DevOps Engineer
генерация резюме под вакансию
сопроводительное письмо
описание
Mad Devs is a full-stack team specializing in developing and administering large-scale IT products across various industries. Its products are used in Europe, the USA, and Southeast Asia, with a focus on complex challenges and innovative solutions with global impact.
задачи
- Configure and maintain SSO integrations using SAML, OIDC, and SCIM across the SaaS stack;
- Maintain a clean and well-governed identity provider;
- Provision, modify, and deprovision accounts across productivity and engineering tools;
- Manage groups, roles, and permission boundaries;
- Triage and fulfill access requests with appropriate approvals;
- Document access decisions and review them regularly;
- Equip new hires with accounts, tools, hardware, and access before their first day;
- Guide new hires through the onboarding process;
- Execute clean and auditable offboarding;
- Revoke access, recover assets, preserve data according to policy, and close the loop with people operations;
- Administer Google Workspace, Slack, identity providers, MDM, password managers, and other SaaS productivity tools;
- Provide first-line internal IT support, resolve and escalate issues, and document solutions;
- Enforce baseline security configurations across SaaS applications, endpoints, and identity systems;
- Monitor security tooling for anomalies and alerts;
- Investigate, triage, and escalate security events;
- Maintain accurate records of access, changes, and reviews to support audit readiness;
- Automate routine processes using Python, Bash, or TypeScript;
- Work with SaaS APIs and build small internal tools;
- Improve inherited systems and runbooks;
- Fix painful or manual processes.
требования
- 0–3 Years of experience in IT engineering, IT operations, systems administration, or a similar role; internships and substantial side projects count;
- Working knowledge of SSO and identity concepts, including SAML, OIDC, SCIM, and MFA;
- Understanding of the difference between authentication and authorization;
- Comfort working in a terminal and with at least one scripting language;
- Ability to write and test code and commit it using git;
- Security-first mindset with an understanding of least privilege, credential protection, and audit trails;
- Strong written communication and ability to explain fixes to non-technical teammates;
- Ability to document processes clearly;
- Ownership mindset with the ability to investigate issues and follow through independently;
- Availability for at least 4–5 hours of daily overlap with the team during US Central Time (CST) hours;
- English at B2 level;
- Russian at B2 level;
- Nice to have: Experience with an identity provider such as Okta or Google Cloud Identity, hands-on administration of Google Workspace and Slack or Teams, experience with SaaS security tooling, SIEM, endpoint detection, SOC 2, ISO 27001 or HIPAA compliance frameworks, infrastructure-as-code or configuration-as-code with Terraform or Ansible, exposure to AWS, GCP or Azure and basic IAM, prior experience in a startup or fast-moving environment.
условия
- Flexible working hours;
- Remote-first culture;
- Long-term projects;
- Salary in dollars;
- Professional communities;
- Onsite business trips;
- Training budget;
- Paid conferences.
навыки
Если просят войти через iCloud, отправить коды из SMS, запустить код, что-то установить, перевести деньги или сделать что угодно, связанное с деньгами, не соглашайтесь: это признаки мошенничества.