IT Operations Engineer

veritreeVancouver, BC
CA$90,000 - CA$110,000Hybrid

About The Position

veritree is seeking an IT Engineer to support the veritree & tentree’s organizations. This role requires someone with IT experience able to be self-sufficient and manage the IT needs of two separate organizations that share resources. You must be able to work from our shared office several days a week, and as required by either group that you’ll be supporting. The role involves taking full ownership of IT operations and end-user support for both veritree and tentree, managing the device fleet, identity, and day-to-day support. A key focus will be optimizing MDM solutions, establishing a security operations baseline, and leveraging AI tools for documentation and automation.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related discipline - or equivalent hands-on experience.
  • 3+ years of experience in IT operations / systems administration, with exposure to security-related fields, and the ability to own the IT function independently.
  • Proven experience managing device fleets via MDM - Apple (Mosyle, Jamf, Kandji, or similar, with Apple Business Manager) and/or Windows (Microsoft Intune / endpoint management), or a demonstrated ability to own an MDM rollout.
  • Strong Google Workspace administration experience (or comparable - Microsoft 365 / Entra ID).
  • Experience working across Linux, macOS, and Windows environments.
  • Demonstrated experience using AI tools (e.g., Claude, ChatGPT, GitHub Copilot) to improve documentation, troubleshooting, scripting, automation, and day-to-day IT operations.
  • Experience building workflow automation using PowerShell, Python, n8n, or similar scripting and integration platforms.
  • Networking fundamentals - DNS, VPN, Wi-Fi, and LAN/WAN.
  • Solid, practical grounding in cybersecurity operations: identity & access management, endpoint protection / EDR, MFA, phishing/email security, and security incident response.
  • Self-directed and comfortable owning ambiguity, setting standards, and building programs from the ground up.
  • Strong analytical and problem-solving skills with a security-first, risk-aware mindset.
  • An AI-forward mindset - actively uses modern tools to work smarter, automate the repetitive, and scale their impact.
  • Excellent communicator who can translate technical and security concepts for non-technical colleagues.
  • Able to balance and prioritize IT service delivery against proactive security work.

Nice To Haves

  • Relevant industry certifications are a strong plus - e.g., CompTIA (Security+, Network+, A+), CISSP, CISM, CEH, SANS/GIAC, or vendor certifications (Apple, Microsoft, Google).
  • Experience self-managing an EDR/SIEM stack (e.g., SentinelOne, CrowdStrike, Splunk, Microsoft Sentinel) rather than solely relying on a managed provider.
  • Experience applying cybersecurity frameworks and methodologies such as MITRE ATT&CK, STRIDE, NIST CSF, or CIS Controls, or working with SIEM platforms such as Splunk, Microsoft Sentinel, or Elastic.
  • Experience with cloud security (AWS, Azure, or GCP) - securing cloud workloads, identities, and configurations.
  • Prior experience as the first / sole IT or security hire in a growing company.

Responsibilities

  • Provide responsive, high-quality end-user support across hardware, software, access, and connectivity.
  • Support core IT infrastructure - DNS, VPN, Wi-Fi, networking, SaaS platforms, and productivity tools.
  • Own IT asset, license, and vendor management - procurement, renewals, cost optimization, lifecycle tracking, and tool evaluation.
  • Create and maintain clear documentation, runbooks, and knowledge-base articles to make IT repeatable, auditable, and scalable.
  • Administer Google Workspace and Microsoft 365 - users, groups, identity, licensing, SSO, and security/DLP policies.
  • Own the full onboarding/offboarding lifecycle and enforce MFA, least-privilege, and periodic access reviews across all systems.
  • Own the MDM platforms across the fleet - Mosyle MDM and Apple Business Manager for Apple, plus the Microsoft Intune rollout for Windows - driving zero-touch enrollment, app deployment, OS patching, and enforced hardening/security baselines across macOS and Windows.
  • Standardize device provisioning, inventory, and refresh processes, including mobile/BYOD where applicable.
  • Oversee our managed EDR provider and security monitoring/logging, and lead incident response end-to-end using MITRE ATT&CK.
  • Run the phishing and email security program (SPF/DKIM/DMARC, simulations, awareness training) and vulnerability management across endpoints, SaaS, and infrastructure.
  • Author and maintain security policies, runbooks, and a risk register, aligned to recognized frameworks (CIS Controls, NIST CSF).
  • Leverage AI tools (e.g., Claude, ChatGPT, GitHub Copilot) to accelerate documentation, scripting, log/alert analysis, and troubleshooting.
  • Build automations and workflows (scripting, MDM automation, integration platforms) to reduce manual effort and human error.

Benefits

  • Competitive salary with a performance-driven framework that ensures fair and consistent compensation reviews, tied to individual impact and business growth
  • Extended health, dental, and vision benefits
  • Additional Health Spending Account (HSA) / Lifestyle Spending Account (LSA) to support your well-being and lifestyle interests
  • A variety of time-off programs, including vacation, personal days, and a 4-week remote work program each year
  • Employee discount with tentree, our sister company
  • A flexible, hybrid work environment designed for collaboration and focus-driven impact
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service