Skip to content

Open nowPosted 6 days ago

Sr. Systems Administrator (Employee Systems)

Cosm33 open roles

Where
Salt Lake City, UT, USA
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSr. Systems Administrator (Employee Systems)Cosm · Salt Lake City, UT, USA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Cosm's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.1% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.7%1 day
  2. 3.6%3 days
  3. 8.1%7 days
  4. 15.0%14 days
  5. 34.0%30 days
This job: posted 6 days ago

The posting

Summary: The Enterprise Systems and Employee Technology (ESET) team makes sure Cosm's employees have the tools they need to work quickly and efficiently: computers, SaaS services, and software. This team owns zero-touch provisioning, MDM, and device deployments across the organization, administers Cosm's portfolio of 100+ SaaS applications, maintains and optimizes the employee onboarding/offboarding lifecycle, and keeps Cosm's growing Okta deployment running smoothly. This role reports to the Director of Enterprise Systems and Employee Technology. Responsibilities:

Own Cosm's Okta deployment: configuration, integrations, Workflows, and the identity roadmap as the environment scales. Design and maintain automated joiner–mover–leaver processes across the full employee lifecycle, in partnership with People Operations. Build and continuously improve zero-touch provisioning and device deployment across all Cosm locations and platforms. Administer Cosm's portfolio of 100+ SaaS applications: tenant configuration, SSO and SCIM integrations, entitlement models, and lifecycle management. Administer and optimize Apple Business Manager, Microsoft Intune, and Jamf, keeping the endpoint fleet current, compliant, and consistently configured. Run recurring account and access reviews, and produce evidence supporting [NIST CSF 2.0 / SOX ITGC] audit requirements. Automate routine administration through scripting and vendor APIs, reducing manual toil across the team. Partner with Service Management on hardware inventory and asset lifecycle across all locations. Act as the escalation point for identity, SaaS, and endpoint issues escalated by the Service Desk — resolving root causes and reducing recurrence through automation, configuration, and knowledge transfer. Create and maintain technical documentation and runbooks, and raise what the Service Desk can resolve independently through training and self-service enablement. Mentor teammates on identity and endpoint management practices, and act as a technical resource across the IT organization.

Qualifications:

6+ years in corporate IT, with demonstrated depth in identity and endpoint management. Equivalent practical experience is welcome in place of a degree. Hands-on Okta administration experience, including Workflows for non-trivial automation use cases. 3+ years implementing and managing modern identity standards — SAML, OIDC, OAuth 2.0, SSO, MFA, and SCIM provisioning. Experience with an Identity Governance & Administration platform and with entitlement and access review design (Okta IGA, Sailpoint, etc) 3+ years managing macOS and Windows at scale with modern MDM (Intune, JAMF, Kandji/Iru, etc). Demonstrated experience building or maintaining zero-touch provisioning in a production environment. Working knowledge of Active Directory and Entra ID. Comfortable scripting to automate routine work (PowerShell, Bash, or Python) and integrating systems via vendor APIs. Solid grounding in core IT fundamentals — DNS, DHCP, TCP/IP, SMB, NFS, and certificate management. Strong communicator and self-starter with a methodical approach to troubleshooting and the ability to prioritize a varied workload independently or as part of a team. 

Preferred Skills:

Okta Certified Administrator (Level 2) or Okta Certified Professional. Experience managing Okta configuration as code through Terraform, Pulumi, or a similar platform HIGHLY preferred Jamf 200 certification. Experience with Zero Trust, SASE, or DLP solutions (Zscaler, Cloudflare, or similar). Experience with additional device management platforms (Kandji, Autopilot). Familiarity with modern ITSM platforms (ServiceNow preferred). Experience supporting SaaS license management, renewals, and utilization reporting.

The annualized salary range for this position in California is $130,000 to $145,000. The base pay offered will factor in internal equity and may also vary depending on the candidate's geographic region, job-related knowledge, skills, and relevant experience, among other factors

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Cosm's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Cosm's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Cosm's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.