| Location | South San Francisco, CA |
About Zipline
Zipline is the world's largest and most experienced drone delivery service. We are on a mission to serve all humans equally by ensuring access to food, medicine and essential goods anytime, anywhere. We design, build, and operate the world's largest autonomous logistics system, delivering critical supplies quickly and reliably. Today, Zipline operates on four continents, makes a delivery somewhere in the world every 30 seconds, and has completed millions of deliveries to date, including blood, vaccines, medical supplies, food, and retail products.
Our customers include the world's largest and most prominent healthcare systems, governments, retailers, restaurants and global businesses who rely on us to save lives, reduce emissions, increase economic opportunity, and provide delivery from point A to point B as fast as possible. The drone is only 15% of what we've built to enable seamless, reliable, global operations.
Our system strengthens supply chains, reduces congestion, and gives people time back. With more than 140 million commercial autonomous miles safely flown, Zipline is redefining access to healthcare, consumer products, and food across the globe.
We operate at a global scale and are looking for practical problem solvers who thrive on real-world challenges and rapid growth. Our team is motivated by building systems that have a direct, meaningful impact on people's lives and by scaling the future of logistics. We are seeking people who sculpt from first principles, enjoy facing adversity, and can do the impossible at record breaking speeds.
About You and The Role
We are looking for a Senior IT Infrastructure Engineer to help design, operate, automate, and scale the systems that support our employees and business operations. This role will provide technical ownership and direction for several of our core enterprise platforms, including Okta, Google Workspace, Slack, endpoint management, and the API integrations that connect our internal systems. You will set technical standards, make architecture decisions, and lead complex improvements across these systems while maintaining a secure, reliable, scalable, and highly automated IT environment. A key focus of this role will be designing and maturing identity and access management capabilities across the organization, including role-based access control, automated software provisioning, and scalable joiner, mover, and leaver workflows. You will establish patterns and standards that can be consistently operated and extended as the company grows. The ideal candidate has deep experience administering modern SaaS platforms, strong scripting and automation skills, a strong understanding of modern identity standards, and hands-on experience managing infrastructure in a public cloud environment such as AWS or Google Cloud Platform. You have demonstrated sound technical judgment and can design scalable solutions for complex, cross-system problems. This is a senior individual contributor role for someone who is comfortable serving as a technical lead for critical systems, resolving ambiguous cross-system issues, making architectural tradeoffs, and partnering across IT, Security, Engineering, and business teams. You will also provide technical guidance and mentorship to other members of the IT team.
What You''ll Do
Provide technical ownership, architecture, standards, security, reliability, and ongoing improvement for core IT platforms, including:
Okta
Google Workspace
Slack
Related enterprise SaaS applications
Define the architecture for and lead implementation of scalable identity and access management solutions across enterprise applications.
Define and mature role-based access control (RBAC) across systems, including access models, groups, roles, entitlements, and provisioning policies.
Define and evolve software provisioning and deprovisioning patterns that reduce manual administration, improve access consistency, strengthen security, and scale across the organization.
Design and maintain automated joiner, mover, and leaver workflows that ensure users receive the appropriate access based on role, department, location, employment status, or other business attributes.
Architect, build, maintain, and troubleshoot complex API-based integrations between enterprise systems, establishing reusable integration patterns where appropriate.
Manage identity and access management workflows, including authentication, SSO, MFA, provisioning, deprovisioning, lifecycle management, access reviews, and role-based access.
Develop automation and administrative tooling using Python, Bash, APIs, and other appropriate technologies.
Identify repetitive or manual IT processes and build scalable automation to improve efficiency, reliability, and user experience.
Define standards for and manage infrastructure and services running in a public cloud environment such as AWS or GCP.
Own the technical strategy, standards, and ongoing evolution of mobile device management (MDM) and endpoint management platforms such as Iru, Jamf,
Microsoft Intune, and Hexnode, including device enrollment, configuration profiles, security policies, application deployment, compliance, OS update management, and device lifecycle operations.
Develop and maintain integrations using REST APIs, webhooks, service accounts, OAuth, and other common authentication and integration patterns.
Implement and support modern identity federation and provisioning standards, including SAML, SCIM, OAuth, and OpenID Connect (OIDC).
Monitor the health, security, performance, and availability of critical IT systems and integrations.
Lead troubleshooting and root-cause analysis for complex infrastructure, identity, application, authentication, provisioning, and integration issues that span multiple systems.
Establish and maintain configuration standards, documentation, operational procedures, and system architecture documentation.
Partner with Security teams to implement and maintain appropriate access controls, security policies, logging, monitoring, and audit capabilities.
Partner with Engineering and business systems teams on integrations, automation, identity, and infrastructure initiatives.
Lead technical evaluation, design, implementation, and migration efforts for enterprise technologies.
Establish technical standards, design patterns, and best practices for IT infrastructure, SaaS administration, automation, identity management, endpoint management, and access governance.
Serve as a technical escalation point and subject matter expert for complex IT infrastructure and identity issues.
Mentor other members of the IT team and help improve the team''s technical capabilities and operational maturity.
What You''ll Bring
Preferred Qualifications
What Success Looks Like
In this role, you will set technical direction for an IT environment that is increasingly automated, reliable, secure, and easy to operate. You will establish scalable patterns and standards, reduce manual administrative work, improve the reliability of critical integrations, strengthen our identity and access management practices, and create technical foundations that can support the company as it grows. You will be successful when access is increasingly determined by well-defined roles and business attributes rather than manual requests, provisioning and deprovisioning are highly automated, joiner, mover, and leaver processes are reliable and scalable, and the platforms and integrations you own are well-architected, documented, supportable, and require fewer manual interventions. Our goal is to move toward an environment where the right users receive the right access to the right systems automatically, with clear controls, visibility, and governance aroundhow that access is granted and removed.
What Else You Need To Know
Zipline is an equal opportunity employer and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws or our own sensibilities.
We value diversity at Zipline and welcome applications from those who are traditionally underrepresented in tech. If you like the sound of this position but are not sure if you are the perfect fit, please apply!
Voluntary Self-Identification
For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.
As set forth in Zipline 's Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.