everops - Senior Infrastructure Endpoint Engineer
Requirements
• 6+ years of experience in endpoint engineering, IT infrastructure, or related field, with demonstrated seniority in owning roadmap and driving technical decisions • Deep, hands-on expertise across MDM platforms: • Microsoft Intune • Kandji (Iru), JAMF • macOS and Windows administration at enterprise scale • Deep, hands-on expertise across EDR/XDR platforms: • CrowdStrike Falcon - administration, policy tuning, Falcon modules beyond EDR such as Identity and vulnerability management • SentinelOne - agent deployment, policy configuration, and Singularity platform administration • Microsoft Defender for Endpoint - onboarding, policy management, and Microsoft 365 Defender ecosystem integration • Solid understanding of endpoint security (patching, compliance, EDR, vulnerability management, and alert triage) • Experience with Okta, Entra ID (Azure AD), or similar identity platforms • Familiarity with Zero Trust principles and conditional access • Scripting experience (PowerShell, Bash, or Python) • Strong troubleshooting skills across endpoint, identity, and network layers • Working knowledge of AWS and/or Azure environments • Microsoft Autopilot and Apple Business Manager • Familiarity with hybrid identity (Active Directory + Entra ID, GPOs) • Proven ability to evaluate, compare, and recommend endpoint/security platform decisions using data - cost, risk, and operational metrics - rather than preference alone • Experience presenting technical strategy and tradeoffs to leadership or customer stakeholders • Experience with configuration management tools (Ansible, Puppet, Chef) • Experience with infrastructure as code, including Terraform • Experience operating in high-growth or SaaS environments • Network troubleshooting experience, including basic concepts of DNS/DHCP/network traffic flow and related protocols • Experience with Nexthink or similar endpoint analytics/DEX tools • Experience leading a platform migration or consolidation (e.g., EDR-to-EDR or MDM-to-MDM) from evaluation through cutover
Responsibilities
• Design, implement, and manage endpoint platforms using Microsoft Intune, Kandji (Iru), and Fleet across mixed macOS and Windows fleets • Own device lifecycle management (onboarding, offboarding, compliance, and refresh) across all supported MDM platforms • Implement automated provisioning with Autopilot and Apple Business Manager (DEP) • Configure and enforce industry-standard hardening baselines for macOS and Windows via Intune, Kandji/Iru, and Fleet • Own EDR/XDR platform administration across CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint - including sensor/agent deployment, policy configuration, prevention policy tuning, and exclusion management • Manage vulnerability exposure using CrowdStrike Spotlight, SentinelOne Vulnerability Management, or Microsoft Defender Vulnerability Management, and drive remediation SLAs • Lead alert triage and investigation workflows across EDR platforms, partnering with the security team on escalations and response • Build and maintain host groups, device policies, and containment workflows across whichever EDR platform a customer runs • Own and drive the endpoint and security tooling roadmap - evaluating, consolidating, and migrating between EDR/MDM platforms as needed • Make and defend platform and architecture decisions (build vs. buy, consolidate vs. diversify) backed by data - cost, risk reduction, and operational impact • Administer Server Patch and Policy Management through WSUS/AWS SSM • Integrate endpoint platforms with Okta, Entra ID, and other identity providers • Automate endpoint configuration and application lifecycle using scripting (PowerShell, Bash, Python) • Troubleshoot complex endpoint issues across OS, network, and identity layers • Support secure access workflows (VPN, cert-based Wifi authentication) • Build and maintain documentation, runbooks, and standards • Partner with Security, IAM, and Cloud teams to align endpoint strategy with broader platform architecture • Present technical recommendations and roadmap tradeoffs to customer and internal leadership, backed by metrics and data • Contribute to continuous improvement within your team and across EverOps’ customer base
Benefits
• 100% Remote Workplace: We’ve been remote since Day 1! • Unlimited Paid Time Off. • Equity: Become a true owner of the company. • 401k with company contribution and sponsored healthcare. • Professional Growth: Access to training and certification programs to accelerate your career.
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT