Sr. Endpoint Engineer

Sr. Endpoint Engineer

Contract Type:

Contract

Location:

Milpitas - CA

Industry:

Information Technology

Contact Name:

Lauren Gatewood

Contact Email:

lgatewood@dewintergroup.com

Contact Phone:


Date Published:

10-17-2025

Salary:

$50.00 - $60.00 Per Hour

Job ID:

37747

Title:  Sr. Endpoint Engineer
Job Type:  Contract
Contract Length:  1 year
Target Start Date:  ASAP
Work Location/Structure:  Irvine, CA

About the Opportunity:

Our client, a leader in the Technology sector, is looking for a skilled  Sr. Endpoint Engineer  to join their team for a 1-year engagement. We are seeking a Sr. Endpoint Engineer to join the Global IT Endpoints team. This role is responsible for designing, implementing, and maintaining modern endpoint management solutions for our global fleet of Windows devices. The ideal candidate will combine deep technical expertise with a business-focused mindset to deliver secure, reliable, and scalable endpoint solutions. This position will play a critical role in shaping and delivering a secure, modern, and efficient endpoint experience for thousands of employees worldwide. This role combines deep technical expertise with a passion for innovation, automation, and user experience. This is a high-impact role that requires a self-motivated professional who can hit the ground running and deliver results quickly.

Key Responsibilities & Deliverables:

This role is focused on the successful completion of specific tasks and deliverables. Your responsibilities will include:
  • Modern Endpoint Management: Architect, implement, and optimize Microsoft Intune and MECM solutions to manage the global fleet of Windows endpoints. Translate existing Group Policy Objects (GPOs) into scalable, cloud-native Intune configuration and compliance policies.
  • Windows Deployment & Lifecycle: Oversee deployment and maintenance of Windows 10/11 images using Autopilot, ensuring zero-touch provisioning for global users. Define lifecycle standards for endpoint hardware and software in collaboration with Global IT leadership.
  • Application & Patch Management: Automate deployment of applications, patches, and drivers across endpoints to ensure enterprise-wide consistency. Design, implement, and support 3rd-party patching leveraging solutions such as PatchMyPC. Administer software distribution, desktop security, firmware updates, and remote support tools to support endpoint efficiency. Define servicing plans that keep clients current while balancing stability, security, and business requirements.
  • Security & Compliance: Implement security baselines and Defender for Endpoint policies to safeguard devices against threats. Ensure compliance with global security frameworks, IT controls, and regulatory requirements.
  • Automation & Scripting: Develop and maintain PowerShell scripts to automate endpoint management, reporting, and system administration. Leverage scripting for remediation tasks, user provisioning, and compliance enforcement.
  • Escalation & Troubleshooting: Serve as Tier 3 escalation point for complex Operating System (OS), application, and endpoint hardware issues. Partner with IT Service Desk, Deskside Support, and regional IT teams to rapidly resolve issues and improve root-cause analysis.
  • Cross-Functional Collaboration: Work with Security, Networking, and Cloud teams to align endpoint strategy with enterprise architecture. Participate in architectural discussions, cross-functional infrastructure projects, and digital workplace initiatives.
  • User Experience & Documentation: Improve user productivity by ensuring frictionless onboarding, provisioning, and device management. Create and maintain technical documentation, standard operating procedures (SOPs), and training material for the Endpoint team.
  • Continuous Improvement: Drive a continual service improvement culture, leveraging R&D, validation, and pilot programs to modernize endpoint services. Support the enterprise-wide rollout of Windows 11 and future endpoint innovation programs, such as the rollout of Digital Experience Monitoring (DEX) solutions.
Required Skills & Experience:

We are looking for someone with a proven track record of successful contract engagements. The ideal candidate will have:
  • Technical Expertise: Deep knowledge of Windows 10/11, Microsoft Intune, MECM (SCCM), Windows Autopilot, Azure AD / Entra ID, and Microsoft 365 ecosystem. Deep experience with Application Packaging, Software Distribution, OS Patching, 3rd Party Applications Patching, Imaging, and modern endpoint management. Advanced PowerShell scripting experience (preferably using PowerShell App Deploy Kit); knowledge of AppleScript/Bash for Mac device integration is a plus. Demonstrated experience in architecting and deploying solutions for large enterprise endpoint environments (20k+ endpoints). Strong understanding of enterprise security baselines, endpoint hardening, and compliance frameworks. Familiarity with Jamf Pro for macOS/iOS management is helpful but not required.
  • Enterprise & Infrastructure Knowledge: Experience with hybrid identity management (Azure AD/Entra ID, Group Policy, Conditional Access). Solid knowledge of global IT infrastructure environments, including networks, enterprise security suites, device lifecycle management, and SaaS/O365 applications.
  • Soft Skills & Leadership: Excellent communication and cross-functional collaboration skills. Ability to provide mentorship to junior engineers and partner with leadership on strategic initiatives. Strong organizational skills with the ability to prioritize and lead multiple projects simultaneously.
  • Education & Certification: Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field. Equivalent work experience considered. 4+ years managing Intune and MECM/SCCM in enterprise environments at scale. 4+ years with endpoint lifecycle management, patching, compliance, and application delivery. Preferred certifications: Microsoft Certified: Intune Expert, Endpoint Administrator Associate, or equivalent. Jamf 300/400 certification (a plus but not required). ITIL Foundation certification or IT Service Management knowledge.

DeWinter Group and Maris Consulting  is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. We post pay scales which are based on our client pay ranges. DeWinter, Maris, and our clients have the right to modify the requirements of the role which can impact the pay ranges posted.

APPLY NOW

Share this job

Interested in this job?
Save Job
Create As Alert

Similar Jobs

Read More
SCHEMA MARKUP ( This text will only show on the editor. )