Salary
💰 $111,000 - $173,000 per year
Tech Stack
AnsibleChefiOSJamfMacOSPuppetPython
About the role
- Design, implement, and maintain endpoint management solutions (Jamf Pro, Intune, or equivalent) for macOS and iOS devices at scale
- Own zero-touch deployment workflows to enable smooth onboarding and offboarding
- Manage the device lifecycle: procurement, configuration, patching, monitoring, and decommissioning
- Standardize and manage system images, policies, and applications across all platforms
- Troubleshoot endpoint-related escalations and provide Tier 3 support when needed
- Build and maintain automation scripts and workflows (Python, Bash, PowerShell, APIs) to reduce manual IT processes
- Integrate identity and access management platforms (Okta) with endpoint tools for provisioning and compliance
- Define and enforce security baselines, patch management, and compliance controls across all endpoints
- Partner with Security to identify, monitor, and remediate endpoint vulnerabilities
- Ensure platforms meet audit, compliance, and regulatory requirements (e.g., SOC2, ISO 27001)
- Maintain thorough documentation of system architecture, standards, and operational procedures
- Work with IT Operations to ensure escalations are efficiently resolved and knowledge is shared
- Collaborate with cross-functional teams (Security, Infrastructure, HR, and Engineering) on device and access workflows
- Document processes, create runbooks, and contribute to knowledge-sharing across the IT organization
- Act as a subject-matter expert in endpoint management and automation best practices
Requirements
- 4+ years of experience in endpoint engineering, client platform engineering, or relevant IT systems engineering experience
- Strong experience with Jamf Pro and Intune administration at enterprise and global scale (1k+ users is a plus)
- Exposure to configuration management frameworks (Chef, Puppet, Ansible) a plus
- Demonstrated proficiency in scripting and automation Python (Bash, PowerShell, or similar languages accepted)
- Comfortable enforcing security standards and compliance requirements in a mobile device environment
- Strong understanding of networking, system security, and SaaS application management
- Experience working in a remote-first, asynchronous environment
- Expert in Apple ecosystem management (macOS, iOS, ABM, ADE, VPP)
- Valid right to work authorization depending on the country of employment
- Equity ownership (RSUs) in a growing, privately-owned company
- 100% employer-paid healthcare, vision, and dental insurance coverage for full-time employees (working 30+ hours per week) and their dependents
- Additional voluntary insurance options where applicable
- 12 weeks of paid parental leave for both birthing and non-birthing caregivers
- Additional 6-8 weeks of pregnancy disability leave for birthing parents
- Family planning care and reimbursement
- Flexible PTO for all locations and sabbatical program
- Access to mental wellness and professional coaching, therapy, and Employee Assistance Program
- Monthly stipends to support work and wellness
- 401k plan or pension schemes (in countries where statutorily required)
- Financial wellness benefits, like CPA and financial advisor coverage
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
endpoint managementzero-touch deploymentdevice lifecycle managementsystem imagesautomation scriptingPythonBashPowerShellidentity and access managementsecurity baselines
Soft skills
troubleshootingcollaborationdocumentationknowledge sharingproblem-solvingcommunicationteamworksubject-matter expertise
Certifications
SOC2ISO 27001