IT Manager

Posted 3 Days Ago
Be an Early Applicant
Toronto, ON, CAN
Hybrid
85K-110K Annually
Senior level
Healthtech • Software • Pharmaceutical
The Role
Own MedMe’s in-house IT function across identity and access, endpoint management, security operations, data protection, infrastructure, workplace technology, service delivery, compliance, and vendor management. The role administers tools, manages device and access lifecycles, handles incidents and vulnerabilities, supports SOC 2 and HITRUST audits, oversees the IT budget, and transitions responsibilities from the MSP to internal operations.
Summary Generated by Built In
The Opportunity

MedMe is building out a dedicated, in-house IT and internal security function to support our growing team. You'll step into a role with established tooling and processes already in place across device management, endpoint detection, email security, and access automation, and will take ownership of operating and evolving this function going forward.

This is our first dedicated IT hire. You'll inherit a stack to deploy, a fleet across two countries, and a compliance path running from SOC 2 toward HITRUST. The role combines architecture and execution: you'll design how IT works here and also be the one running it day to day.

About MedMe Health

At MedMe, we are passionate about empowering pharmacists to provide services beyond just prescribing. Our mission is to build an all-in-one cloud-based platform that enables pharmacists to schedule, document, and manage clinical services at scale. With over 4,500 pharmacies using our software, we've facilitated more than 25 million patient services, transforming pharmacies into community health hubs across North America.

What You'll Do

Identity and access

  • Own access provisioning and deprovisioning across the SaaS environment, automating wherever it's safe to do so

  • Administer Google Workspace, SSO, and the password manager

  • Run access reviews to audit-ready standard, and govern contractor and offshore access against our customer commitments on PHI

Devices and endpoints

  • Own the MDM platform: migration off our current provider, configuration baselines, endpoint policy

  • Manage the device fleet lifecycle end to end, procurement support, cross-border logistics, secure disposal

  • Build endpoint controls to HITRUST-ready standard

Security operations

  • Operate email security, endpoint detection, and account protection tooling: detection tuning, alert triage

  • Own incident response, escalation, remediation, communication, post-incident review

  • Manage vulnerability and patch programs, external penetration testing, and security awareness training

Data protection and resilience

  • Close our current DLP gap, recommending tooling or compensating controls

  • Own backup coverage, restore testing, and documented recovery procedures

  • Maintain retention policies and support legal hold and discovery requests

Infrastructure and workplace technology

  • Own network, VPN, DNS, and certificate management

  • Administer the collaboration platforms the company runs on, permissions, external sharing controls

  • Govern AI tool adoption: sanctioned tools, data handling review, detection of unapproved use

Service delivery

  • Own IT onboarding and offboarding to a consistent, documented standard

  • Act as the point of contact for support, reducing recurring volume through automation and self-serve documentation

  • Report monthly on service performance, endpoint compliance, spend, and open risk

Compliance and vendor management

  • Gate new tooling through security and procurement review

  • Produce audit evidence for SOC 2 and HITRUST, and support customer security questionnaires alongside Security and Legal

  • Own the IT budget, including vendor negotiations and renewals

About You
  • 5+ years in IT operations or IT security, with hands-on ownership of endpoint management and identity for a distributed team

  • Direct experience deploying and operating email security and endpoint detection tooling

  • Strong Google Workspace administration, including security and conditional access controls

  • Practical networking experience: firewall, wireless, VPN, DNS, certificates

  • Working knowledge of SOC 2, HIPAA, HITRUST, or a comparable framework, including audit evidence requirements

  • Scripting or automation ability sufficient to build and maintain internal workflows

  • Comfort operating as the sole owner of a function

  • Nice to Have: Healthcare or another regulated environment handling PHI or PII; HITRUST readiness or certification experience; Vanta or comparable compliance automation; Multi-entity or cross-border operations

Success in This Role Looks Like
  • 30 days: Full visibility into current infrastructure, MSP scope, and vendor dependencies; MSP transition plan drafted and open-decision evaluation underway (DLP, backup/recovery, vulnerability management, MDR)

  • 60 days: MSP handover underway; device management and email security piloted on the fleet; recommendations on the open decisions taking shape with cost and rationale

  • 90 days: MSP relationship retired; device management and email security deployed across the fleet with provisioning automation live; recommendations delivered on all four open decisions

  • Long-term: A secure, well-documented, fully in-house IT function that scales with the company

How We Hire

MedMe is committed to a fair and equitable hiring process for all candidates. To ensure that each candidate's journey is consistent and the selection process is unbiased, the team at MedMe will not be responding to any personal messages regarding this role or other opportunities. This role will follow the below Interview Process:

  1. Initial screening conversation with our People and Culture team

  2. Intro interview with the hiring manager

  3. Technical interview with the team

  4. Additional cross-functional interview as required (depending on the role)

  5. References and offer

How We Use AI

At MedMe, we use AI to help us organize and manage applications, so our team can spend their time where it matters most. Every CV is personally reviewed by a human being; AI helps us stay organized, not make decisions. We believe AI should make great people more effective, not replace the thinking and judgment that great hiring requires.

Perks at MedMe
  • Comprehensive Health Benefits: Full coverage for dental, vision, physical, and mental health, plus a health spending account to cover additional wellness needs

  • Group RRSP: Secure your future with our Group Registered Retirement Savings Plan (RRSP)

  • Professional Development: We support your growth with a yearly budget dedicated to learning opportunities

  • Work-from-Home Stipend: A dedicated stipend to help set up and maintain your ideal home office

  • Office Closure for Holidays: Enjoy 1 week of company-wide office closure during the holidays

  • Company Retreats: Participate in exciting on-site team retreats for collaboration and bonding

Location

This is a hybrid position, based at our office located at the intersection of Adelaide and Spadina in Toronto, with in-person work required 2-3 days per week, aligned to operational needs. Occasional travel is expected for customer meetings, partner discussions, and industry events. Remote candidates may be considered on an exceptional basis based on experience.

Equal Opportunity & Accessibility

MedMe is a proud equal opportunity workplace that is committed to equal employment opportunity regardless of race, colour, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We're looking for motivated and compassionate people who can execute from the ground up and support the work that MedMe believes in.

MedMe is committed to developing an inclusive, barrier-free recruitment process and work environment. Should you require any accommodation, please inform us and we will work with you to meet your accessibility needs. For any accessibility-related assistance, requests for information in accessible alternative formats or to report any accessibility problems, please share in your application.

Learn More About MedMe

If you'd like more context on MedMe, our growth, and the team you'd be joining, here are a few highlights:

  • Globe and Mail – Canada's Top Growing Companies (2025): MedMe was recognized on The Globe and Mail's list of Canada's Top Growing Companies, based on audited three-year revenue growth. 🔗 Link

  • Forbes 30 Under 30: Our co-founders were named to Forbes 30 Under 30 for their work building MedMe. 🔗 Read more

  • C100 Growth Cohort (2025): MedMe is part of the 2025 C100 Growth Cohort, a selective community of Canada's top scaling companies. 🔗 Link

Compensation

The salary range for this role is CAD $85,000.00 - $110,000.00 annually. Compensation is determined based on experience, skills, and alignment to the role's scope. We're happy to discuss the full details of our compensation package with candidates who progress through our interview process.

Skills Required

  • 5+ years in IT operations or IT security
  • Hands-on ownership of endpoint management and identity for a distributed team
  • Direct experience deploying and operating email security and endpoint detection tooling
  • Strong Google Workspace administration, including security and conditional access controls
  • Practical networking experience with firewalls, wireless, VPN, DNS, and certificates
  • Working knowledge of SOC 2, HIPAA, HITRUST, or a comparable framework, including audit evidence requirements
  • Scripting or automation ability sufficient to build and maintain internal workflows
  • Ability to operate as the sole owner of an IT function
  • Healthcare or regulated-environment experience handling PHI or PII
  • HITRUST readiness or certification experience
  • Vanta or comparable compliance automation experience
  • Multi-entity or cross-border operations experience
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Toronto, Ontario
36 Employees
Year Founded: 2019

What We Do

MedMe is building the operating system for the pharmacies of the future, powering their transformation from dispensaries to community healthcare hubs. Our mission is to build an all-in-one cloud-based platform that empowers pharmacists to schedule, document, and manage clinical services at scale. Our clients include the 2 largest pharmacy chains in Canada, servicing 3000+ pharmacies, and powering over ~14M patient services, including playing a critical role across the country throughout the pandemic. We have raised over $3.7M USD to date including from M12 (Microsoft’s Venture Fund), MaRS IAF, and Y-Combinator. We're building on our rapid growth and role throughout the pandemic to take our modular platform to the next level; providing community pharmacies of all sizes and geographies the transformative technology to service high-quality care experiences and accessible healthcare offerings to their patients. We're growing across Engineering, Customer Success, Product and more: jobs.lever.co/bloom?team=MedMe

Similar Jobs

Hybrid
Scarborough, ON, CAN
535 Employees
80K-100K Annually
In-Office
North Bay, ON, CAN
900 Employees
128K-150K Annually
In-Office or Remote
2 Locations
500 Employees

NTT DATA Logo NTT DATA

Information Technology Project Manager

Information Technology • Business Intelligence • Consulting
In-Office
2 Locations
55092 Employees

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account