Horizon3.ai Logo

Horizon3.ai

Senior IT Systems Engineer

Posted Yesterday
Remote
Hiring Remotely in US
142K-162K Annually
Senior level
Remote
Hiring Remotely in US
142K-162K Annually
Senior level
Administer and secure identity, email, network, firewall, and collaboration infrastructure for a distributed workforce. Responsibilities include Okta or equivalent SSO management, email security controls, incident response, network administration, routing, switching, VPNs, firewall policies, documentation, vendor management, and infrastructure improvement. The role partners with Security and Help Desk teams, troubleshoots complex issues, supports onboarding and offboarding, and manages moderately complex projects independently.
The summary above was generated by AI

Get to Know Us

Horizon3 is a fast-growing, remote cybersecurity company dedicated to the mission of enabling organizations to proactively find and fix and verify exploitable attack vectors before criminals exploit them. Our flagship product, the NodeZeroTM platform, delivers production-safe autonomous pentests and other key assessment operations that scale across the largest internal, external, cloud, and hybrid cloud environments. NodeZero has been adopted by organizations of all sizes, from small educational institutions to government agencies and Global 100 enterprises. It is used by ITOps/SecOps teams, consulting pentesters, and MSSPs and MSPs. 

We are a fusion of former U.S. Special Operations cyber operators, startup engineers, and formerly frustrated cybersecurity practitioners. We're committed to helping solve our common security problems: ineffective security tools, false positives resulting in alert fatigue, blind spots, "checkbox” security culture, cybersecurity skills shortage, and the long lead time and expense of hiring outside consultants. Collectively, we are a team of learn it alls, committed to a culture of respect, collaboration, ownership, and results.

 

What You’ll Do

We are seeking a security-minded IT Systems Engineer with a genuine passion for networking — someone equally comfortable hardening identity and email infrastructure as they are managing routing and firewall policy. This role is roughly 60% security, identity, and email systems and 40% network engineering.

You will own the controls that protect how our distributed workforce authenticates, communicates, and connects, while keeping the underlying network reliable and well-documented. This role partners closely with Security and the Help Desk team to resolve escalated issues and to keep network, identity, and email infrastructure aligned with company security standards.

This role will be responsible for.....

  • Administer and secure Okta (or equivalent IdP/SSO), managing authentication policies, access provisioning, and integration with downstream applications

  • Architecting, Administering and secure the company email/collaboration platform, including mail flow rules, spam/phishing filtering, DKIM/DMARC/SPF configuration, and data loss prevention policies

  • Own operations, monitoring, and incident response for network, email and identity security controls including firewall policy, and threat detection

  • Triage incidents and remediate or escalate per incident response procedures

  • Collaborate across teams (Security and Help Desk) to resolve escalated connectivity issues, support onboarding/offboarding, and ensure infrastructure remains aligned with security standards.

  • Evaluate and recommend improvements to identity architecture, email security posture, and related tooling

  • Administer and maintain network infrastructure: switches, routers, firewalls, and wireless access points while also supporting a distributed workforce, including capacity planning and performance monitoring

  • Design and implement network changes (VLANs, routing, firewall rule changes) with minimal disruption to business operations

  • Maintain accurate documentation of network topology, configurations, and email/identity security architecture

  • Manage vendor relationships and support contracts for network, firewall, identity, and email security tooling

  • Demonstrate a commitment to integrity, process improvement, and customer satisfaction

What You’ll Bring
  • Must have hands-on experience administering an identity/SSO platform (e.g., Okta) in a production environment, including access policies and app integrations

  • Must have experience configuring and maintaining email security controls, including SPF, DKIM, DMARC, and anti-phishing/anti-spam tooling

  • Must have experience administering a cloud email/collaboration platform (Google Workspace or Microsoft 365, or similar)

  • Must have hands-on experience administering enterprise network infrastructure (switches, routers, firewalls, VPN) in a production environment

  • Must have working knowledge of network security principles, including segmentation, firewall policy management, and VPN architecture

  • Must have experience troubleshooting complex network, identity, and email connectivity issues with minimal escalation

  • Must have experience documenting configurations, architecture diagrams, and operational runbooks

  • Must be able to scope and manage moderately complex projects end-to-end with little to no direction

  • Must have experience supporting a distributed or remote-first workforce

Minimum Education and Experience
  • 3–5 years of experience in systems administration, identity/security engineering, or network administration

  • Experience supporting a distributed or remote-first workforce

Required Tech Stack Experience

  • Identity/SSO platform (e.g., Okta, or similar)

  • Email security gateway / anti-phishing tooling (e.g., Proofpoint, Mimecast, or similar)

  • Email/collaboration platform (Google Workspace or Microsoft 365, or similar)

  • Enterprise firewalls (e.g., Palo Alto, Fortinet, or similar)

  • Routing and switching (e.g., Cisco, Meraki, or similar)

  • Network monitoring tools

What Sets You Apart?

  • Relevant certifications such as Security+, CCNA, CCNP, or Okta certifications

  • Experience with SASE/SSE platforms or Zero Trust network architecture

  • Experience automating identity, network, or email security tasks via scripting (Python, PowerShell, or similar)

  • Experience in high-growth SaaS or cybersecurity companies

Travel Required

We are a fully remote company, and this job may require up to 15% of travel to be successful.

Compensation and Values

At Horizon3, we believe that our people are our greatest asset, and our compensation philosophy reflects this core value. We are committed to fostering an environment where all employees feel valued, respected, and rewarded for their contributions. Our compensation structure is designed to be fair, competitive, and transparent, ensuring that every team member is recognized and compensated equitably across roles, levels, and locations.

In accordance with various State’s transparency regulations, we provide the following salary range information for this position:

  • Base salary range: $142,000 - $162,000 annually. The exact salary will be determined based on the selected candidate’s location, qualifications, experience, and relevant skills.

  • Additional compensation: All full-time roles are eligible for an equity package in the form of stock options.

 

Perks of Horizon3

  • Inclusive Team: We value diversity and promote an inclusive culture where everyone can thrive.

  • Growth Opportunities: Be part of a dynamic and growing team with numerous career development opportunities.

  • Innovative Culture: Work in a collaborative environment that encourages creativity and out-of-the-box thinking.

  • Hybrid & Remote Work: We embrace a mix of remote and hybrid work models depending on role and location, including our Chicago office, where some roles require regular in-office presence.

  • Competitive Compensation: We offer competitive salary, equity and benefits. Our benefits include health, vision & dental insurance for you and your family, a flexible vacation policy, and generous parental leave.

Compensation and Values

At Horizon3, we believe that our people are our greatest asset, and our compensation philosophy reflects this core value. We are committed to fostering an environment where all employees feel valued, respected, and rewarded for their contributions. Our compensation structure is designed to be fair, competitive, and transparent, ensuring that every team member is recognized and compensated equitably across roles, levels, and locations.

In accordance with various State’s transparency regulations, we provide the following salary range information for this position:

  • Base salary range [or Total On-Target Compensation]: $XX - $XX annually. The exact salary will be determined based on the selected candidate’s location, qualifications, experience, and relevant skills.

  • Additional compensation: All full-time roles are eligible for an equity package in the form of stock options.

You Belong Here

Horizon3 is not just an equal opportunity employer - we are a community that values diversity, equity, and inclusion as fundamental principles of our culture and success. We are dedicated to fostering a workplace where everyone feels welcome and respected, regardless of race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, hair length or any other legally protected status by law.

Our commitment to diversity and inclusion means we strive to attract, develop, and retain a workforce that reflects the varied communities we serve. We believe that diverse perspectives drive innovation and strengthen our ability to create cutting-edge cybersecurity solutions. At Horizon3, every team member is valued and supported in an environment that encourages personal and professional growth.

We welcome candidates from all backgrounds and experiences, and we encourage all qualified individuals to apply. Come be a part of Horizon3, where your unique contributions are recognized, and your potential is limitless.

Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities, and activities may change at any time with or without notice. 

Application Note

In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.

Similar Jobs

15 Days Ago
In-Office or Remote
United States
150K-175K Annually
Entry level
150K-175K Annually
Entry level
Artificial Intelligence • Robotics • Defense • Automation
Owns Windows and Linux administration across a hybrid, multi-cloud environment. Designs and deploys enterprise infrastructure across multiple sites, administers Azure Government, Entra ID, Proxmox, storage, networking, and endpoint systems, and automates configuration with Ansible. The role also leads disaster recovery, compliance hardening, infrastructure security, on-call emergency response, and mentorship of junior engineers.
Top Skills: Active DirectoryAnsibleAWSAzure Gcc-HighAzure GovernmentDebianJuniperLinuxAzureMicrosoft Entra IdMicrosoft IntuneNetappPalo AltoProxmox Backup ServerProxmox VeSd-WanUbuntuVeeamWindows Server
28 Days Ago
Remote
USA
149K-201K Annually
Senior level
149K-201K Annually
Senior level
Cloud • Legal Tech • Software
Design, develop, and maintain secure integrations across NetSuite, Coupa, Leapfin, and other enterprise systems. Build iPaaS workflows, custom connectors, webhook and event-driven automations, bulk synchronization processes, monitoring, error handling, and retry mechanisms. Translate finance requirements into technical specifications and data mappings, support implementation projects, document architectures, and maintain audit readiness. Apply AI-powered tooling to automate finance operations while ensuring compliance, security, and reliable handling of sensitive financial data.
Top Skills: AIApi TokensBashBoomiCeligoCoupaEvent-Driven ArchitectureGithub ActionsGoGraphQLHubspotLeapfinLlmsNetSuiteOauthOkta WorkflowsPythonRestRubySalesforceSAMLWebhooksWorkatoWorkday
One Month Ago
In-Office or Remote
175K-225K Annually
Senior level
175K-225K Annually
Senior level
Aerospace • Defense • Manufacturing
Design, build, and operate a secure, CUI-protecting network and infrastructure to achieve CMMC Level 2 compliance. Responsibilities include network segmentation per NIST SP 800-171, cloud and on-prem architecture, device and identity management, IaC automation, monitoring, incident response, and coordination with compliance for audits and System Security Plan maintenance.
Top Skills: Audit LoggingAWSAzureBashCmmc Level 2EncryptionFirewallIdentity And Access ManagementInfrastructure-As-CodeIntrusion DetectionLinuxMonitoringNetwork SegmentationNist Sp 800-171PythonVpnWindows

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account