Senior Endpoint Engineer
Job Description
REQUIREMENTS
- BA in Computer Science, Economics, Data Analytics, or equivalent experience in the required field.
- 5+ years in endpoint engineering or systems engineering with hands-on ownership of multi-platform fleets at scale.
- Demonstrated strong understanding of two out of the following:
- ChromeOS fleet management via Google Workspace Admin Console (device policy, org unit design, forced installs, Context-Aware Access).
- Deep macOS expertise: Jamf administration, macOS internals, configuration profiles, extension attributes, scripting (Bash, Python, or Swift).
- Android MDM experience: enterprise enrollment, policy enforcement, and management via Android Enterprise (EMM/MDM platforms)
- Linux endpoint management experience: package management, configuration tooling (Ansible, Chef, Puppet, or similar), and hardening
- Windows/Intune experience is not required, but can be considered applicable if enough strength in our existing device fleet is demonstrated.
- Strong understanding of endpoint security principles: EDR integration, compliance baselines (CIS, SOC2), certificate management, and disk encryption enforcement.
- Familiarity with identity and access tooling as it touches endpoints: SSO, certificate-based auth, conditional access policies (Okta or equivalent).
- Scripting and automation capability sufficient to build reliable deployment pipelines and reduce manual operational work.
- Fleet reporting and observability, meaning you can tell leadership the compliance posture of the fleet at any time.
RESPONSIBILITES
- Own and operate our client’s MDM platforms across ChromeOS (GWS Admin Console), macOS (Jamf), Android, (and Linux environments): configuration, policy design, maintenance, and roadmap.
- Manage ChromeOS device policy in Google Workspace: enrollment configuration, org unit structure, security policies, extension management, and OS version enforcement across the majority of the fleet.
- Design and enforce endpoint security policies in collaboration with Information Security, including EDR integration (CrowdStrike Falcon), compliance baselines, and patch management.
- Build and maintain automated deployment pipelines for OS updates, software distribution, and configuration changes: minimizing manual intervention and maximizing consistency.
- Define and manage the device lifecycle: provisioning standards, imaging, refresh cycles, decommission processes, and fleet reporting.
- Establish cross-platform compatibility standards and tooling for a heterogeneous fleet (macOS, Linux, Android, with awareness of ChromeOS and Windows edge cases).
- Build the tooling and runbooks that Local IT teams use to execute provisioning and onboarding on the ground. You set the standard, they execute it.
- Own fleet observability: dashboards, compliance reporting, patch currency metrics, and audit-ready documentation.
- Evaluate and own vendor relationships for endpoint tooling, including MDM, patch management, and related platforms.
- Mentor junior profiles working in endpoint and device management.
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#CrossChannelJobs #JobSearch
#CareerOpportunities #HiringNow
#Employment #JobOpenings
#JobSeekers