Senior Corporate IT Engineer
About Us
dConstruct is an award-winning AI and Robotics deep tech company founded in 2021. Our vision is to make the world a better place through robot automation. Simply put, our mission is to make smarter robots for a better world. We provide products and services in reality capture and robot automation. Our robots and supporting solutions are used by customers in academia, transportation, construction, facilities management, logistics, security and defense.
dConstruct is headquartered in Singapore with presence in Los Angeles, Toronto and Munich.We are expanding to Tokyo, Shenzhen and Seoul.
About the role
We're a rapidly growing company, and we need a Senior Corporate IT Engineer to build the systems, standards, and automation that will let our IT function scale with us. You'll own identity and endpoint infrastructure end-to-end, and share responsibility for network infrastructure alongside other technical teams. Youwill introduce the process discipline (change management, documentation, DRplanning) that a growing company needs but a small one often has not yet established. You'll be the senior technical escalation point for internal IT, and a close partner to security, engineering, and other tech teams.
Responsibilities
Identity & Collaboration
· Administer Microsoft 365 (Exchange Online, SharePoint, Teams, OneDrive): licensing, security policies, compliance settings
· Manage Entra ID (Azure AD): conditional access, SSO/SAML app integrations, identity governance
· Administer on-prem Active Directory and domain controllers: GPOs, replication, Entra Connect hybrid sync
· Own the joiner-mover-leaver process and drive automation of onboarding/offboarding as headcount grows
Endpoints & Network
· Manage Windows, MacOS, and Linux endpoint fleets: imaging, patching, lifecycle management
· OwnMDM administration (Intune, Jamf, or similar) for enrolment, configuration profiles, and compliance policies
· Collaborate on the design, maintenance, and troubleshooting of network infrastructure(LAN/WAN, VLANs, firewalls, switches, VPN, Wi-Fi) alongside other technical teams, including administration and support of VPN access for remote and hybrid staff
Security & Resilience
· Implement and maintain endpoint security tooling (EDR/AV, disk encryption, DLP)
· Deploy and maintain centralised logging and monitoring for corporate IT assets andendpoints using an open-source stack (e.g., Wazuh), with alerting for anomalies and security events.
· Own backup strategy and disaster recovery planning for corporate systems, including regular DR testing
· Support compliance and audit readiness (e.g., SOC 2, ISO 27001): control documentation, evidence gathering,remediation tracking (note: a dedicated compliance/GRC role is planned as we scale further, so this is a supporting rather than sole-ownership responsibility long-term)
Process & Collaboration
· Apply change management principles to infrastructure changes: planning, risk assessment, rollback plans, communication
· Write and maintain automation scripts (PowerShell, Bash, Python, or similar) to reduce manual toil and improve consistency
· Document systems, processes, and runbooks as the team and company scale
· Partner with security, engineering, and other tech teams on shared tooling, integrations, and incident response
· Mentor junior IT staff as the team grows
RequiredSkills
· Minimum 5 years of experiencein corporate IT administration
· Microsoft365 administration
· EntraID administration
· ActiveDirectory and domain controller administration
· Networkadministration
· VPNadministration and support
· Administration of Windows, Mac, and Linux endpoints
· MDM setup and administration
· Endpoint security administration
· Scripting/automation experience (PowerShell, Bash, or Python)
· Familiarity with change management principles
· Understanding of backup and disaster recovery practices
· Familiarity with compliance frameworks (SOC 2, ISO 27001, or similar)
· Experience with open-source logging/monitoring/SIEM tools (e.g., Wazuh, ELK,Grafana/Prometheus) including deploying and self-hosting OSS infrastructure
Nice toHave
· Experience scaling IT infrastructure through a headcount growth phase
· Direct experience deploying Wazuh or similar OSS SIEM/XDR tools
· SaaS/vendor management and app inventory ownership
· ITSM/ticketing tool experience (Jira)
· Experience with CheckPoint firewalls
· Cloud infrastructure basics (Azure/AWS resource management)
· Experience supporting SOC 2 or ISO 27001 audits directly
Work Expectations
· This is a hands-on, primarily business-hours role. However, as a small but growing IT team, occasional after-hours or weekend work may be required for maintenance windows, critical outages, or urgent security issues. We work to minimize this through good planning and automation, but flag this upfront as a realistic expectation at this stage of company growth.
How to Apply: Please submit your resume detailing your qualifications and interest in the position to careers@dconstruct.ai . Be sure to highlight any projects you may have worked on that showcase your skills.