
IT & Security Administrator
About the role
About Tradevest
Tradevest is a fintech building a regulated platform for trading and custody of securities, crypto and tokenized assets for institutional clients. Our group is supervised by BaFin in Germany as a licensed securities institution, and we also hold BaFin licences for crypto custody and crypto securities registry management, making us only the second company in Germany with the latter.
We work from Munich and Warsaw. Tradevest Technologies Warsaw is our technology hub, where the products are built, and our WAWEX brand runs a crypto exchange for brokers, banks and other financial institutions.
Because we operate under BaFin supervision, DORA, ISO 27001 and GDPR, security and compliance are part of everyday work here, not an afterthought. That's where this role comes in.
About the role
As our IT & Security Engineer, you'll own internal IT and help keep the organisation secure and audit-ready. You'll look after every employee laptop and the MDM behind it, run the IT service desk, manage who gets access to what, and administer our Jira setup.
It's a hands-on role in a small company: you'll fix things for colleagues one day and tighten a security control or prepare evidence for an ISO 27001 or DORA audit the next. You'll work closely with Engineering, DevOps, Compliance and People.
What you'll do
Devices and endpoint security
- Manage the full lifecycle of employee laptops: procurement, setup, inventory, repairs and secure decommissioning.
- Run our MDM platform and enforce baseline policies such as disk encryption, OS patching, screen lock and endpoint protection.
- Keep the device fleet compliant and be able to show it with reports and evidence.
Service desk and employee support
- Handle IT requests and incidents from employees through our service desk, with clear priorities and response times.
- Write and maintain how-to guides so colleagues can solve common issues themselves.
- Run IT onboarding and offboarding so new joiners are productive on day one and leavers lose access on time.
Identity and access management
- Grant, change and revoke access to internal systems and SaaS tools based on role and least privilege.
- Run periodic access reviews and keep an audit trail of approvals.
- Administer SSO, MFA and identity provider settings.
Jira and internal tooling
- Own Jira and Jira Service Management configuration: projects, workflows, permission schemes, fields and automation.
- Support teams with tooling changes while keeping the setup clean and consistent.
Security and compliance
- Help maintain our ISMS under ISO 27001 and support DORA requirements on ICT risk, incident handling and third-party management.
- Make sure IT processes respect GDPR, including handling of personal data on devices and in tools.
- Collect evidence for internal and external audits and help close findings.
- Spot gaps in our internal security posture and propose practical improvements.
What you bring
- 3+ years in IT administration, IT support or a similar role, ideally in a fast-growing or regulated company.
- Hands-on experience with at least one MDM platform (for example Jamf, Kandji, Microsoft Intune or Google Endpoint Management) and managing macOS and/or Windows fleets.
- Solid experience with identity and access management, including SSO, MFA and role-based access (for example Okta, Microsoft Entra ID or Google Workspace).
- Experience administering Jira and Jira Service Management.
- A security-first mindset and a working understanding of ISO 27001 controls and GDPR.
- A structured, documented way of working: you leave a clear trail of what was done and why.
- Clear, friendly communication with non-technical colleagues.
- English at C1 level and Polish at C1 level.
- Ability to work from our Warsaw office twice a week.
Nice to have
- Experience in financial services, ideally under BaFin, KNF or similar supervision.
- Familiarity with DORA requirements for ICT risk management and incident reporting.
- Scripting or automation skills (Bash, Python or PowerShell) to cut out repetitive work.
- Experience with AWS or Google Workspace administration.
- Exposure to security tooling such as EDR, SIEM or vulnerability scanning.
- Certifications like ISO 27001 Lead Implementer/Auditor, CompTIA Security+, or vendor MDM certifications.
What we offer
- Real ownership: you'll shape how IT and internal security work across the company.
- Meaningful work in a regulated fintech, where your controls directly support our licences and audits.
- Hybrid work: in the office twice a week (Tuesday and Thursday), remote the rest of the time.
- Our office at ATLAS Tower, Aleje Jerozolimskie 123a, 02-017 Warszawa.
- B2B contract with 20 days of paid time off.
- Multisport card.
- Flexible hours and modern tooling.
- Occasional travel to our teams in Germany (Munich / Berlin).
