SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Salary: USD 112,000 - 168,000 / annual
Klaviyo is seeking a Senior IT Systems Engineer to own the design, implementation, and long-term health of enterprise systems across identity, endpoint management, and SaaS platforms. This is a senior individual contributor role with high autonomy and real ownership—no direct reports.
You will lead projects end-to-end, from SSO/SCIM rollouts to complex multi-tool integrations and automations. You'll take ambiguous business problems, define problem statements yourself, and deliver solutions that scale. You'll partner with operations, engineering, Security, and the IT Searchbar team, and serve as a technical escalation point when systems break.
Key responsibilities include:
- Own systems (identity, endpoint, or core SaaS platforms) and be accountable for reliability, security, and roadmap
- Lead projects end-to-end: scope, design, plan rollout and rollback, communicate changes, and land them without skipping testing or documentation
- Turn ambiguous business needs into clear problem statements and systems that work
- Set the technical bar: clean configuration, least-privilege access, automation over manual toil, and runbooks others can operate from
- Define success metrics before building, then prove impact with data
- Mentor engineers earlier in their careers and give direct, useful feedback
- Act as technical escalation for complex system issues, drive root cause analysis, and prevent recurrence
Klaviyo is building an AI-first future, and you will use AI fluently in your own work and help design AI-assisted workflows into the systems you run for the company. Participation in an after-hours on-call rotation is required for site-specific or business-blocking issues.
REQUIREMENTS:
- 4+ years of hands-on experience as a systems engineer or systems administrator, with a track record of owning enterprise systems in production (not just operating them, but deciding how they should work)
- Ability to define problem statements yourself; can take vague or contested business needs, scope them, drive stakeholder alignment, and deliver with minimal direction
- Deep working knowledge across IT systems: enterprise device management, identity and access management, endpoint security
- Deployed and managed macOS and iOS devices at scale through MDM (Jamf preferred), including configuration profiles, policies, and OS update strategy; Windows management (Intune, Autopilot) is a strong plus
- Administered core SaaS platforms such as Google Workspace, Slack, Atlassian, and Zoom, including security and admin controls
- Hands-on experience with IdP configuration, management, and maintenance: SSO (SAML/OIDC), SCIM provisioning, group and role design, app onboarding; Okta or Entra ID (Azure AD) preferred
- Owned the identity lifecycle in practice: onboarding, role changes, offboarding; understand security and audit consequences
- AI proficiency: AI is already part of how you work; use LLM assistants and agents to research, write and debug code, draft documentation, and compress routine work; actively interested in putting AI into systems you run (automating triage, enrichment, repetitive workflows)
- Automation by default with scripting skills: Bash, PowerShell, or Python (Python preferred); AWS Lambda experience is a plus; have replaced manual work with automation others rely on
- Comfortable working with APIs: REST, JSON, authentication, rate limits; can build integrations between systems that don't natively talk
- Value clean, concise controls and easily editable security functionality; can produce evidence for access reviews and audits (SOC 2, SOX) without derailing your week
- Disciplined change management: test, get peer review, plan rollback, communicate to affected users, document changes including under pressure
- Can debug unfamiliar system problems, drive to root cause, and communicate clearly to non-technical stakeholders while unresolved
- Can evaluate vendors and tools on merits: security posture, integration surface, total cost; make defensible recommendations
- Strong written communication; documentation, runbooks, and change notices are good enough that others can act on them without asking you
NICE TO HAVE:
- Experience with Workato, Okta Workflows, n8n, or similar SSO and automation solutions; built something non-trivial in one
- Enterprise-scale networking: routing, DNS, DHCP, VPN, building and maintaining multiple global office networks
- Systems administration or engineering in fast-paced, high-growth IT environment supporting globally distributed workforce
- Building with AI beyond chat window: connecting LLM to systems via APIs or MCP, running AI-assisted workflow or agent in production
- VPC, EC2, Security Groups, ACLs, IAM in AWS and GCP
- Infrastructure-as-code (Terraform, Ansible) or version-controlled configuration management for IT systems
- ITSM platform administration (Freshservice, Jira Service Management): forms, workflows, SLAs, reporting
- Relevant certifications: Jamf 200/300, Okta Certified Professional or Administrator, associate-level AWS, Azure, or Google Cloud