CrawlJobs Logo

Endpoint Lead Engineer

United States, Vienna · Job Posted June 09, 2026
Apply Position
Job Link Share

Job Description

Serves as the enterprise-level designer and technical authority for all UEM platforms across the environment. This role architects end-to-end management strategies for Windows, macOS, iOS, and Android devices, ensuring secure, scalable, and automated endpoint management.

Job Responsibility

  • Serve as lead architect for Workspace One, Microsoft Intune/Jamf enterprise deployments
  • Design configuration baselines, compliance frameworks, conditional access integration, and advanced automation pipelines
  • Define and maintain zero-touch deployment strategy across device types
  • Oversee high-level scripting architecture using PowerShell, Python, and platform-specific tooling
  • Lead major modernization efforts, including transitions to Declarative Device Management, Platform SSO, and ABM-driven provisioning
  • Provide guidance to engineering teams and mentor senior and mid-level administrators
  • Review and approve UEM security controls, reporting structures, and integration with enterprise systems

Requirements

  • BS in IT or related field (preferred)
  • 5–7 years direct UEM engineering experience
  • 3+ years architectural-level design or enterprise engineering leadership experience
  • Extensive experience implementing Apple Business Manager and Declarative Device Management
  • Expert-level knowledge of WorkSpace One, Microsoft Intune, and/or Jamf (deployment, configuration, lifecycle, compliance)
  • Deep understanding of UEM security models, certificate-based authentication, conditional access, and mobile threat protection
  • Advanced scripting capability (PowerShell required
  • Python strongly preferred)
  • Ability to design scalable, automated architectures supporting thousands of endpoints
  • Strong interpersonal and leadership skills
  • Must obtain an agency public trust suitability determination prior to start date
  • Ability to work closely with executive leadership on sensitive, mission-critical decisions
  • Strong documentation and standards development capability
  • Must have excellent verbal and written communication and stakeholder-facing skills
  • Ability to communicate effectively and efficiently with all levels of leadership
  • Must be able to work independently and within a multi-disciplinary team to meet demanding deadlines in a fast-paced technology environment
  • Must maintain a high level of customer service for all support interactions
  • Experience supporting a complex Federal agency enterprise is a plus
  • Relevant expert-level Microsoft certifications are preferred

Nice to have

  • Experience supporting a complex Federal agency enterprise is a plus
  • Relevant expert-level Microsoft certifications are preferred

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Endpoint Lead Engineer

8 matching positions

Lead IT Security Endpoint Engineer

We are looking for a Lead IT Security Endpoint Engineer to help strengthen and s...
Location
Location
United States , Coppell
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-7 years of cybersecurity experience, including significant focus on endpoint security engineering or administration
  • Hands-on experience working with the CrowdStrike platform and related endpoint protection capabilities
  • Knowledge of security controls for SaaS environments, Azure AD, and Microsoft Azure infrastructure
  • Strong understanding of Windows, Linux, and macOS, along with enterprise systems such as servers, networks, applications, databases, and cloud platforms
  • Experience with endpoint firewall technologies and foundational network security concepts
  • Demonstrated analytical thinking and problem-solving ability with strong attention to detail
  • Effective verbal and written communication skills, with the ability to work productively with both technical and non-technical teams
  • Familiarity with broader information security concepts such as data privacy, database security, and cyber governance
Job Responsibility
Job Responsibility
  • Design, implement, and sustain endpoint security technologies that protect enterprise devices and support overall cybersecurity objectives
  • Administer and optimize tools such as CrowdStrike, secure web gateway solutions, and related scanning platforms to improve endpoint visibility and defense
  • Investigate product issues, perform troubleshooting, and escalate complex technical concerns when advanced support is required
  • Partner with security teams, infrastructure groups, and business stakeholders to deliver endpoint protection enhancements that align with company standards
  • Contribute to the execution of the endpoint security strategy by identifying practical improvements in tooling, coverage, and operational processes
  • Assess emerging security technologies and help shape recommendations for architecture, deployment approach, and long-term adoption
  • Maintain strong malware detection coverage across supported devices by validating agent health, policy effectiveness, and response readiness
  • Identify opportunities to streamline repetitive security tasks and assist with automation efforts that improve endpoint operations and efficiency
  • Create and update technical documentation, operating procedures, and shared knowledge resources to support team effectiveness
  • Support a hybrid work schedule with 3 days onsite and 2 days remote, including onsite presence on Tuesdays, Wednesdays, and one additional team-designated day
What we offer
What we offer
  • medical
  • vision
  • dental
  • life and disability insurance
  • 401(k) plan
Read More
Arrow Right

Endpoint Engineer

We are looking for an Endpoint Engineer to support and enhance endpoint manageme...
Location
Location
United States , Columbia
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree, relevant technical certifications, or a comparable combination of education and practical experience
  • At least five years of experience in endpoint engineering, systems administration, or a closely related technical role
  • Hands-on expertise with Microsoft Entra ID, Microsoft Azure, Microsoft 365 Enterprise, Intune, and Microsoft Configuration Manager (MECM)
  • Strong scripting ability in PowerShell for automation, administration, and process improvement
  • Experience with desktop imaging, endpoint deployment, and system patch management in a business environment
  • Solid understanding of endpoint management principles, operational best practices, and how device services support broader business functions
  • Proven ability to communicate technical concepts clearly, collaborate across teams, and apply sound judgment to complex issues
Job Responsibility
Job Responsibility
  • Manage and optimize endpoint administration across the environment using Microsoft Intune, MECM, and Microsoft 365 Enterprise tools
  • Maintain device identity, access, and configuration standards by supporting Microsoft Entra ID and Azure-based endpoint services
  • Develop and refine PowerShell automation to improve deployment processes, streamline support tasks, and increase operational efficiency
  • Oversee desktop imaging activities and device provisioning to ensure consistent build standards and dependable end-user experiences
  • Plan and execute patching activities for workstations and related systems to maintain security, stability, and compliance
  • Troubleshoot complex endpoint issues, assess root causes, and implement effective solutions within established technical and operational guidelines
  • Lead small to mid-sized endpoint initiatives, coordinating with stakeholders to deliver project objectives on time and with minimal disruption
  • Provide technical guidance to less experienced team members and serve as a knowledgeable resource for endpoint management best practice
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • enrollment in company 401(k) plan
Read More
Arrow Right

Endpoint Engineer

We are seeking a highly experienced Endpoint Engineer to lead enterprise endpoin...
Location
Location
United States , Washington, DC
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in IT, Computer Science, Engineering, or related field
  • 7-10 years of experience in endpoint engineering / management
  • Deep expertise with Microsoft Intune and Windows endpoint administration
  • Experience managing multi-platform environments (Windows + mobile/Apple)
  • Strong experience in endpoint security, compliance, and lifecycle management
  • Hands-on experience with Autopilot, Microsoft Defender for Endpoint, and PowerShell
  • Ability to obtain and maintain Public Trust clearance
Job Responsibility
Job Responsibility
  • Lead full lifecycle management of enterprise endpoints (Windows, virtual, and mobile devices)
  • Oversee provisioning, configuration, deployment, and decommissioning activities
  • Manage enterprise application packaging, deployment, and maintenance
  • Validate endpoint configurations in pre-production environments
  • Define and enforce endpoint baselines, compliance policies, and security controls
  • Lead patching and vulnerability remediation efforts
  • Maintain documentation, SOPs, and architecture artifacts for audit readiness
  • Ensure adherence to zero-trust and regulatory compliance standards
  • Serve as SME for Microsoft Intune (policies, compliance, and application delivery)
  • Lead Autopilot onboarding workflows and endpoint provisioning strategies
What we offer
What we offer
  • Medical, vision, dental, and life and disability insurance
  • Enrollment in company 401(k) plan
Read More
Arrow Right

Staff Engineer - Endpoint Security

Location
Location
France , Paris
Salary
Salary:
Not provided
gitguardian.com Logo
GitGuardian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven track record of leading technical initiatives involving multiple teams within organizations of at least 100 people
  • Comfortable working cross-functionally and collaborating effectively with Engineering, Product, and Infrastructure teams
  • Hands-on experience mentoring engineers and helping teams grow their technical capabilities
  • Thrives in fast-paced startup environments
  • Expert in Python, with strong experience working with Django and large monolithic codebases
  • Significant experience with Rust
  • Experience working on embedded software / on-device applications (software installed and running on a machine, not web applications)
  • Strong knowledge of cloud platforms (AWS, Azure, or GCP) and containerization technologies such as Docker and Kubernetes
  • Worked in security-focused environments with strong compliance requirements
  • Familiar with standards such as SOC 1, SOC 2, and ISO certifications
Job Responsibility
Job Responsibility
  • Drive architectural decisions— You define how the agent and platform evolve to scale
  • Guide and grow engineers— As the team's technical reference, you mentor, challenge, take part in code reviews, and raise the collective bar over the long term
  • Contribute directly to the code— This role isn't just oversight: you're in the code on the most complex and foundational topics
  • Work closely with Product— You are a key counterpart for PMs to frame product ambitions, navigate technical trade-offs, and co-build the roadmap
What we offer
What we offer
  • Package that includes BSPCE
  • Lunch voucher (Swile, 9€ at 50%)
  • Sponsored Wellpass (gymlib)
  • Non-charged health insurance for children (Sidecare / Generali)
  • Up to €300 to improve your home office set-up
  • Yearly holiday allowance
  • Referral bonus of 4000€ for any new Guardian we might hire thanks to you
  • Team building: monthly budget dedicated to each employee that you can spend as you wish, with colleagues
  • Remote policy: hybrid (3 days/week at the office in Paris)
  • Opportunities for career development in the long term
  • Fulltime
Read More
Arrow Right

Senior Endpoint Engineer - Enterprise & Executive Services

We are seeking a highly experienced Senior Endpoint Engineer with over 15 years ...
Location
Location
United States , Pittsburgh
Salary
Salary:
Not provided
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of strong expertise in: Microsoft Intune & Endpoint Manager
  • Jamf Pro / Kandji (macOS management)
  • SCCM / MECM
  • Entra ID (Azure AD), Active Directory, Group Policy
  • 5 to 8 years of experience with Mobile Threat Defense tools (e.g., Zimperium)
  • 3 to 5 years of advanced scripting and automation (PowerShell preferred)
  • Deep understanding of endpoint security, compliance, and enterprise IT architecture
  • Experience supporting executive-level stakeholders
  • Strong troubleshooting and problem-solving skills
  • Bachelor’s degree in Information Technology, Computer Science, or related field (or equivalent experience)
Job Responsibility
Job Responsibility
  • Architect, implement, and manage enterprise endpoint solutions using Microsoft Intune, Jamf Pro, and Kandji
  • Lead endpoint lifecycle management including provisioning, deployment, patching, and decommissioning
  • Design and deploy Mobile Device Management (MDM) and Mobile Threat Defense (MTD) solutions (e.g., Zimperium)
  • Administer identity and access management using Entra ID (Azure AD), Active Directory, and Okta
  • Drive endpoint security strategies, compliance policies, and risk mitigation initiatives
  • Manage enterprise-scale Windows (10/11) and macOS environments
  • Automate endpoint operations using PowerShell and modern deployment tools
  • Lead Microsoft Teams Rooms (MTR) upgrades and collaboration technology initiatives
  • Provide high-touch executive/VIP IT support and ensure premium service delivery
  • Implement zero-touch provisioning and secure onboarding processes
  • Fulltime
Read More
Arrow Right

Principal IT Systems Engineer - Endpoint & VDI

As our IT Principal Systems Engineer, you will design, optimize, and maintain hi...
Location
Location
United States , Englewood
Salary
Salary:
60.24 - 89.60 USD / Hour
americannursingcare.com Logo
American Nursing Care
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelors degree or equivalent experience
  • 10 years of professional IT experience in an IT technical or infrastructure field
  • 5+ years of hands-on experience with Endpoint Engineering, focusing on client operating systems
  • 5+ years of practical experience with Virtual Desktop Infrastructure (VDI) platforms (e.g., VMware Horizon, Citrix Virtual Apps and Desktops, Microsoft AVD)
  • Demonstrated expertise in designing, implementing, and managing solutions with Microsoft Intune for device management and application deployment
  • Extensive experience with Microsoft System Center Configuration Manager (SCCM) for endpoint lifecycle management, patching, and software distribution
  • Strong scripting skills (e.g., PowerShell, Python) for automation of endpoint configuration, deployment, and management tasks
  • Proven ability to lead complex projects, define scope, manage timelines, allocate resources, and delegate tasks to team members to ensure project success
  • A strong track record of effectively communicating, collaborating, and building relationships across all levels of the organization, from technical teams to senior leadership and diverse business units
Job Responsibility
Job Responsibility
  • Design, optimize, and maintain highly complex enterprise IT endpoint systems and infrastructure, identifying improvements and implementing robust solutions for reliability, security, and performance
  • Lead multiple high-complexity endpoint and VDI initiatives, collaborating with teams to troubleshoot and resolve intricate infrastructure problems
  • Provide technical guidance to IT teams, oversee systems engineering aspects of projects, act as a subject matter expert, and mentor systems engineers
  • Lead projects from inception to completion, dedicating workloads and tasks to other individuals as needed to ensure successful outcomes and efficient resource utilization
  • Develop organizational policies, standards, and guidelines for methods and tools specifically related to endpoint management, VDI, and automation
  • Set direction and lead in the introduction and use of techniques, methodologies and tools, to match overall business requirements, ensuring consistency across all user groups
  • Lead the development of organizational capabilities for methods and tools (including automation) to ensure adoption and adherence to policies, standards and processes
  • Determine testing policy, and own the supporting processes including software security testing for endpoints and VDI environments
  • Manage all risks associated with the testing and take preventative action when any risks become unacceptable
  • Initiate improvements to test processes and direct their implementation
What we offer
What we offer
  • medical
  • prescription drug
  • dental
  • vision plans
  • life insurance
  • paid time off (full-time benefit eligible team members may receive a minimum of 14 paid time off days, including holidays annually)
  • tuition reimbursement
  • retirement plan benefit(s) including, but not limited to, 401(k), 403(b), and other defined benefits offerings
  • Fulltime
Read More
Arrow Right

Senior Enterprise Endpoint Engineer

We are seeking a Senior Enterprise Endpoint Engineer, a strategic, senior-level ...
Location
Location
United States , Atlanta
Salary
Salary:
Not provided
tier4group.com Logo
Tier4 Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of enterprise endpoint management experience
  • Hands-on experience with: Microsoft Intune / Endpoint Manager
  • Azure AD / Entra ID
  • Windows administration (workstations and servers)
  • SCCM / Microsoft Endpoint Configuration Manager
  • Enterprise patch and vulnerability management
  • Scripting experience (PowerShell)
  • ITIL knowledge and change management experience
  • Excellent communication skills
  • Bachelor’s degree in IT or related field (required)
Job Responsibility
Job Responsibility
  • Own enterprise endpoint management standards and operational health for 6,500+ devices
  • Develop and maintain configuration baselines aligned to corporate IT and compliance frameworks (SOC 2, HIPAA, NIST, CIS)
  • Lead enterprise patch management, update governance, and reporting to ensure timely and consistent deployments
  • Build and maintain Intune and SCCM policies to promote device stability, compliance, and performance
  • Partner with Information Security and audit teams to address findings and strengthen endpoint controls
  • Support regulatory, audit, and cyber insurance requirements through documentation, evidence gathering, and structured processes
  • Create executive dashboards tracking patch status, encryption health, device performance, and compliance posture
  • Analyze endpoint trends and recommend proactive improvements to enhance reliability and reduce technical debt
  • Architect and maintain SCCM and Intune environments in hybrid and cloud-first scenarios
  • Lead Windows OS lifecycle strategy, including feature updates, update rings, and compliance policies
Read More
Arrow Right

XSIAM Endpoint Engineer

The Cortex XSIAM Endpoint Engineer is a specialized technical role within the Pr...
Location
Location
India , Mumbai
Salary
Salary:
Not provided
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience with endpoint security solutions (EDR/XDR), specifically with agent deployment, policy management, and troubleshooting
  • Hands-on experience with Cortex XDR is highly desirable
  • Direct experience with Cortex XSIAM, particularly in agent migration from XDR to XSIAM, is a strong plus
  • Strong understanding of endpoint operating systems (Windows, Linux, macOS) and their security configurations
  • Familiarity with SOC operations and how endpoint data is used for threat hunting, investigation, and response
  • Knowledge of scripting for agent deployment and management is an asset
  • Experience in a customer-facing, consultative role, such as professional services, technical account management, or solutions architecture
  • Strong analytical and problem-solving skills to navigate complex agent migration and policy-tuning challenges
  • Excellent communication skills, with the ability to manage stakeholder expectations and collaborate effectively with customer endpoint teams
  • Ability to work effectively as part of a distributed project team to drive successful customer outcomes
Job Responsibility
Job Responsibility
  • Lead and execute the migration of endpoint agents from Cortex XDR or legacy EDR platforms to Cortex XSIAM
  • Develop and implement a phased agent rollout plan to ensure a smooth transition with minimal disruption
  • Create migration plans for moving agents and assist in updating the customer's architecture diagrams to reflect the new XSIAM endpoint traffic flow
  • Perform agent compatibility checks against various endpoint OS versions and conduct pilot validations before mass rollouts
  • Analyze the customer's existing XDR policies, profiles, and configurations to plan a successful migration to Cortex XSIAM
  • Implement and fine-tune endpoint security policies, profiles, and exception rules within the XSIAM console to align with customer security objectives
  • Manage global allow/block lists, exceptions, and other endpoint-specific configurations post-migration
  • Recreate and apply configurations such as tags and exception profiles for different operating systems (e.g., Windows, Linux, macOS) in the unified XSIAM tenant
  • Ensure endpoint agents are healthy and managed centrally post-migration
  • Collaborate with the customer's SOC and endpoint teams to tune alerts, validate security posture, and reduce alert fatigue
Read More
Arrow Right