IT, Cloud & Security Administrator

Primordial Labs•New Haven, CT
•$125,000 - $175,000•Remote

About The Position

Primordial Labs is hiring its first dedicated IT, Cloud & Security Administrator to run the technology that keeps a small but mighty, fully remote team productive and secure. You will be the hands-on owner of IT day to day, and the person who makes sure our systems protect the sensitive work we do for our customers. You'll own two environments. The first is our corporate IT environment, built on Microsoft 365, which everyone at the company uses and which you'll own end to end. The second is our AWS cloud environment, where our engineering and DevSecOps team does their development work. You'll work alongside that team to keep it secure, well-structured, and well-documented while keeping pace with what they need. This is a single-contributor role reporting directly to leadership, with a path to IT and Security Lead as the company scales.

Requirements

  • 5+ years of hands-on IT administration or systems support, ideally in a small company or startup
  • Experience administering AWS, including IAM, AWS Organizations, EC2, and S3
  • Direct experience administering Microsoft 365, Entra ID, and Intune
  • Experience supporting remote and distributed teams
  • Hands-on experience with security fundamentals, including identity and access management, endpoint protection, and incident response
  • Experience administering a portfolio of SaaS tools, including access, licensing, and vendor management
  • Strong troubleshooting skills across Windows, macOS, Linux, mobile devices, and networking basics
  • Comfort working independently and prioritizing across support requests, security tasks, and projects
  • Clear, patient communication with non-technical colleagues, and credibility working alongside engineers
  • Strong documentation habits
  • Sound judgment and discretion when handling sensitive data
  • Willingness to wear many hats in a small team
  • Must be a U.S. citizen, as required for work involving controlled defense information
  • Ability to obtain and maintain a U.S. government security clearance if required

Nice To Haves

  • Familiarity with CMMC and NIST 800-171, or experience supporting a compliance effort
  • Experience in the defense industry or another regulated environment
  • Experience handling CUI in government cloud environments, such as Microsoft GCC or GCC High, or AWS GovCloud
  • Experience with Google Workspace
  • Prior experience leading a Microsoft 365 migration
  • Experience with infrastructure as code, such as Terraform or CloudFormation
  • Experience supporting machine learning or research workloads in the cloud
  • Experience with PowerShell scripting and automation
  • Microsoft certifications such as MS-102, SC-300, MD-102, or SC-200
  • AWS certifications such as SysOps Administrator or Security Specialty
  • Security certifications such as Security+, CySA+, or CISSP
  • Active security clearance

Responsibilities

  • Serve as the first point of contact for all employee IT needs, troubleshooting hardware, software, access, and connectivity issues for a distributed team
  • Contribute to onboarding and offboarding in coordination with other departments
  • Maintain asset inventory and the device lifecycle for company laptops, mobile devices, and peripherals
  • Manage Windows, macOS, and Linux endpoints, including enrollment, compliance policies, and configuration baselines
  • Document processes, build a source of truth knowledge base, and keep IT runbooks current
  • Administer Microsoft 365, Entra ID, Exchange Online, Teams, SharePoint, and OneDrive
  • Design and enforce a least-privilege SharePoint permission structure
  • Manage licenses, groups, conditional access policies, and role-based permissions
  • Protect sensitive data through sensitivity labels, data loss prevention, and governance of external sharing and guest access
  • Partner with the engineering and DevSecOps team to deliver secure, well-governed cloud resources that support their work
  • Administer AWS identity, access, and governance, including least-privilege policies and user onboarding and offboarding
  • Manage cloud spend and mature the environment with tighter access controls and repeatable processes
  • Monitor and respond to security alerts across Windows, macOS, and Linux endpoints, and investigate suspicious activity
  • Enforce multi-factor authentication, disk encryption, patching, and least-privilege access
  • Manage vulnerabilities, security configurations, and security awareness training for all employees
  • Support incident response, including triage, containment, documentation, and follow-up
  • Partner with our compliance consultant on CMMC and NIST 800-171 requirements, translating them into practical technical controls
  • Gather evidence, maintain system documentation, and support audits and customer security questionnaires
  • Protect Controlled Unclassified Information (CUI) through proper configuration, access control, and data handling
  • Recommend and implement tools and processes that fit a small, fast-moving team
  • Manage vendors and IT purchasing
  • Help define the roadmap for IT and security as the company grows

Benefits

  • Significant equity stake
  • 100% Remote
  • Comprehensive medical, dental, and vision plans
  • 401(k) package with a generous 6% company match
  • Generous Discretionary Time off (DTO) policy
  • Elite technology package
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service