Back to jobs New Sr. IT Infrastructure Engineer South San Francisco, California, USA Apply About Zipline Zipline is the world's largest and most experienced drone delivery service. We are on a mission to serve all humans equally by ensuring access to food, medicine and essential goods anytime, anywhere. We design, build, and operate the world's largest autonomous logistics system, delivering critical supplies quickly and reliably. Today, Zipline operates on four continents, makes a delivery somewhere in the world every 30 seconds, and has completed millions of deliveries to date, including blood, vaccines, medical supplies, food, and retail products. Our customers include the world's largest and most prominent healthcare systems, governments, retailers, restaurants and global businesses who rely on us to save lives, reduce emissions, increase economic opportunity, and provide delivery from point A to point B as fast as possible. The drone is only 15% of what we've built to enable seamless, reliable, global operations. Our system strengthens supply chains, reduces congestion, and gives people time back. With more than 140 million commercial autonomous miles safely flown, Zipline is redefining access to healthcare, consumer products, and food across the globe. We operate at a global scale and are looking for practical problem solvers who thrive on real-world challenges and rapid growth. Our team is motivated by building systems that have a direct, meaningful impact on people's lives and by scaling the future of logistics. We are seeking people who sculpt from first principles, enjoy facing adversity, and can do the impossible at record breaking speeds. About You and The Role We are looking for a Senior IT Infrastructure Engineer to help design, operate, automate, and scale the systems that support our employees and business operations. This role will provide technical ownership and direction for several of our core enterprise platforms, including Okta, Google Workspace, Slack, endpoint management, and the API integrations that connect our internal systems. You will set technical standards, make architecture decisions, and lead complex improvements across these systems while maintaining a secure, reliable, scalable, and highly automated IT environment. A key focus of this role will be designing and maturing identity and access management capabilities across the organization, including role-based access control, automated software provisioning, and scalable joiner, mover, and leaver workflows. You will establish patterns and standards that can be consistently operated and extended as the company grows. The ideal candidate has deep experience administering modern SaaS platforms, strong scripting and automation skills, a strong understanding of modern identity standards, and hands-on experience managing infrastructure in a public cloud environment such as AWS or Google Cloud Platform. You have demonstrated sound technical judgment and can design scalable solutions for complex, cross-system problems. This is a senior individual contributor role for someone who is comfortable serving as a technical lead for critical systems, resolving ambiguous cross-system issues, making architectural tradeoffs, and partnering across IT, Security, Engineering, and business teams. You will also provide technical guidance and mentorship to other members of the IT team. What You'll Do Provide technical ownership, architecture, standards, security, reliability, and ongoing improvement for core IT platforms, including: Okta Google Workspace Slack Related enterprise SaaS applications Define the architecture for and lead implementation of scalable identity and access management solutions across enterprise applications. Define and mature role-based access control (RBAC) across systems, including access models, groups, roles, entitlements, and provisioning policies. Define and evolve software provisioning and deprovisioning patterns that reduce manual administration, improve access consistency, strengthen security, and scale across the organization. Design and maintain automated joiner, mover, and leaver workflows that ensure users receive the appropriate access based on role, department, location, employment status, or other business attributes. Architect, build, maintain, and troubleshoot complex API-based integrations between enterprise systems, establishing reusable integration patterns where appropriate. Manage identity and access management workflows, including authentication, SSO, MFA, provisioning, deprovisioning, lifecycle management, access reviews, and role-based access. Develop automation and administrative tooling using Python, Bash, APIs, and other appropriate technologies. Identify repetitive or manual IT processes and build scalable automation to improve efficiency, reliability, and user experience. Define standards for and manage infrastructure and services running in a public cloud environment such as AWS or GCP. Own the technical strategy, standards, and ongoing evolution of mobile device management (MDM) and endpoint management platforms such as Iru, Jamf, Microsoft Intune, and Hexnode, including device enrollment, configuration profiles, security policies, application deployment, compliance, OS update management, and device lifecycle operations. Develop and maintain integrations using REST APIs, webhooks, service accounts, OAuth, and other common authentication and integration patterns. Implement and support modern identity federation and provisioning standards, including SAML, SCIM, OAuth, and OpenID Connect (OIDC). Monitor the health, security, performance, and availability of critical IT systems and integrations. Lead troubleshooting and root-cause analysis for complex infrastructure, identity, application, authentication, provisioning, and integration issues that span multiple systems. Establish and maintain configuration standards, documentation, operational procedures, and system architecture documentation. Partner with Security teams to implement and maintain appropriate access controls, security policies, logging, monitoring, and audit capabilities. Partner with Engineering and business systems teams on integrations, automation, identity, and infrastructure initiatives. Lead technical evaluation, design, implementation, and migration efforts for enterprise technologies. Establish technical standards, design patterns, and best practices for IT infrastructure, SaaS administration, automation, identity management, endpoint management, and access governance. Serve as a technical escalation point and subject matter expert for complex IT infrastructure and identity issues. Mentor other members of the IT team and help improve the team's technical capabilities and operational maturity. What You'll Bring 7+ years of professional IT experience. 5+ years of hands-on experience administering and managing enterprise infrastructure, SaaS platforms, identity systems, or related technologies. Significant hands-on experience administering Okta or a comparable enterprise identity and access management platform. Significant hands-on experience administering Google Workspace in a mid-sized or large enterprise environment. Experience administering Slack or a comparable enterprise collaboration platform. Hands-on experience administering and supporting MDM and endpoint management platforms such as Iru, Jamf, Microsoft Intune, Hexnode, or comparable solutions. Strong scripting and automation skills using Python and Bash. Demonstrated experience designing, building, maintaining, and troubleshooting API integrations between enterprise applications. Strong understanding of REST APIs, JSON, webhooks, service accounts, and service to-service authentication. Deep understanding of modern identity and authentication standards and protocols, including OAuth, SAML, SCIM, and OpenID Connect (OIDC). Strong understanding of identity and access management concepts, including SSO, MFA, federation, identity lifecycle management, RBAC, provisioning, deprovisioning, and access governance. Demonstrated experience designing and implementing role-based access control models across enterprise applications. Experience automating application and software provisioning using identity attributes, groups, roles, APIs, SCIM, workflows, or similar technologies. Hands-on experience designing and managing infrastructure or services in AWS, Google Cloud Platform, or a comparable public cloud environment. Experience troubleshooting complex issues across SaaS applications, identity platforms, networks, APIs, and cloud services. Strong understanding of security principles and enterprise IT best practices. Experience creating clear technical documentation, runbooks, and operational procedures. Strong communication skills and the ability to work effectively with both technical and non-technical stakeholders. Preferred Qualifications Experience managing Okta at enterprise scale, including Workflows, Lifecycle Management, application integrations, group rules, advanced security policies, and automated provisioning. Experience designing access models based on attributes such as department, role, location, employment type, or organizational hierarchy. Experience implementing access certification, entitlement management, or identity governance processes. Experience with Google Workspace automation and administration using tools such as GAM, Google APIs, or Apps Script. Experience working with Slack APIs, Slack administration, Enterprise Grid, or automated Slack workflows. Experience with infrastructure-as-code tools such as Terraform is a plus. Experience with source control and software development practices using Git and CI/CD workflows. Experience designing or improving endpoint management, device trust, zero-trust, compliance, and device lifecycle programs across a diverse fleet. Experience with secrets management, certificate management, or privileged access management. Experience working in a highly automated, cloud-first environment. Experience supporting environments with strong security, compliance, or audit requirements. What Success Looks Like In this role, you will set technical direction for an IT environment that is increasingly automated, reliable, secure, and easy to operate. You will establish scalable patterns and standards, reduce manual administrative work, improve the reliability of critical integrations, strengthen our identity and access management practices, and create technical foundations that can support the company as it grows. You will be successful when access is increasingly determined by well-defined roles and business attributes rather than manual requests, provisioning and deprovisioning are highly automated, joiner, mover, and leaver processes are reliable and scalable, and the platforms and integrations you own are well-architected, documented, supportable, and require fewer manual interventions. Our goal is to move toward an environment where the right users receive the right access to the right systems automatically, with clear controls, visibility, and governance aroundhow that access is granted and removed. What Else You Need To Know Zipline is an equal opportunity employer and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws or our own sensibilities. We value diversity at Zipline and welcome applications from those who are traditionally underrepresented in tech. If you like the sound of this position but are not sure if you are the perfect fit, please apply! Voluntary Self-Identification For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file. As set forth in Zipline 's Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law. Apply for this job
- indicates a required field First Name
- Last Name
- Preferred First Name Email
- Phone Country
- Phone
- 244 results found No results found Afghanistan +93 Åland Islands +358 Albania +355 Algeria +213 American Samoa +1 Andorra +376 Angola +244 Anguilla +1 Antigua & Barbuda +1 Argentina +54 Armenia +374 Aruba +297 Ascension Island +247 Australia +61 Austria +43 Azerbaijan +994 Bahamas +1 Bahrain +973 Bangladesh +880 Barbados +1 Belarus +375 Belgium +32 Belize +501 Benin +229 Bermuda +1 Bhutan +975 Bolivia +591 Bosnia & Herzegovina +387 Botswana +267 Brazil +55 British Indian Ocean Territory +246 British Virgin Islands +1 Brunei +673 Bulgaria +359 Burkina Faso +226 Burundi +257 Cambodia +855 Cameroon +237 Canada +1 Cape Verde +238 Caribbean Netherlands +599 Cayman Islands +1 Central African Republic +236 Chad +235 Chile +56 China +86 Christmas Island +61 Cocos (Keeling) Islands +61 Colombia +57 Comoros +269 Congo - Brazzaville +242 Congo - Kinshasa +243 Cook Islands +682 Costa Rica +506 Côte d'Ivoire +225 Croatia +385 Cuba +53 Curaçao +599 Cyprus +357 Czechia +420 Denmark +45 Djibouti +253 Dominica +1 Dominican Republic +1 Ecuador +593 Egypt +20 El Salvador +503 Equatorial Guinea +240 Eritrea +291 Estonia +372 Eswatini +268 Ethiopia +251 Falkland Islands +500 Faroe Islands +298 Fiji +679 Finland +358 France +33 French Guiana +594 French Polynesia +689 Gabon +241 Gambia +220 Georgia +995 Germany +49 Ghana +233 Gibraltar +350 Greece +30 Greenland +299 Grenada +1 Guadeloupe +590 Guam +1 Guatemala +502 Guernsey +44 Guinea +224 Guinea-Bissau +245 Guyana +592 Haiti +509 Honduras +504 Hong Kong SAR China +852 Hungary +36 Iceland +354 India +91 Indonesia +62 Iran +98 Iraq +964 Ireland +353 Isle of Man +44 Israel +972 Italy +39 Jamaica +1 Japan +81 Jersey +44 Jordan +962 Kazakhstan +7 Kenya +254 Kiribati +686 Kosovo +383 Kuwait +965 Kyrgyzstan +996 Laos +856 Latvia +371 Lebanon +961 Lesotho +266 Liberia +231 Libya +218 Liechtenstein +423 Lithuania +370 Luxembourg +352 Macao SAR China +853 Madagascar +261 Malawi +265 Malaysia +60 Maldives +960 Mali +223 Malta +356 Marshall Islands +692 Martinique +596 Mauritania +222 Mauritius +230 Mayotte +262 Mexico +52 Micronesia +691 Moldova +373 Monaco +377 Mongolia +976 Montenegro +382 Montserrat +1 Morocco +212 Mozambique +258 Myanmar (Burma) +95 Namibia +264 Nauru +674 Nepal +977 Netherlands +31 New Caledonia +687 New Zealand +64 Nicaragua +505 Niger +227 Nigeria +234 Niue +683 Norfolk Island +672 North Korea +850 North Macedonia +389 Northern Mariana Islands +1 Norway +47 Oman +968 Pakistan +92 Palau +680 Palestinian Territories +970 Panama +507 Papua New Guinea +675 Paraguay +595 Peru +51 Philippines +63 Poland +48 Portugal +351 Puerto Rico +1 Qatar +974 Réunion +262 Romania +40 Russia +7 Rwanda +250 Samoa +685 San Marino +378 São Tomé & Príncipe +239 Saudi Arabia +966 Senegal +221 Serbia +381 Seychelles +248 Sierra Leone +232 Singapore +65 Sint Maarten +1 Slovakia +421 Slovenia +386 Solomon Islands +677 Somalia +252 South Africa +27 South Korea +82 South Sudan +211 Spain +34 Sri Lanka +94 St.
Barthélemy +590 St. Helena +290 St. Kitts & Nevis +1 St. Lucia +1 St. Martin +590 St. Pierre & Miquelon +508 St. Vincent & Grenadines +1 Sudan +249 Suriname +597 Svalbard & Jan Mayen +47 Sweden +46 Switzerland +41 Syria +963 Taiwan +886 Tajikistan +992 Tanzania +255 Thailand +66 Timor-Leste +670 Togo +228 Tokelau +690 Tonga +676 Trinidad & Tobago +1 Tunisia +216 Turkey +90 Turkmenistan +993 Turks & Caicos Islands +1 Tuvalu +688 U.S. Virgin Islands +1 Uganda +256 Ukraine +380 United Arab Emirates +971 United Kingdom +44 United States +1 Uruguay +598 Uzbekistan +998 Vanuatu +678 Vatican City +39 Venezuela +58 Vietnam +84 Wallis & Futuna +681 Western Sahara +212 Yemen +967 Zambia +260 Zimbabwe +263 Location (City)
- Locate me Resume/CV
- Attach Attach Dropbox Enter manually Enter manually Accepted file types: pdf, doc, docx, txt, rtf Cover Letter Attach Attach Dropbox Enter manually Enter manually Accepted file types: pdf, doc, docx, txt, rtf Website LinkedIn Profile Tell us how you heard about Zipline and this job!
- Select... Are you authorized to work for Zipline in the United States without sponsorship now?
- Select... Are you authorized to work for Zipline in the United States without sponsorship in the future?
- Select.
.. Voluntary Self-Identification - Veteran Select... If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows: A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability. A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service. An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense. An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985. Voluntary Self Identification - Disability Select... Voluntary Self-Identification of Disability Form CC-305 Page 1 of 1 OMB Control Number 1250-0005 Expires 04/30/2026 Why are you being asked to complete this form? We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years. Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor's Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp . How do you know if you have a disability? A disability is a condition that substantially limits one or more of your "major life activities." If you have or have ever had such a condition, you are a person with a disability.