Intelligence Match
Match: ??%
Unlock Your Personalized Match
Sign in to see your exact score breakdown and personalized insights.
Team Tagline
About the role
Our IT Operations team is a small, high-impact platform engineering unit. We manage the identity, endpoint, network, and access infrastructure for over 300 employees and 100+ outsourced agents across six offices (Lagos, Nairobi, Accra, Cape Town, and Dubai). We manage a fully automated macOS fleet, every physical office network, and roughly thirty core applications secured behind SSO. We do all of this inside a highly regulated fintech environment that holds PCI-DSS and ISO 27001 certifications and operates under the CBN.
Our environment is heavily integrated and highly automated. We've built an identity lifecycle that flows automatically from our HR systems into our identity provider. Macs deploy zero-touch, and access requests provision themselves. As our scale and complexity increase, we are bringing on a Senior IT Infrastructure Engineer to expand our engineering capacity and provide critical redundancy across our Tier-1 systems. Reporting directly to the Head of IT, you will help drive, manage, and maintain this integrated ecosystem while executing on our long-term infrastructure roadmap.
Required Skills
Preferred Skills
Similar Skills not Listed
Responsibilities
- Drive Identity Management: Manage our identity lifecycle. You will configure SAML and OIDC across our application estate, maintain SCIM provisioning, manage attribute-driven RBAC, and enforce phishing-resistant authentication.
- Maintain Lifecycle Automation: Support and improve the joiner/mover/leaver pipeline. Build automated processes for accessment from approval to access provisioning.
- Manage the Fleet & Device Trust: Oversee our macOS environment. This includes automated enrollment, configuration profiles, EDR, and enforcing DLP on outsourced devices. You will help maintain device trust as a real, certificate-backed control that rejects unmanaged or unpatched devices.
- Maintain Global Networks: Manage the physical network across six locations. You'll handle multi-WAN failover, VLAN segmentation, centrally managed wireless/switching, server rooms, and the carrier connectivity linking our on-premise infrastructure to the cloud.
- Drive the Zero Trust Migration: Help us execute the transition away from legacy VPNs. You will drive our move to Zero Trust Network Access (ZTNA), enforcing per-application authorization based on real-time device posture.
- Build as Code: Treat the IT environment as code. You'll use Terraform, Git-based staging-to-production pipelines, and Python/Bash where no provider exists. Your first instinct should always be to reach for an API before logging into an admin console.
- Enforce Automated Compliance: Turn regulatory requirements into automated controls that generate their own evidence. We balance ISO 27001, ISO 20000, PCI-DSS, NDPR, and the CBN IT Blueprint simultaneously.
- Resolve Complex Tickets: We all work tickets leadership included. You will handle complex escalations and diagnose faults that span a firewall, a carrier, and a cloud provider all at once.
- Document for the Future: Write documentation to a standard that survives your absence.
Job Application Safety Disclaimer
Your security and privacy are our top priorities. Please be aware that InStreamIQ will never ask you to pay any fees for job applications, placements, or training as a condition of employment.
Furthermore, legitimate employers will not ask for sensitive personal identification such as your Bank Verification Number (BVN), National Identification Number (NIN), or Passport details during the initial application phase. Do not share financial information or make any payments to individuals or organizations claiming to represent an employer. If you encounter any suspicious requests, please report the listing immediately via our support channels.