One million success stories. Start yours today.

Systems Administrator - Tier II

Date Posted: Jul 18, 2026
Yearly: USD - USD

Job Detail

  • location_on
    Location Englewood, Colorado, United States of America
  • desktop_windows
    Job Type: Permanent
  • schedule
    Shift:
  • analytics
    Career Level:
  • group
    Positions:
  • calendar_view_day
    Experience:
  • male
    Gender: No Preference
  • school
    Degree:
  • calendar_month
    Apply Before: Oct 16, 2026

Job Description

Overview

Systems Administrator - Tier II Location: Centennial, CO (In-Office) Company: Yield Solutions Group Reports to: IT Manager The Opportunity RefiJet processes thousands of auto loan refinancing applications every month across 30+ lending partners. That volume runs on Java Spring Boot services, AWS infrastructure, PostgreSQL and MariaDB databases, and a regulatory environment - FCRA, GLBA, SOC 2 - that requires every change to be documented, every endpoint to be compliant, and every access decision to be defensible. The Systems Administrator, Tier II is the operational layer that holds all of that together. This is a senior individual contributor role, not a generalist help desk function. Tier I handles first-contact triage. Tier II owns what Tier I cannot resolve: stuck MFA enrollments, IAM role misconfigurations in AWS, permission conflicts in GitLab, and anything else that requires genuine diagnosis before escalation. At the same time, Tier II owns several operational domains outright - identity and access management, endpoint compliance, backup verification, monitoring response, and the documentation that survives a SOC 2 audit. The person in this role needs to be technically grounded, documentation-disciplined, and comfortable working in a regulated environment where "I'll document that later" is not an option. What You'll Do - Key Responsibilities Identity & Access Management Provision and deprovision user accounts across Active Directory, AWS IAM, and the full RefiJet SaaS stack. When a new employee onboards you build out the complete access profile, not just the basic account. Resolve Tier I escalations in this domain: stuck MFA enrollments, IAM role misconfigurations, permission conflicts in GitLab, and access inconsistencies that require actual investigation to diagnose. Maintain access documentation that reflects current state at all times. In a SOC 2 environment, access records are audit evidence. Endpoint & Device Management Image, configure, and manage workstations across the organization using Microsoft Intune and Autopilot. Own the full device lifecycle from Autopilot enrollment and provisioning profile assignment through Intune configuration policy application, compliance policy enforcement, and patch cycle execution - scheduling, documentation, and remediation included. Verify endpoint compliance against SOC 2 control requirements using Intune's compliance reporting. When a gap surfaces - and SOC 2 audits surface them - you own the remediation and the written record of what you did. Troubleshoot Autopilot enrollment failures and Intune policy conflicts before they require escalation. Coordinate with the Director of IT/InfoSec on endpoint policy standards and any findings that require a policy-level response. Server & Infrastructure Operations Monitor on-prem and AWS resources on a routine basis: health checks, capacity monitoring, performance baselines. Execute maintenance windows, including OS patching, disk management, and scheduled restarts. Coordinate with DevOps before touching anything that sits under the Java Spring Boot services running in AWS. Document all infrastructure changes in a change log that can be reviewed without your presence to explain it. Network & Connectivity Manage DNS and DHCP configurations. Troubleshoot VPN issues at the routing and configuration level, not just the client level. Review firewall ACLs when connectivity issues require it. When an issue requires DevOps or InfoSec escalation, hand it off with a clear, specific problem statement - what you've ruled out, what you believe the root cause is, what you've already tried. Security Operations Participate in vulnerability remediation cycles under the direction of the Director of IT/InfoSec. This means executing the operational work: patching, configuration changes, verification, and documentation. Work with the DevOps team to respond to Datadog alerts that are security-adjacent with the same operational rigor as any other alert: ac

Key responsibilities

Not specified in the original listing.

Required skills

  • I.T. & Communications

What the company offers

Not specified in the original listing.

Skills Required

Company Overview

Englewood, Colorado, United States of America

Yield Solutions Group is a premier US provider of aggregated lender auto-refinancing through our consumer engagement entity, RefiJet. YSG & RefiJet provides a comprehensive, full-service process that assists consumers in identifying and obtaining the... Read More

Google Map

Related Jobs