Logo for EverOps

Senior Infrastructure Endpoint Engineer

Role overview

Qualifications

  • 6+ years of experience in endpoint engineering, IT infrastructure, or related field
  • Deep, hands-on expertise across MDM platforms: Microsoft Intune, Kandji (Iru), JAMF, Fleet
  • Deep, hands-on expertise across EDR/XDR platforms: CrowdStrike Falcon, SentinelOne, Microsoft Defender for Endpoint
  • Experience presenting technical strategy and tradeoffs to leadership or customer stakeholders

Responsibilities

  • Design, implement, and manage endpoint platforms using Microsoft Intune, Kandji (Iru), and Fleet across mixed macOS and Windows fleets
  • Own device lifecycle management (onboarding, offboarding, compliance, and refresh) across all supported MDM platforms
  • Implement automated provisioning with Autopilot and Apple Business Manager (DEP)
  • Lead alert triage and investigation workflows across EDR platforms, partnering with the security team on escalations and response

About the company

EverOps logo

EverOps

IT Services & IT Consulting

Technology challenges can be a headache. We help you tackle your biggest DevOps and IT challenges, delivering superior outcomes you didn’t think were possible. Our teams work with innovative companies just like yours to simplify the hard things and transform your business and technology. - Cost Optimization - Infrastructure Modernization - Technical Strategy - Delivery and Operational Uplift

Company details

Company typeSME
IndustryIT Services & IT Consulting
Company size51 - 200

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Senior Infrastructure Endpoint Engineer

Overview

EverOps is an AI-native platform operations company focused on delivering outcomes - not tickets. Our TechPods embed directly with customers to operate, scale, and modernize their platforms across cloud, security, and IT.

We’re looking for a Senior Endpoint Engineer to design, harden, and operate modern endpoint environments across macOS and Windows at scale. This role sits at the intersection of endpoint engineering, identity, and security, with deep expertise across leading EDR platforms (CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint) and modern MDM platforms (Intune, Kandji/Iru, and Fleet) to drive automation, visibility, and user experience.

The Challenge

Most companies are stuck with fragmented endpoint tooling, reactive support models, and inconsistent security enforcement.

You’ll help our customers evolve to a modern, Zero Trust-aligned endpoint strategy, standardizing device lifecycle management, improving end-user experience, and tightly integrating identity, security, and device posture across whichever EDR and MDM stack each customer runs.

This means balancing:

  • Security vs. usability

  • Automation vs. flexibility

  • Standardization vs. real-world edge cases

  • Platform-specific depth vs. cross-platform fluency

The Mission

As a Senior Infrastructure Endpoint Engineer, you will join our U.S.-Based Virtual Operating Center, working within a dynamic team to own and evolve enterprise MDM and EDR services across Windows and macOS environments. Your primary mission will focus on modernizing user experience architecture, maturing lifecycle automation, strengthening endpoint and security posture, and integrating automated workflows to improve security, scalability, and user experience.

You will be expected to lead by example - architecting solutions across Intune, Kandji (Iru), and Fleet, and operating with deep expertise across CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint. Beyond hands-on execution, you will own the endpoint and security tooling roadmap, evaluate platform tradeoffs, and drive technical decisions using data - not opinion - while designing automated provisioning workflows tied to Autopilot or Apple Business Manager.

What You’ll Do

  • Design, implement, and manage endpoint platforms using Microsoft Intune, Kandji (Iru), and Fleet across mixed macOS and Windows fleets

  • Own device lifecycle management (onboarding, offboarding, compliance, and refresh) across all supported MDM platforms

  • Implement automated provisioning with Autopilot and Apple Business Manager (DEP)

  • Configure and enforce industry-standard hardening baselines for macOS and Windows via Intune, Kandji/Iru, and Fleet

  • Own EDR/XDR platform administration across CrowdStrike Falcon, SentinelOne, and Microsoft Defender for Endpoint - including sensor/agent deployment, policy configuration, prevention policy tuning, and exclusion management

  • Manage vulnerability exposure using CrowdStrike Spotlight, SentinelOne Vulnerability Management, or Microsoft Defender Vulnerability Management, and drive remediation SLAs

  • Lead alert triage and investigation workflows across EDR platforms, partnering with the security team on escalations and response

  • Build and maintain host groups, device policies, and containment workflows across whichever EDR platform a customer runs

  • Own and drive the endpoint and security tooling roadmap - evaluating, consolidating, and migrating between EDR/MDM platforms as needed

  • Make and defend platform and architecture decisions (build vs. buy, consolidate vs. diversify) backed by data - cost, risk reduction, and operational impact

  • Administer Server Patch and Policy Management through WSUS/AWS SSM

  • Integrate endpoint platforms with Okta, Entra ID, and other identity providers

  • Automate endpoint configuration and application lifecycle using scripting (PowerShell, Bash, Python)

  • Troubleshoot complex endpoint issues across OS, network, and identity layers

  • Support secure access workflows (VPN, cert-based Wifi authentication)

  • Build and maintain documentation, runbooks, and standards

  • Partner with Security, IAM, and Cloud teams to align endpoint strategy with broader platform architecture

  • Present technical recommendations and roadmap tradeoffs to customer and internal leadership, backed by metrics and data

  • Contribute to continuous improvement within your team and across EverOps’ customer base

You Have

  • 6+ years of experience in endpoint engineering, IT infrastructure, or related field, with demonstrated seniority in owning roadmap and driving technical decisions

  • Deep, hands-on expertise across MDM platforms:

  • Microsoft Intune

  • Kandji (Iru), JAMF

  • Fleet

  • macOS and Windows administration at enterprise scale

  • Deep, hands-on expertise across EDR/XDR platforms:

  • CrowdStrike Falcon - administration, policy tuning, Falcon modules beyond EDR such as Identity and vulnerability management

  • SentinelOne - agent deployment, policy configuration, and Singularity platform administration

  • Microsoft Defender for Endpoint - onboarding, policy management, and Microsoft 365 Defender ecosystem integration

  • Solid understanding of endpoint security (patching, compliance, EDR, vulnerability management, and alert triage)

  • Experience with Okta, Entra ID (Azure AD), or similar identity platforms

  • Familiarity with Zero Trust principles and conditional access

  • Scripting experience (PowerShell, Bash, or Python)

  • Strong troubleshooting skills across endpoint, identity, and network layers

  • Working knowledge of AWS and/or Azure environments

  • Microsoft Autopilot and Apple Business Manager

  • Familiarity with hybrid identity (Active Directory + Entra ID, GPOs)

  • Proven ability to evaluate, compare, and recommend endpoint/security platform decisions using data - cost, risk, and operational metrics - rather than preference alone

  • Experience presenting technical strategy and tradeoffs to leadership or customer stakeholders

Extra Awesome

  • Experience with configuration management tools (Ansible, Puppet, Chef)

  • Experience with infrastructure as code, including Terraform

  • Experience operating in high-growth or SaaS environments

  • Network troubleshooting experience, including basic concepts of DNS/DHCP/network traffic flow and related protocols

  • Experience with Nexthink or similar endpoint analytics/DEX tools

  • Experience leading a platform migration or consolidation (e.g., EDR-to-EDR or MDM-to-MDM) from evaluation through cutover

Benefits

  • 100% Remote Workplace: We’ve been remote since Day 1!

  • Unlimited Paid Time Off.

  • Equity: Become a true owner of the company.

  • 401k with company contribution and sponsored healthcare.

  • Professional Growth: Access to training and certification programs to accelerate your career.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Infrastructure Engineer Related jobs

Other jobs at EverOps

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.