Back to jobs
New

IT Manager

Tel Aviv

Daylight is a security services company delivering Managed Agentic Security Services (MASS), including MDR, threat hunting, security data lake, and more, through a fundamentally different architecture than traditional security services providers.

Daylight's architecture combines an agentic platform that runs the full cycle from detection to response with security experts from IR and threat hunting backgrounds. The platform collects identity and business context across systems to investigate alerts and continuously learns your environment. Security experts validate decisions, feed insights into the platform, optimize detections, and take over in case of an incident.

The result: security teams move from firefighting to strategic work.

We're looking for a hands-on IT Manager to join us at Daylight Security and own corporate IT end to end. This is our first dedicated IT hire — today the work is split between the Infra & Security team and a part-time external provider. You'll take it over, professionalize it, and automate as much of it as possible, for a fully cloud, all-Mac company of ~60 people.

At a security company, the corporate fleet is an attack surface. This role sits inside Infra & Security, not next to it, and you'll work closely with Security, People, and Finance.

If you're excited by owning a function outright, enjoy working in a fast-paced startup, and want your work to have real impact, we'd love to meet you.

Responsibilities:

  • Own Google Workspace as our identity layer — OU and group structure, SAML/OIDC app integrations, Context-Aware Access policies, passkey and MFA enforcement, admin API automation
  • Own the macOS fleet through MDM — zero-touch enrollment, configuration profiles, patch and OS update enforcement, software deployment, compliance reporting
  • Own the employee lifecycle — onboarding and offboarding runbooks, access provisioning and revocation, hardware procurement, shipping, and returns
  • Run day-to-day IT support in Slack, set response SLAs and service metrics, and manage the external IT provider relationship
  • Own the SaaS estate — licensing, renewals, vendor management, periodic access reviews, and spend optimization
  • Build AI-native automation across Workspace, Slack, MDM, and HR systems using vendor APIs, scripts, and agentic tooling. We build AI agents for a living; internal IT should run on them
  • Partner with Infra & Security on endpoint security, zero-trust network access, secrets management, and incident response
  • Produce audit evidence — device inventory, access reviews, offboarding proof
  • Own office connectivity, conference room A/V, and network infrastructure
  • Maintain runbooks, inventories, and documentation good enough that someone else can follow them

Requirements:

  • 5+ years in IT operations or system administration at a cloud-native company
  • Deep hands-on Google Workspace administration, beyond user management — OUs, SAML app integration, Context-Aware Access, admin API, domain-wide delegation hygiene
  • Strong macOS administration at scale through a modern MDM (Kandji, Jamf, Mosyle, or similar), including scripting and configuration profiles
  • Real scripting and automation ability — Python, Bash, or Go against vendor APIs, or low-code and agentic workflow platforms
  • Solid IAM fundamentals — SAML/OIDC, SCIM, FIDO2/passkeys, least privilege, joiner-mover-leaver
  • Comfort working in an AI-native environment, whether that's using AI in your daily work or building automation on top of it
  • Comfortable as the sole owner of a function — self-directed, writes things down, closes loops without being chased
  • Hebrew and English

Nice to have:

  • Prior IT at a security or regulated company; SOC 2 / ISO 27001 evidence collection
  • ZTNA (Twingate, Tailscale, Cloudflare) and EDR (CrowdStrike, SentinelOne)
  • Slack Enterprise Grid administration
  • AWS or GCP exposure; Terraform

Apply for this job

*

indicates a required field

Phone
Resume/CV*

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf