SlipstreamJobsFresh Startup & VC-Backed Jobs

IT and Security Generalist

Galileo - Remote - Remote - posted 2026-09-23

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Salary: USD 110,000 - 120,000 / annual

Galileo is a team-based medical practice operating across 50 states, delivering high-touch, data-driven, multi-specialty care to complex patients. The company was founded by Dr. Tom X. Lee (pioneer behind One Medical and Epocrates) and serves regional and national health plans, employers, and Fortune 500 organizations. The IT and Security team operates identity, endpoints, workforce tooling, security monitoring, and automation workflows. Much of the operational volume is already handled by automated systems with AI-assisted steps—employee onboarding/offboarding, device lifecycle, security alert triage, audit evidence collection, and workforce support all run as workflows. This role focuses on operating that estate, keeping it healthy, and extending automation where manual work still exists. You will spend most days on exception handling, review, and building rather than ticket volume. The scope spans identity and endpoint administration, corporate security monitoring, and minimal workforce support. You will report to the Head of IT and Security. **Key Responsibilities:** *Identity and Endpoints:* Administer identities in Okta (users, groups, applications, device trust). Manage the MacBook fleet through MDM: enrollment, configuration, compliance, remote actions. Monitor and refine onboarding/offboarding workflows and handle exceptions. *Automation:* Maintain and extend the automation estate including LLM-assisted triage steps. Own the workflows you build—monitor, fix failures, retire obsolete ones. Build new automation for manual processes across the company. *Security Operations:* Respond to alerts from endpoint protection, cloud monitoring, and identity systems within SLAs. Investigate and document security events; escalate incidents per procedure. Support vulnerability management by reviewing findings, tracking remediation, and reporting status. *Application Security (Part-Time):* Participate in security review of engineering changes, integrations, and vendor connections. Review authentication, authorization, and data handling patterns. Work with engineering to set secure defaults from the start. *Audit and Evidence:* Ensure automated evidence collection continues working and investigate gaps. Gather and prepare evidence samples for SOC 2 and HITRUST assessments when automation cannot handle requests. *Workforce Support:* Handle support requests requiring system access or judgment beyond helpdesk capabilities. Write and update end-user documentation. **Growth Path:** This role is designed to develop your skills. As you demonstrate capability, you will take on more responsibility for different systems and workflows. The next step is to become a Security Engineer with a focus area (identity, detection and response, or application security), chosen together with your manager based on your strengths and company needs. **Requirements:** - 4–5 years of experience in fast-moving IT, security operations, or systems administration environments, or equivalent proven experience - Working knowledge of identity systems (Okta or equivalent) and macOS administration - Some scripting experience and understanding of fundamentals - Experience with workflow automation tools, LLMs, and APIs, or strong interest in learning them - Familiarity with security fundamentals: authentication, least privilege, and logging - Clear written and verbal communication skills - Ability to take responsibility for work, monitor systems, and fix issues proactively - Sound judgment about when to decide independently versus when to seek advice **Nice to Have:** - Exposure to HIPAA, SOC 2, or HITRUST environments - AWS or GCP administration - Experience with EDR, SIEM, or cloud security monitoring tools - Security certification in progress or completed

Similar roles