Goat group

Senior Manager, IT Services

Los Angeles, California, United States Full Time
Location: Los Angeles, CA

Summary

The Senior IT Systems Engineer designs, implements, and supports secure, scalable identity, endpoint, and SaaS administration platforms across the organization. This role owns complex technical initiatives end to end, partners cross-functionally to improve reliability and security, and mentors junior engineers through strong standards, automation, and operational excellence.

Key Responsibilities

Identity & Access Management

  • Own and evolve the organization’s identity and access management (IAM) posture using Okta, including SSO integrations (SAML/OIDC), MFA policy design, user lifecycle management, group and rules strategy, and audit-ready access controls.
  • Design and maintain least-privilege access models aligned with security and compliance requirements.

Endpoint Management

  • Administer and scale Apple device management using Jamf, including enrollment workflows, configuration profiles, application deployment strategies, security baselines, compliance reporting, and incident response support.
  • Ensure endpoint posture meets organizational security and operational standards.

SaaS & Collaboration Platforms

  • Serve as the technical owner for core productivity and collaboration platforms such as Google Workspace and Slack.
  • Deliver secure configurations, reliable user lifecycle processes, role-based administration, and overall operational stability.

Automation & Engineering Practices

  • Build and maintain automation to eliminate manual work across IT systems (e.g., provisioning, offboarding, access reviews, device posture reporting), primarily using Bash and/or Python.
  • Apply strong software engineering practices, including testing, version control, documentation, and code review.
  • Develop and maintain integrations and workflows using APIs (Okta, Jamf, Google Workspace, Slack, and related SaaS tools), including secure token management, robust error handling, and observability.

Infrastructure 

  • Administrate AWS Infrastructure, including but not limited to Lambda, DynamoDB, Route53 
  • Implement Infrastructure as Code (IaC) practices where applicable (e.g., Terraform) to standardize configurations, reduce drift, and improve repeatability.
  • Contribute to CI/CD pipelines (GitHub Actions or equivalent) to enable safe, auditable, and repeatable system changes.

Operations & Reliability

  • Lead technical troubleshooting for complex, cross-system issues spanning identity, endpoint management, and SaaS platforms.
  • Perform root cause analysis and drive permanent remediation.
  • Define, document, and enforce engineering standards for IT systems operations, including change management, runbooks, access controls, naming conventions, and configuration baselines.

Cross-Functional Collaboration & Leadership

  • Partner closely with Security, HR, and Engineering to deliver secure-by-default onboarding, offboarding, role changes, and privileged access workflows with clear ownership and SLAs.
  • Mentor and upskill less experienced team members through code reviews, pairing, technical guidance, and knowledge sharing, raising the overall quality and consistency of IT engineering deliverables.

Qualifications

Required

  • 5+ years of experience in IT systems engineering, identity engineering, endpoint management, or adjacent SaaS/IT infrastructure roles (typically Professional Grade 4+ equivalent, depending on scope).
  • Hands-on experience administering Okta in a production environment, including SSO/MFA, policies, group and rules strategy, and application integrations.
  • Hands-on experience administering Jamf in a production macOS fleet, including packaging and deployment, configuration profiles, compliance and security baselines, and reporting.
  • Strong scripting ability in Bash and/or Python for automation and API-based workflows.
  • Experience using Git-based version control systems (GitHub preferred).

Preferred

  • Experience with Infrastructure as Code tools (e.g., Terraform) and CI/CD practices.
  • Hands on experience administrating Windows Server, Active Directory and Azure
  • Familiarity with Go.
  • Relevant certifications or formal training (e.g., Okta, Jamf, Google Workspace, IAM or security coursework).

The hiring range for this position is below, plus benefits (401K, paid time off, dental, medical, vision, disability, life insurance options). To determine starting pay within the hiring range, we carefully consider a variety of factors, including primary work location, role/level, a candidate’s skills, experience, market demands, and internal parity. You may reach out to a recruiter for additional information.

Hiring Range:
$138,000$172,500 USD

GOAT Group represents the leading platforms for authentic sneakers, apparel and accessories. Operating four distinct brands–GOAT, Flight Club, Grailed and alias–GOAT Group has a global community of more than 60 million members across 170 countries.

GOAT is the global platform for the greatest products from the past, present and future. Since its founding in 2015, GOAT has become one of the leading and most trusted sneaker platforms in the world, and has expanded to offer apparel and accessories from select emerging, contemporary and iconic brands. Through its unique positioning between the primary and resale markets, the company offers styles across various time periods on its digital platforms and in its retail locations, while delivering products to over 60 million members across 170 countries.

Established in New York City over 15 years ago, Flight Club revolutionized sneaker retail as the original consignment store for rare shoes. Carrying the rarest exclusives and collectible sneakers, Flight Club has evolved from a one-stop sneaker destination, to a cultural hub for sneaker enthusiasts and novices alike. With three brick-and-mortar locations in New York City, Los Angeles and Miami, Flight Club remains the premier source for authentic, rare sneakers.

Founded in 2013, Grailed is the leading community-driven marketplace for rare luxury, streetwear and vintage fashion. The marketplace was built for enthusiasts, by enthusiasts, and features products from brands including Supreme, Raf Simons, Gucci, Saint Laurent, Balenciaga, Prada and more. With a highly curated selection of resale pieces including inventory exclusive to the platform, Grailed makes fashion accessible.

The company is backed by strategic investor Foot Locker, Inc. as well as some of the leading names in venture capital including Park West Asset Management, T. Rowe Price Associates, Inc., Franklin Templeton, Adage Capital Management, Ulysses Management, D1 Capital Partners, Accel, Andreessen Horowitz, Index Ventures, Matrix Partners, Upfront Ventures, Webb Investment Network and Y Combinator.

GOAT Group will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, if applicable. By applying, you authorize GOAT Group to send you text messages regarding your job application, interview and/or onboarding process, and other job opportunities at GOAT Group. If you are a California resident, please review our California Privacy Rights Notice for Job ApplicantsIf you are an EU or UK resident, please review our EU / UK Candidate & Employee Privacy Notice.