IT and Security Specialist in Abbeyville, Colorado at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for an IT and Security Specialist based in the United States.
The IT and Security Specialist will own the systems, identities, accounts, and access controls that support a fully distributed research organization.
This role combines hands-on IT operations with practical security ownership, helping strengthen defenses without creating unnecessary friction for researchers and engineers.
You will establish security standards, evaluate risks, and personally implement controls across cloud platforms, collaboration tools, and core business systems.
A major focus will be identity and access management, ensuring permissions remain appropriate as people join, change projects, or leave.
You will work closely with technical teams to make security protocols effective in real-world environments and ensure they are consistently followed.
The role offers significant autonomy, requiring sound judgment and the confidence to make security and access decisions independently.
This is a fully remote opportunity with flexible working hours and collaboration across U.S. and European time zones.
- Define, implement, and continuously improve practical security protocols while avoiding unnecessary processes or controls that add friction without meaningful risk reduction.
- Identify, assess, and remediate security risks through hands-on technical work and collaboration with engineering and research teams.
- Own key security implementation decisions, including authentication and 2FA approaches, and clearly communicate the risk, benefit, and operational tradeoffs behind those decisions.
- Partner closely with engineers and researchers to establish security standards that are technically sound, practical, and consistently followed.
- Monitor adherence to security standards and maintain lightweight processes that encourage adoption without compromising security.
- Own identity and access management across Google Workspace, GitHub, AWS, Google Cloud, 1Password, Slack, Airtable, and other core platforms.
- Grant, modify, review, and remove access as employees join, move between projects, or leave the organization.
- Maintain administrator and owner privileges across core platforms, ensuring access decisions and operational issues can be resolved efficiently.
- Manage cloud accounts and software subscriptions, including new projects, IAM configuration, budgets, quota increases, licenses, renewals, seats, and applicable nonprofit pricing.
- Own the technical aspects of employee onboarding and offboarding, ensuring new team members receive the appropriate accounts and groups and departing employees are fully removed from systems.
- Serve as the primary technical support contact for staff, troubleshooting account, software, and systems issues in a fully remote environment.
- Work continuously with engineering and research teams while remaining focused on security and IT operations rather than software development.
- 5+ years of professional experience in security, DevSecOps, IT operations, or a closely related field.
- Demonstrated experience owning security responsibilities within a medium-sized organization rather than solely providing advisory support.
- Strong practical security judgment and a risk-based approach to determining which threats warrant controls and how much operational friction those controls should introduce.
- Experience operating IT or security environments spanning identity, access management, endpoints, cloud infrastructure, and business applications.
- Strong Google Workspace administration experience and knowledge of AWS IAM are highly desirable.
- Confidence holding administrative authority and independently making access and security decisions without requiring extensive committee approval.
- Proven ability to work closely and effectively with engineers and technically sophisticated teams, even without writing significant amounts of code.
- Experience supporting complex technical or research environments is valuable, particularly within AI or machine learning.
- Strong problem-solving, communication, and prioritization skills, with the ability to explain technical security decisions and tradeoffs clearly.
- Comfortable working autonomously in a remote environment and taking ownership of systems and issues from identification through resolution.
- Familiarity with AI research and machine learning environments is a plus but not essential.
- Professional-level English proficiency, with application materials submitted in English.
- Ability to collaborate across time zones, particularly with teams working between U.S. Pacific Time and Central European Time.
- Willingness to travel periodically for staff retreats and relevant professional conferences.
- Annual salary of $125,000–$155,000 USD, with compensation and payments potentially structured in local currencies depending on location.
- Fully remote working environment with flexible working hours.
- Competitive global benefits package, including comprehensive health insurance and applicable supplemental local benefits.
- Life insurance and pension benefits where applicable based on local requirements.
- Generous paid time off, including 30 protected PTO days per year, unlimited personal and sick leave, and paid parental leave.
- Up to 4 months of paid parental leave for eligible permanent employees with at least 12 months of tenure, with prorated leave for shorter tenure.
- Flexible and generous expense policy covering equipment, productivity tools, learning, and professional development opportunities.
- Support for AI tools and other productivity resources, subject to applicable regulations and manager approval.
- Paid work travel, including approximately three staff retreats per year and relevant conferences.
- Access to well-equipped offices in Berkeley, California, including paid meals, snacks, gym facilities, and other amenities.
- All employees, regardless of location, can access the office for at least 20 days each year.
- Inclusive and supportive working environment focused on helping employees do their best work.