Engineering

Corporate Technology Engineer

18 Feb 2026

The Role

We are hiring a Corporate IT Engineer to take ownership of our internal technology landscape and materially increase the maturity of our corporate IT, security, and governance.

This role exists to move the business from “working, but fragile” corporate IT to well-designed, well-operated, and auditable systems. While some tools are already in place, much of the current setup relies on informal processes, manual effort, and individual heroics.

This is an engineering-minded role, not a ticket-driven helpdesk position. You will design, implement, and operate systems that scale. The role reports into Dev Ops and works closely with Operations, Security, and HR.



Key Responsibilities

Take ownership of the corporate IT stack and drive improvements across identity, devices, endpoints, and employee-facing systems.

Design and implement scalable, enforceable processes for:

  • Joiners, movers, and leavers

  • Device provisioning and decommissioning

  • Access control and authentication workflows

  • Own and administer Google Workspace, including configuration, security controls, and user lifecycle management

  • Implement and maintain identity and access management using modern auth standards (e.g. SAML, OIDC, SSO)

  • Own endpoint and MDM tooling (e.g. JumpCloud, Google MDM, Apple Business Manager), including testing, configuration, reporting, and enforcement

  • Improve endpoint security posture across laptops and mobile devices (encryption, AV/EDR, patching)

  • Design and operate a sustainable hardware lifecycle for laptops and other corporate devices

  • Mature employee security initiatives, including phishing simulations, training campaigns, and fraud awareness

  • Translate compliance and audit requirements into practical technical controls

  • Reduce reliance on manual processes and undocumented “tribal knowledge”

  • Provide ongoing operational support where required (e.g. access issues, device lockouts), while systematically reducing reactive work over time

What We’re Looking For

  • A mid-level to senior Corporate IT / Enterprise IT engineer with hands-on implementation experience.

  • Strong understanding of identity, authentication, and access workflows (SSO, SAML, OIDC, SCIM).

  • Experience administering Google Workspace in a production environment.

  • Solid knowledge of endpoint management, MDM, and device security.

  • An engineering mindset: you think in systems, trade-offs, and failure modes—not just tools.

  • Experience rolling out company-wide technology or workflow changes.

  • Comfortable operating independently and owning a function end-to-end.

  • Pragmatic and delivery-focused: you know how to improve maturity without over-engineering.

Our Expectations

This role is expected to increase maturity over time, not just keep the lights on. Success will be measured by clearer ownership, fewer manual interventions, better security posture, and reduced distraction for engineering leadership.

You will be trusted to identify gaps, prioritise work, and sequence improvements sensibly based on risk and impact.

Within the first 30 days:

  • Develop a clear understanding of the current corporate IT landscape, tools, and pain points.

  • Build relationships with Engineering, Operations, and HR stakeholders.

  • Review existing configurations for Google Workspace, identity, endpoints, and MDM.

  • Identify the highest-risk gaps and areas of immediate fragility.

  • Produce a practical short-term improvement plan with clear priorities.

Within the first 60 days:

  • Begin implementing improvements to identity and access workflows (joiners, movers, leavers)

  • Introduce more consistent device provisioning and baseline security controls

  • Improve visibility and reporting across endpoints and access

  • Reduce reliance on ad-hoc or manual processes in at least one major area

  • Start maturing employee security training and phishing workflows

Within the first 90 days:

  • Establish clear ownership and repeatable processes across core corporate IT domains.

  • Deliver measurable improvements in security posture and audit readiness.

  • Significantly reduce time spent on reactive, low-value corporate IT tasks.

  • Leave behind systems that are documented, operable, and understandable by others.

Why Join Diesta?

  • Join a mission-driven team addressing real pain points in insurance finance.

  • Be part of a lean, high-performing team with direct impact on product and client outcomes.

  • Work with top insurers and brokers in an industry ripe for disruption.

  • A culture of high trust, low ego: we value competence, commitment, and transparency.

Benefits

  • Hybrid work model with a central London office (Bank / Liverpool Street)

  • Private healthcare insurance

  • Regular team lunches and international offsites

  • State-of-the-art technical equipment

  • 22 days annual leave (excluding bank holidays)

Interview Process

  1. Intro Call with our CEO / Co-founder to explore your background and aspirations.

  2. Technical Interview with the Dev Ops Lead to assess technical fit.

  3. Onsite Workshop at our London office, collaborate with the team and experience our culture first-hand.

Interested in solving real-world data problems and shaping the future of insurance finance?

Apply now to join Diesta - recruitment@diesta.co.uk



Diesta Limited (Company Number: 13969906, Firm Reference Number: 1012426) is an agent of Plaid Financial Ltd. (Company Number: 11103959, Firm Reference Number: 804718), an authorised payment institution regulated by the Financial Conduct Authority under the Payment Services Regulations 2017. Plaid provides you with regulated account information services through Diesta as its agent.

© 2025 DIESTA LTD.

MADE WITH

IN LONDON