JobTarget Logo

Systems & Security Engineer at Vision Financial Group LLC – Des Moines, Iowa

Vision Financial Group LLC
Des Moines, Iowa, 50312, United States
Posted on
NewJob Function:Information Technology
New job! Apply early to increase your chances of getting hired.

Explore Related Opportunities

About This Position

Description:

Are you an infrastructure professional who believes legacy VPNs and on-premise Active Directory belong in a museum? Do you get energized by building identity-driven, Zero Trust perimeters and automating away repetitive IT tasks?

We’re seeking a Systems & Security Engineer to help build, maintain, and secure our modern, cloud-first infrastructure. This is a highly technical "execution" role for a mid-level engineer who thrives on the hands-on work of network management, identity orchestration, and endpoint security. Working directly under the strategic direction of our Tech Team Manager, you will be the primary builder ensuring every device, user, and office location is seamlessly connected and rigorously secured.

Who We Are: Financial Integrators is a comprehensive wealth management firm that simplifies complex financial landscapes for individuals, families, and business owners. By combining personalized financial planning with professional asset management, tax optimization, and estate strategies, we unify every aspect of a client’s financial life into one cohesive roadmap. Whether protecting assets through tailored insurance or navigating business succession and retirement plans, Financial Integrators uses a collaborative, team-based approach to provide the clarity and confidence needed to secure a lasting financial legacy.

Location: This position is based in Des Moines, IA. A hybrid work schedule is available, offering a mix of in-office collaboration and remote flexibility to support both our business needs and your work-life balance. Some minimal regional travel may be required for new office setups.

What You’ll Do

  • Implement the Modern Perimeter (Zero Trust)
  • Work alongside the Tech Team Manager to deploy and maintain a modern SASE/ZTNA environment, replacing legacy VPNs with identity-based access.
  • Help administer Cloud Access Security Broker (CASB) and Secure Web Gateway (SWG) policies to protect our endpoints from web-based threats.
  • Administer Identity & Device Management
  • Serve as the day-to-day administrator for JumpCloud, managing user identities, SAML/OIDC SSO integrations, and Windows MDM policies.
  • Administer the backend security, storage, and organizational units within our Google Workspace environment.
  • Support Infrastructure & Connectivity
  • Manage our physical edge networking using Ubiquiti (UniFi) hardware across distributed office locations, focusing on lightweight, cloud-managed routing and switching.
  • Coordinate the physical tech setup for new office locations, including working with contractors for structured cabling (ethernet drops) and hardware installation.
  • Drive Security Automation & Maintenance
  • Utilize PowerShell to deploy automated scripts via JumpCloud for Windows fleet patching, hardening, and compliance.
  • Maintenance & Response: Participate in occasional scheduled after-hours or weekend maintenance windows for system patching, and serve as an escalation point for critical infrastructure incidents.

What’s in it for you? We provide a total rewards package focused on your health, family, and financial security. This includes comprehensive medical, dental, and vision options alongside company-paid disability and life insurance. We support your work-life balance with PTO, paid holidays, volunteer time off, and paid parental leave. Finally, we invest in your future through a 401(k) plan and a robust Employee Assistance Program for professional support.

Compensation: The anticipated salary range for this position is $85,000 to $90,000 annually, based on your level of experience and technical expertise.

Requirements:
  • Experience: 3-5+ years in Systems Administration, Network Support, or IT Security infrastructure.
  • Cloud & Identity: Hands-on experience with modern IAM/MDM platforms (JumpCloud highly preferred). Familiarity with the concepts of Zero Trust / SASE architecture is a massive plus.
  • Automation Skills: Proficiency in PowerShell scripting for Windows endpoint management.
  • Networking Base: Solid understanding of the OSI model, VLANs, and edge networking. Experience managing Ubiquiti routing and switching is highly preferred.
  • Ecosystem Knowledge: Experience administering Google Workspace (we are not a Microsoft 365 environment).
  • Preferred Certifications: CompTIA Network+, Security+, CySA+, or vendor-specific credentials (e.g., JumpCloud Core). Advanced architectural certifications are not required for this role.

Physical Requirements

  • Walking up and Down Stairs
  • Lifting up to 50 pounds

Job Location

Des Moines, Iowa, 50312, United States
Loading interactive map for Des Moines, Iowa, 50312, United States

Job Location

This job is located in the Des Moines, Iowa, 50312, United States region.

Frequently asked questions about this position

Latest Job Openings in Iowa

Apply For This Position