{"schemaVersion":"jobsearcher.job.v1","id":"7e967d0caaa617cbc82a0df8","url":"https://jobsearcher.com/jobs/7e967d0caaa617cbc82a0df8","canonicalUrl":"https://jobsearcher.com/jobs/7e967d0caaa617cbc82a0df8","title":"IT Systems Engineer","description":"About Gallatin\n\nAt Gallatin, we are rebuilding logistics infrastructure for the national security missions of the United States and allied partners. We build AI systems that determine how logistics decisions are made — not just how they're executed. From factory to foxhole, we operate at the layer where data becomes decisions, and decisions make the advantage.\n\nAbout the Role\n\nWe’re looking for an IT Systems Engineer to help build and scale the systems Gallatin employees rely on every day.\n\nAs the second dedicated IT hire, you will work across endpoint engineering, identity and access management, SaaS administration, security and compliance, office infrastructure, automation, and employee support. You will own systems end to end and help define how IT operates as Gallatin grows.\n\nThis is a broad systems role with a strong endpoint focus. You should be able to operate across macOS, Windows, mobile, identity, and cloud applications, with hands-on experience in Jamf Pro, Microsoft Intune, Google Workspace, and Okta. Experience managing Windows devices and access controls in Microsoft 365 GCC High is especially important.\n\nThe level is flexible. We care more about technical judgment, ownership, and the ability to build reliable systems than a specific title or number of years.\n\nWhat You'll Do\nBuild and Own Endpoint Management\n\nOwn the lifecycle of Gallatin’s macOS, Windows, and mobile environments, from enrollment through deprovisioning.\n\nBuild and maintain Jamf Pro policies, profiles, packages, scripts, smart groups, compliance controls, and Self Service workflows.\n\nImplement and operate Windows device management through Microsoft Intune in GCC High.\n\nDesign Google Workspace mobile application management controls for employee-owned devices.\n\nAutomate provisioning, application deployment, patching, security baselines, inventory, and compliance reporting.\n\nScale Identity and Enterprise Systems\n\nOwn identity lifecycle workflows across Okta, Google Workspace, Microsoft 365 GCC High, Slack, and other business-critical platforms.\n\nAutomate onboarding, role changes, access reviews, and offboarding using APIs, scripts, and workflow tools.\n\nDesign access controls around least privilege, device trust, role-based access, and data sensitivity.\n\nAdminister and integrate Gallatin’s core productivity, collaboration, engineering, and business applications.\n\nEstablish guardrails for enterprise AI tools and AI-enabled SaaS applications, including authentication, provisioning, data handling, retention, integrations, and audit logging.\n\nPartner with Security and Engineering to protect sensitive company and government data while enabling employees to use approved AI tools productively.\n\nReplace brittle manual processes with systems that are repeatable, observable, and difficult to misuse.\n\nStrengthen and Operate the Environment\n\nTranslate CMMC, NIST 800-171, and other requirements into technical controls that work in practice.\n\nBuild reliable device compliance, access enforcement, evidence collection, and audit-readiness workflows.\n\nTroubleshoot complex issues across endpoints, identity, SaaS applications, networking, authentication, and operating systems.\n\nProvide direct employee support while eliminating recurring failure modes through engineering and automation.\n\nCreate clear documentation, runbooks, standards, and employee-facing guidance.\n\nTake ownership of unfamiliar problems and drive them through resolution.\n\nWhat We’re Looking For\n\nExperience as an IT Systems Engineer, Endpoint Engineer, Systems Administrator, or in a similarly broad technical role.\n\nStrong hands-on Okta administration, including SSO, MFA, application integrations, lifecycle management, and access policies.\n\nStrong hands-on management of macOS, Windows, and mobile devices using Jamf Pro, Microsoft Intune, and Google Workspace.\n\nExperience operating Microsoft 365 and Intune in GCC High or another regulated Microsoft cloud environment.\n\nAbility to independently design, implement, operate, and improve production IT systems.\n\nStrong troubleshooting skills across operating systems, networks, identity platforms, and cloud applications.\n\nAutomation skills using Bash, PowerShell, Python, APIs, or workflow platforms.\n\nUnderstanding of identity lifecycle management, device trust, least privilege, conditional access, and role-based access.\n\nStrong communication, documentation, and judgment in fast-moving environments.\n\nComfort operating in a small team where ownership is broad and outcomes matter more than organizational boundaries.\n\nBonus Points\n\nEndpoint privilege management and application control.\n\nEnterprise browser management, secure web gateways, or SaaS security posture management.\n\nmacOS Platform SSO or Windows Hello for Business.\n\nPKI, device certificates, and certificate lifecycle management.\n\nConfiguration-as-code or infrastructure-as-code for corporate IT systems.\n\nMission and Identity\n\nWe are building the system that enables faster, smarter logistics decisions in contested environments, and we're doing it with a team of seasoned entrepreneurs, operators, and technologists who have built and scaled solutions in this space before. We hold ourselves to an extremely high standard. We value clear thinking, direct communication, and the kind of ownership that doesn't stop until something actually works.\n\nOur mission is to create decision advantage when the stakes are the highest. If we succeed, the system doesn't just run; it gets smarter. We're not building AI for its own sake. We're building it because faster, smarter decisions in the most demanding environments on earth can't wait. If you want to work somewhere the stakes are real and the mission is urgent — you'll fit in here.\n\nWhy Gallatin?\n\nThe logistics infrastructure that supports America's warfighters and humanitarian disaster responders is overdue for transformation, and we are building it. From defense operations to disaster response, we're solving the hardest problems that keep missions moving when it matters most. Join a team where the mission is the point.\n\nCompensation: Gallatin offers competitive compensation commensurate with experience. Actual compensation may vary based on experience, skills, and location. In addition to base salary, we offer a generous equity grant, full healthcare coverage, 401k, unlimited PTO, and the perks of working in a high-caliber, mission-driven environment.\n\nGallatin is an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or any other characteristic protected by applicable federal, state, or local law.\n\nThis position may require the ability to obtain and maintain a U.S. government security clearance. The successful candidate must be able to work in a classified environment when necessary.\n\nWe comply with the United States Department of Labor's Pay Transparency provision.\n\nNote: Due to the nature of certain government contracts held by this organization, U.S. citizenship is a requirement for all positions at Gallatin. Proof of citizenship will be required prior to employment if selected.","company":"Gallatin","rawCompany":"gallatin","city":"El Segundo","state":"CA","isRemote":false,"isActive":false,"createdAt":"2026-08-31T11:00:08.627Z","occupations":[{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1211.00","title":"Computer Systems Analysts","slug":"computer-systems-analysts"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541513","title":"Computer Facilities Management Services","slug":"computer-facilities-management-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"IT Systems Engineer","description":"About Gallatin\n\nAt Gallatin, we are rebuilding logistics infrastructure for the national security missions of the United States and allied partners. We build AI systems that determine how logistics decisions are made — not just how they're executed. From factory to foxhole, we operate at the layer where data becomes decisions, and decisions make the advantage.\n\nAbout the Role\n\nWe’re looking for an IT Systems Engineer to help build and scale the systems Gallatin employees rely on every day.\n\nAs the second dedicated IT hire, you will work across endpoint engineering, identity and access management, SaaS administration, security and compliance, office infrastructure, automation, and employee support. You will own systems end to end and help define how IT operates as Gallatin grows.\n\nThis is a broad systems role with a strong endpoint focus. You should be able to operate across macOS, Windows, mobile, identity, and cloud applications, with hands-on experience in Jamf Pro, Microsoft Intune, Google Workspace, and Okta. Experience managing Windows devices and access controls in Microsoft 365 GCC High is especially important.\n\nThe level is flexible. We care more about technical judgment, ownership, and the ability to build reliable systems than a specific title or number of years.\n\nWhat You'll Do\nBuild and Own Endpoint Management\n\nOwn the lifecycle of Gallatin’s macOS, Windows, and mobile environments, from enrollment through deprovisioning.\n\nBuild and maintain Jamf Pro policies, profiles, packages, scripts, smart groups, compliance controls, and Self Service workflows.\n\nImplement and operate Windows device management through Microsoft Intune in GCC High.\n\nDesign Google Workspace mobile application management controls for employee-owned devices.\n\nAutomate provisioning, application deployment, patching, security baselines, inventory, and compliance reporting.\n\nScale Identity and Enterprise Systems\n\nOwn identity lifecycle workflows across Okta, Google Workspace, Microsoft 365 GCC High, Slack, and other business-critical platforms.\n\nAutomate onboarding, role changes, access reviews, and offboarding using APIs, scripts, and workflow tools.\n\nDesign access controls around least privilege, device trust, role-based access, and data sensitivity.\n\nAdminister and integrate Gallatin’s core productivity, collaboration, engineering, and business applications.\n\nEstablish guardrails for enterprise AI tools and AI-enabled SaaS applications, including authentication, provisioning, data handling, retention, integrations, and audit logging.\n\nPartner with Security and Engineering to protect sensitive company and government data while enabling employees to use approved AI tools productively.\n\nReplace brittle manual processes with systems that are repeatable, observable, and difficult to misuse.\n\nStrengthen and Operate the Environment\n\nTranslate CMMC, NIST 800-171, and other requirements into technical controls that work in practice.\n\nBuild reliable device compliance, access enforcement, evidence collection, and audit-readiness workflows.\n\nTroubleshoot complex issues across endpoints, identity, SaaS applications, networking, authentication, and operating systems.\n\nProvide direct employee support while eliminating recurring failure modes through engineering and automation.\n\nCreate clear documentation, runbooks, standards, and employee-facing guidance.\n\nTake ownership of unfamiliar problems and drive them through resolution.\n\nWhat We’re Looking For\n\nExperience as an IT Systems Engineer, Endpoint Engineer, Systems Administrator, or in a similarly broad technical role.\n\nStrong hands-on Okta administration, including SSO, MFA, application integrations, lifecycle management, and access policies.\n\nStrong hands-on management of macOS, Windows, and mobile devices using Jamf Pro, Microsoft Intune, and Google Workspace.\n\nExperience operating Microsoft 365 and Intune in GCC High or another regulated Microsoft cloud environment.\n\nAbility to independently design, implement, operate, and improve production IT systems.\n\nStrong troubleshooting skills across operating systems, networks, identity platforms, and cloud applications.\n\nAutomation skills using Bash, PowerShell, Python, APIs, or workflow platforms.\n\nUnderstanding of identity lifecycle management, device trust, least privilege, conditional access, and role-based access.\n\nStrong communication, documentation, and judgment in fast-moving environments.\n\nComfort operating in a small team where ownership is broad and outcomes matter more than organizational boundaries.\n\nBonus Points\n\nEndpoint privilege management and application control.\n\nEnterprise browser management, secure web gateways, or SaaS security posture management.\n\nmacOS Platform SSO or Windows Hello for Business.\n\nPKI, device certificates, and certificate lifecycle management.\n\nConfiguration-as-code or infrastructure-as-code for corporate IT systems.\n\nMission and Identity\n\nWe are building the system that enables faster, smarter logistics decisions in contested environments, and we're doing it with a team of seasoned entrepreneurs, operators, and technologists who have built and scaled solutions in this space before. We hold ourselves to an extremely high standard. We value clear thinking, direct communication, and the kind of ownership that doesn't stop until something actually works.\n\nOur mission is to create decision advantage when the stakes are the highest. If we succeed, the system doesn't just run; it gets smarter. We're not building AI for its own sake. We're building it because faster, smarter decisions in the most demanding environments on earth can't wait. If you want to work somewhere the stakes are real and the mission is urgent — you'll fit in here.\n\nWhy Gallatin?\n\nThe logistics infrastructure that supports America's warfighters and humanitarian disaster responders is overdue for transformation, and we are building it. From defense operations to disaster response, we're solving the hardest problems that keep missions moving when it matters most. Join a team where the mission is the point.\n\nCompensation: Gallatin offers competitive compensation commensurate with experience. Actual compensation may vary based on experience, skills, and location. In addition to base salary, we offer a generous equity grant, full healthcare coverage, 401k, unlimited PTO, and the perks of working in a high-caliber, mission-driven environment.\n\nGallatin is an equal opportunity employer. We do not discriminate on the basis of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity, or any other characteristic protected by applicable federal, state, or local law.\n\nThis position may require the ability to obtain and maintain a U.S. government security clearance. The successful candidate must be able to work in a classified environment when necessary.\n\nWe comply with the United States Department of Labor's Pay Transparency provision.\n\nNote: Due to the nature of certain government contracts held by this organization, U.S. citizenship is a requirement for all positions at Gallatin. Proof of citizenship will be required prior to employment if selected.","datePosted":"2026-08-31T11:00:08.627Z","dateModified":"2026-08-31T11:00:08.627Z","hiringOrganization":{"@type":"Organization","name":"Gallatin","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"El Segundo","addressRegion":"CA","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"7e967d0caaa617cbc82a0df8"},"url":"https://jobsearcher.com/jobs/7e967d0caaa617cbc82a0df8"}}