• Own and evolve BranchLab’s internal IT, security, compliance, and AI enablement capabilities
• Operate and continuously improve security controls across endpoints, identity, cloud services, and corporate systems
• Own the internal IT environment, including identity and access management, employee devices, SaaS applications, onboarding/offboarding, and daily technology operations
• Lead operational support for SOC 2, including control execution, evidence collection, remediation tracking, policy maintenance, and audit coordination
• Coordinate responses to customer, partner, and vendor security and compliance questionnaires
• Identify and implement practical AI uses across the company, including integrations, automations, copilots, agents, and AI-enabled workflows
• Establish secure and responsible AI adoption practices covering data handling, vendor evaluation, access controls, and use of company and customer information
• Partner with Engineering, Product, Operations, and business teams to improve security, productivity, and automation
Requirements
- Experience owning or administering IT systems in a modern cloud-based organization
- Strong understanding of identity, access management, endpoint security, SaaS administration, and security fundamentals
- Experience supporting security or compliance programs such as SOC 2, including audits, evidence collection, risk remediation, or customer security reviews
- Strong technical aptitude and ability to troubleshoot integrations, APIs, authentication, permissions, and SaaS platforms
- Hands-on experience using AI tools to improve business workflows, automate processes, or integrate AI capabilities into existing systems
- Ability to evaluate new technologies from both productivity and security perspectives
- Strong communication skills and ability to work directly with technical teams, business users, auditors, customers, and vendors
- Pragmatic mindset focused on implementing appropriate controls without unnecessary process or bureaucracy
- Nice to have: Experience with Microsoft Entra ID, Microsoft 365, SSO, SAML, SCIM, and modern identity management
- Nice to have: Experience with endpoint management, MDM, EDR, and device security
- Nice to have: Familiarity with AWS security and cloud infrastructure
- Nice to have: Experience administering or integrating Jira, Salesforce, Slack, GitHub, or similar SaaS platforms
- Nice to have: Experience building automations using APIs, low-code tools, scripting, or AI agents
- Nice to have: Familiarity with AI governance, privacy, security reviews, or enterprise adoption of generative AI
- Nice to have: Experience in healthcare, AdTech, or another privacy-sensitive or regulated environment
- Legal authorization to work in the U.S. without current or future sponsorship
- Ability to work onsite in Boulder, Colorado and commute to the office
Core Competencies
Demonstrates expertise in IT system administration, security compliance, and AI integration within cloud-based environments. Proven ability to enhance operational efficiency through effective identity and access management, security controls, and automation practices.
Highest-signal resume keywords
- IT System Administration
- Security Compliance Programs
- Identity And Access Management
- AI Integration And Automation
- Endpoint Security
ATS Optimization Keywords
Hard Skills
- SOC 2 Compliance
- SaaS Administration
- API Troubleshooting
- Risk Remediation
- Evidence Collection
- Cloud Security Fundamentals
- Automation Scripting
- Identity Management
- Data Handling Practices
- Security Control Implementation
Soft Skills
- Strong Communication Skills
- Pragmatic Mindset
- Collaboration With Technical Teams
Industry Keywords
- Healthcare
- AdTech
- Privacy-Sensitive Environments
- Regulated Environments
- AI Governance
Tools & Technologies
- Microsoft Entra ID
- Microsoft 365
- Jira
- Salesforce
- Slack
- GitHub
- AWS Security
- MDM
- EDR
- Low-Code Tools