Identity, Access & Security Administer Google Workspace as our core identity platform - user lifecycle, SSO, context-aware access, and audit logging.
Implement and manage device trust policies and conditional access rules.
Detect, investigate, and mitigate security events (phishing, account compromise, unauthorized device access), including coordinating company-wide communications with leadership.
Evaluate and operate security tooling: VPN, firewalls, antispam, and anti-malware.
Device & Endpoint Management Manage the full device lifecycle for MacBooks, iPads, iPhones, Windows machines, and peripherals: procurement, configuration, deployment, repair/replacement, and decommissioning.
Operate Apple device management (Apple Business Manager, MDM profiles and scripts, managed Apple IDs); publish applications and updates to device groups.
SaaS & Vendor Management Administer core business platforms including Slack, Asana, and Metabase enterprise subscriptions.
Evaluate third-party integrations and API access; review NDAs and access-level requirements for external agencies and vendors.
Partner with Finance to track software spend, analyze trends by department, and build the annual software budget.
Onboarding & Offboarding Own user provisioning and deprovisioning across Google Workspace and all SaaS platforms.
Coordinate device shipments and tech onboarding emails (with setup instructions and tracking) for new hires alongside HR.
Maintain a unified inventory of company assets - devices and software licenses - tracking assignment, availability, and retrieval/decommissioning when employees depart.
Support & Office Infrastructure Serve as the primary point of contact for internal tech support via Slack, email, or the ticket system: account access, password resets, email configuration, and app connectivity.
Manage shared mailboxes, service accounts, and Google Groups with appropriate security controls.
Troubleshoot Google authentication flows, app-specific access issues, and SSO integrations across the tool stack.
Design and maintain office network and security infrastructure: architecture, equipment procurement, configuration, and updates.
Create and maintain documentation that accelerates onboarding and resolves common issues.