Information Technology Specialist
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+1 more
Requirements
-
3-5 years of hands-on IT experience in a generalist role \n
-
Microsoft 365 administration: Entra ID, Exchange Online, SharePoint, Intune/MDM \n
-
Endpoint security: patch management, MFA/conditional access, Defender for Business or equivalent \n
-
Experience managing network hardware: switches, enterprise Wi-Fi, firewall rules \n
-
MDM deployment and administration experience (Intune, Jamf, or Kandji) \n
-
Strong documentation discipline \n
-
Clear communicator with both non-technical staff and external technical partners \n
-
Preferred: exposure to securing AI/LLM tooling and cloud AI services access governance and conditional access, not AI/ML development \n
-
Preferred: experience with networked lab/scientific instrumentation and vendor-managed cloud platforms
Benefits & conditions
n \n
-
Primary internal point of contact for all hardware, software, connectivity, and access issues across on-site and remote employees \n
-
Manage the MSP relationship: define what goes to them, hold them to SLAs, and escalate appropriately \n
-
Manage the full device lifecycle: procurement, imaging, deployment, and decommissioning \n
-
Administer Microsoft 365: Entra ID, Exchange Online, SharePoint, Teams, OneDrive, and associated licenses \n
-
Own IT onboarding and offboarding workflows, account provisioning, device assignment, access revocation, and litigation hold procedures; this process must be airtight and documented \n
-
Maintain a current IT asset inventory \n
\n
Cybersecurity & Information Security
\n \n
-
Handle the organization’s day-to-day security posture; engage the MSP for complex security projects and escalations \n
-
Administer endpoint protection, patch management, MFA enforcement, and conditional access policies \n
-
Monitor M365 security and compliance tooling: Purview, Defender for Business, audit logs \n
-
Conduct periodic access reviews and permission audits; produce findings reports for management \n
-
Lead first-response on security incidents: containment first, investigation second and coordinate MSP escalation where needed; this includes employee departure scenarios involving potential data exfiltration \n
-
Manage email authentication controls (SPF, DKIM, DMARC) and anti-phishing policies \n
-
Manage security and access governance for AI/LLM tools in use across the org, enforce least-privilege access, MFA, and conditional access on AI service accounts, app registrations, and admin roles \n
-
Gate and process access requests for AI infrastructure (Azure OpenAI, Entra app registrations, Key Vault, etc.) submitted by AI/data engineering staff, approve or deny per policy, and escalate architecture or capability decisions to the appropriate technical owner \n
-
Support enforcement of the company’s AI usage policy, approved tools, data classification for AI inputs, and prohibition of unsanctioned “shadow AI” tools in coordination with outside AI policy/training vendors \n
\n
Lab & Instrument IT
\n \n
-
Maintain network connectivity for laboratory instruments and manage isolated VLANs where required \n
-
Serve as the IT interface for lab instrument vendors and cloud-connected instrument platforms (e.g., SaaS-connected analytical instruments, vendor cloud dashboards) \n
-
Administer and secure internally hosted lab/process data systems including server-level access control, patching, and credential lifecycle management, with access revoked immediately upon staff or contractor departure \n
-
Keep instrument computing hardware and software licenses \n
\n
Access & Device Governance
\n \n
-
Deploy and administer an MDM solution across the full device fleet \n
-
Handle permissions governance for end-user systems: M365, SharePoint, shared drives, and SaaS applications \n
-
Manage data lifecycle for off-boarded employees including legal preservation requirements \n
\n
Cloud Cost & Vendor Management
\n \n
-
Monitor cloud and SaaS spend; surface optimization opportunities and eliminate unused licenses \n
-
Manage all software subscriptions across office and lab environments licenses, renewals, utilization tracking, and vendor relationships for both business software and laboratory-specific applications \n
-
Coordinate with the Data Infrastructure Engineer on cloud access provisioning \n
-
Track IT vendor contracts and MSP deliverables; flag renewal dates and surface consolidation opportunities \n
\n
IT Policy & Documentation
\n \n
-
Maintain core IT policies: Acceptable Use, Data Classification, Password Policy \n
-
Document processes and configurations well enough that someone else could operate them \n
\n
\n
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…