EU remote
Systems Engineer
About this role
ABOUT INFITERRA Join our mission to grow and transform the subscription economy by simplifying subscription service delivery. Infiterra enables IT distributors, Managed Service Providers (MSPs), and telcos to succeed in the subscription economy. Our subscription commerce platform automates and unifies subscription workflows - from quote to bill- driving operational efficiency, billing accuracy, and scalable growth. Recognized as a global leader in subscription commerce, Infiterra combines innovation, performance excellence, and trusted expertise to help partners transform and grow.
ABOUT THE ROLE We are hiring a mid-level Systems Engineer to take hands-on ownership of Infiterra’s internal IT environment. The role combines Microsoft 365 and Entra ID administration, endpoint and systems management, employee IT support, access and security controls, and automation. Your mission is to provide secure, reliable and increasingly automated corporate IT services to Infiterra employees. You will own day-to-day corporate IT operations while improving automation, identity and access management, endpoint management, employee lifecycle processes and service quality.
Moreover, you will have the opportunity to help evolve the function from largely operational support into a standardized, secure and increasingly automated internal IT service. This is not an L1 support position — support is part of the job, but the purpose of the role is to engineer and operate Internal IT as a scalable service. KEY RESPONSIBILITIES Identity & Access Management - Keep corporate identities in Entra ID / Azure AD accurate, well-organized and easy to audit.
- Structure users, groups and roles so they map cleanly to how the business actually works. - Deliver secure, low-friction MFA and SSO, backed by Conditional Access policies that keep unauthorized access out. - Grant access the moment someone needs it, and revoke it the moment they no longer do. - Keep privileged accounts tightly controlled, with no lingering or unused elevated access. - Catch and correct access drift through regular reviews, before it becomes a risk.
- Act as Security's reliable partner in shaping and validating access policy decisions. Employee Lifecycle - Own the technical onboarding, role/access changes and offboarding process and run without gaps. - Get every new employee productive from day one, with accounts, devices and applications ready before they start, and cut off access immediately once employment ends. Endpoint & Device Management - Keep every company laptop on the security baseline and current on patches, without employees ever noticing the effort behind it.