Skip to main content
Upsun

IT Systems Engineer

RemoteCanada, France, Germany +2 more only
Published
Role
DevOps
Experience
Senior
Salary not disclosed
Check eligibility

Open to CA, FR, DE, ES, GB only. Set where you work from to check your eligibility.

No BS summary

IT Systems Engineer with 5+ years in IT systems, identity, or access engineering. Must have hands-on Okta or comparable IdP experience, automation with APIs/webhooks and Python or similar, Google Workspace administration, and ISO 27001 or SOC 2 experience. Hiring only in Canada, France, Germany, Spain, and the UK; no visa sponsorship.

Core skills

OktaSCIMGoogle Workspace

Required skills

SSOAPI-driven provisioningOkta Workflows/n8nAPIsWebhooksPython/comparable languageISO 27001SOC 2

Optional skills

Git-based workflowsTerraform

Optional languages

French Professional proficiency; preferred plusqualifier.

What you'll do

  • Take the identity plane from working to well-run: automated, governed, and consistent, so access is correct by default, and auditors find evidence rather than surprises.
  • Drive the internal systems layer around identity, from the SaaS estate to Google Workspace.
  • Make identity quietly reliable: predictable, documented, and automated, while remaining flexible enough to support the wider IT function as the scaling remote organization evolves.
  • Own Okta as the backbone of how people get access, managing the app catalog, policy management, and directory hygiene.
  • Run identity day to day, refine SSO and SCIM integrations, and keep joiner, mover, and leaver flows accurate from the HR system.
  • Automate provisioning and deprovisioning so access is granted and revoked automatically, not by hand.
  • Build and maintain workflows with tools like Okta Workflows and n8n, manage access configuration as code, and keep SCIM provisioning in sync with the HR system.
  • Structure and harmonize clear procedures around the identity plane, so access requests, approvals, and reviews follow one consistent, documented path instead of ad hoc steps.
  • Own internal IT systems end to end.
  • Integrate, secure, and validate the SaaS stack.
  • Administer Google Workspace as the core collaboration suite.
  • Connect tools through Okta and the HR system.
  • Own the application validation process.
  • Implement and evidence access controls for ISO 27001 and SOC 2 Type 2 with the Security team.
  • Ensure access reviews and audit logs are a by-product of well-built systems, not a quarterly scramble.
  • Partner on administrating Jumpcloud MDM across macOS, Windows, and Linux.
  • Share endpoint and device management with IT Operations and Endpoint Manager so coverage scales with the team.
  • Pick up adjacent systems work and support across the wider IT function as needs evolve.

What they require

  • Deep, hands-on experience with Okta or a comparable identity provider, including SSO, SCIM, lifecycle automation, and API-driven provisioning.
  • Typically 5 or more years in IT systems, identity, or access engineering, including time in a developer-heavy or engineering-led environment.
  • You build automation with tools like Okta Workflows, n8n, or similar.
  • You are comfortable with APIs and webhooks.
  • You script in Python or a comparable language.
  • You bring order to environments that grew quickly.
  • You write clear procedures, standardize how things are done, and leave systems better documented than you found them.
  • You have run and integrated a SaaS-based environment, where identity and APIs matter more than racks and networks.
  • You have worked inside ISO 27001 or SOC 2, ideally Type 2 where evidence is continuous, and you understand what auditors actually need.
  • You work well without close supervision in a fully remote team.
  • You communicate clearly with technical and non-technical colleagues alike.
  • Hands-on Google Workspace administration is core to this role: users, groups, policies, and security settings.
  • You are comfortable wearing several hats in a small IT team, picking up adjacent systems and endpoint work, and flexing as priorities shift.
  • Currently focused on hiring for this role in Canada, France, Germany, Spain, and the United Kingdom.
  • Applicants must be legally authorized to work in these countries.
  • All roles require background checks.
  • Preferred: Comfort managing configuration through Git-based workflows, or infrastructure as code with Terraform.
  • Preferred: Professional proficiency in French.

Benefits

  • A product you can believe in - Join us in transforming how businesses build and manage web applications, driven making a positive impact as a proud B Corp.
  • An Award-Winning Workplace - We’ve been recognized by Forbes’ Top 30 Companies for Remote Jobs and France’s Best Workplaces for Women.
  • A culture that values your voice - Join a flexible, open, and inclusive work environment where your voice is encouraged, and your ideas shape our growth and evolution.
  • A global team - Collaborate with colleagues from diverse backgrounds across the world, embracing different perspectives.
  • Benefits and perks - Make the most of what matters to you.
  • Flexible PTO.
  • Comprehensive healthcare coverage (UK, Canada, France, Spain).
  • Company stock options.
  • Professional development budget.
  • Office equipment budget.
  • Wellness budget.
  • Annual team gatherings.
  • Internet reimbursement.
  • Inclusive parental leave.
  • Remote work travel program.

elementary school in Cheonan City, South Chungcheong Province, South Korea

Cloud Computingupsung.caees.kr

Details

Visa sponsorshipNo
Apply routeGreenhouse
Salary not disclosed