-tier venture capital, our platform is trusted by the world’s leading organizations to cut deployment timelines from years to weeks. We move fast, solve hard problems, and deliver trusted capabilities where they’re needed most. Our work strengthens global security and gives the United States and its allies a lasting competitive advantage. Learn more at secondfront.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

Videos

See all

Related articles

See all