IT Manager (Hands-on) — Remote (UK) (Medical Cannabis Clinic)

IT Manager (Hands-on) — Remote (UK) (Medical Cannabis Clinic)

Posted 1 week ago by Releaf

£65,000 Per year
Undetermined
Remote
London Area, United Kingdom

Summary: The IT Manager (Hands-on) role is a full-time, permanent position focused on managing IT operations for a medical cannabis clinic in the UK. The successful candidate will oversee daily IT functions, security measures, and device management while mentoring a Support Engineer. This remote role requires occasional site visits for audits and vendor work, emphasizing a hands-on approach to IT leadership. The position aims to enhance support efficiency, security, and onboarding processes within the organization.

Key Responsibilities:

  • Own the helpdesk and service catalogue, tracking KPIs and reporting monthly.
  • Lead Entra ID (Azure AD), Intune, and Autopilot for Windows; manage macOS with current or recommended tools.
  • Design secure, zero-touch builds for Windows & macOS and manage asset inventory.
  • Assess and recommend tooling strategy for macOS MDM, planning migrations with minimal disruption.
  • Implement security baselines and operate endpoint protection, coordinating with MDR if used.
  • Manage M365 licensing, endpoint tooling, and vendor contracts; forecast hardware refresh needs.
  • Collaborate with Clinical Ops, Compliance, and Engineering on lightweight projects.

Key Skills:

  • Hands-on admin experience with Intune, Entra ID (Azure AD), Autopilot, and Microsoft 365.
  • Experience managing both Windows and macOS fleets.
  • Knowledge of security fundamentals including Conditional Access and endpoint hardening.
  • Strong service mindset and communication skills with non-technical users.
  • Ability to plan and deliver small projects and document processes clearly.
  • Experience with Addigy, Jamf, and Apple Business Manager is a plus.
  • Exposure to Cyber Essentials and scripting/automation skills are desirable.

Salary (Rate): £65,000 yearly

City: London Area

Country: United Kingdom

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

IT Manager (Hands-on) — Remote (UK) Location: Remote (UK). Occasional site visits for rollouts, audits, and vendor work. Reports to: CTO Type: Full-time, Permanent Salary: £50,000–£65,000 DOE + benefits Team size: ~100 users across Windows & macOS Why this role exists We’re bringing IT in-house to deliver faster support, tighter security, and smooth onboarding. You’ll be our first hands-on IT lead, running daily operations, security baselines, and device lifecycle—while mentoring a Support Engineer.

What you’ll do Service & operations Own the helpdesk and service catalogue (incidents, requests, joiners/movers/leavers). Track simple KPIs (response/resolution times, patching, device compliance) and report monthly. Identity, devices & platforms Lead Entra ID (Azure AD), Intune, Autopilot for Windows; manage macOS with our current tool (Addigy) or a recommended alternative. Design secure, zero-touch builds for Windows & macOS (enrolment, profiles, packaging). Manage Apple Business Manager and Windows Autopilot; maintain asset inventory/spares. Tooling strategy (macOS MDM) Assess our current Addigy deployment and recommend the best fit (e.g., stay on Addigy, move to Intune-only, or adopt Jamf), considering security, usability, and cost. Plan and run any migration with minimal disruption, including coexistence where needed. Security & compliance Implement practical baselines: MFA/Conditional Access, BitLocker/FileVault, least-privilege admin, patching SLAs. Operate endpoint protection (Microsoft Defender for Business or SentinelOne, depending on chosen path); triage alerts and coordinate with MDR if used. Keep audit-ready docs for UK GDPR and Cyber Essentials/Cyber Essentials Plus. Vendors, licensing & budget Manage M365 licensing, endpoint tooling, and small vendor contracts. Forecast hardware refresh and accessories; keep a small “build bench” for rapid swaps. People & collaboration Partner with Clinical Ops, Compliance and Engineering on lightweight projects.

What you’ll bring Must-haves Hands-on admin of Intune, Entra ID (Azure AD), Autopilot, Microsoft 365. Experience managing both Windows and macOS fleets. Practical security fundamentals: Conditional Access, endpoint hardening, patching, and EDR operation (Defender for Business or SentinelOne). Proven service mindset and clear communication with non-technical users. Ability to plan and deliver small projects, document clearly, and own outcomes. Nice-to-haves Addigy and/or Jamf experience; Apple Business Manager know-how. Exposure to Cyber Essentials (Plus), basic DLP/mail security, and M365 SaaS backup. Scripting/automation (PowerShell, shell, WinGet/Intune packaging). Experience in regulated/healthcare settings. Working pattern & travel Remote-first with occasional site visits for rollouts, hardware swaps, audits, and vendor work (travel expensed). Training/certifications supported (e.g., MD-102, MS-102, SC-200 or SentinelOne University). UK right-to-work required; DBS check desirable.