← All jobs

EU remote

IT Engineer

ThunesBarcelona, Barcelona, Spain

About this role

About the Role We are looking for a hands-on IT Systems Administrator to join our Internal IT team in a fast-growth environment. In this role, you will operate at the intersection of startup speed and banking-grade security. You won't just be resolving tickets; you will actively build and refine our identity architecture, design automated lifecycle workflows (Joiner/Mover/Leaver), and author device compliance policies across our fleet.

Responsibilities Identity & Access Management: Administer Google Workspace as our master source of identity (Primary IdP) for authentication and access control. Workflow & Provisioning Automation: Design, build, and maintain automated lifecycle management (JML) using Okta Workflows and SCIM provisioning to downstream apps (Slack, Jira, Zoom, 1Password, etc.). MDM Policy & Configuration: Author, deploy, and audit system configuration profiles and compliance policies in JumpCloud across both macOS and Windows fleets.

Service Desk & Escalations: Provide high-UX, tier-2/3 support via Jira Service Management (JSM) and Slack, using ticket data to identify root causes and automate repeat issues. Security & Compliance Enforcement: Maintain Zero Trust access controls, enforce SOC2/ISO 27001 compliance standards, and manage endpoint protection ( Sophos ) with minimal user friction. Global Standardization: Work closely with the team to author knowledge base documentation in Confluence, standardizing IT operations across international offices.

Proactive Maintenance: Monitor IT infrastructure, audit permissions, and recommend tooling or API-first improvements to eliminate manual workload. Professional Experience & Qualifications Minimum 5 years of relevant Internal IT experience in a fast-paced, scale-up, or regulated Fintech environment. Hands-on Okta Expertise: Proven experience building workflows with Okta Workflows and managing SCIM/LCM app integrations.

Google Workspace Administration: Deep knowledge of GWS as a primary IdP, including domain security settings, OU management, and admin workflows. MDM Policy Creation: Direct experience creating, testing, and deploying compliance baselines, FileVault/BitLocker policies, and configuration profiles in JumpCloud (or equivalent cloud MDM). OS & Endpoint Proficiency: Strong track record supporting and securing both macOS and Windows workstations.

Automation-First Mindset: Demonstrated ability to automate manual administrative tasks using native workflow hooks or API integrations. Security & UX Focus: Solid understanding of Zero Trust architecture, least-privilege principles, and security baselines, paired with a focus on seamless user experience. Communication: Fluent in English at a professional working level with excellent documentation skills.

Source listing: greenhouse_thunes