Architect - Enterprise Modern Workplace

Frontier AirlinesDenver, CO
$110,114 - $163,873Hybrid

About The Position

At Frontier Airlines, our mission is to Make Every Flight Count. This mission guides how we support our customers, our people, and the operation every day. As a Frontier employee, your work connects to more than a single role. Whether you’re supporting flights, helping customers, maintaining aircraft, leading teams, or working behind the scenes, you help create a travel experience that is safe, reliable, and built around value. Our work is guided by our core values: customer first, safety always, operational excellence, and one team. These values shape how we make decisions, support each other, and deliver for the people who count on us. Frontier Airlines is a Denver-based airline serving destinations across the United States and select international markets. Our people support every part of the travel journey, from airport operations and flight crews to aircraft maintenance, customer support, corporate teams, and more. We’re focused on delivering meaningful value by making travel more accessible, practical, and easy to personalize for our customers. Across the airline, our teams help support a safe, reliable, and efficient operation while continuing to strengthen the experience for the people who choose Frontier.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, or related field or equivalent combination of education and experience required.
  • At least 7 years of experience in enterprise endpoint management, identity administration, Microsoft 365 administration, or related infrastructure operations.
  • Hands-on experience supporting hybrid identity environments using Active Directory and Microsoft Entra ID.
  • Experience configuring and supporting Microsoft Intune, endpoint compliance, device enrollment, application deployment, and patch management.
  • Experience administering Microsoft 365 services and Exchange Online, including mailbox management, mail flow, permissions, and collaboration services.
  • Excellent troubleshooting and problem-solving skills.
  • Strong verbal and written communication skills.
  • Ability to work effectively in a team-oriented environment and collaborate with infrastructure, cybersecurity, networking, and service desk teams.
  • Strong understanding of Active Directory and Microsoft Entra ID administration, including users, groups, service accounts, synchronization concepts, and hybrid identity operations.
  • Knowledge of Conditional Access, Multi-Factor Authentication, identity protection, and secure access best practices.
  • Advanced skills in configuring and managing Microsoft Intune, endpoint enrollment, compliance policies, configuration profiles, and application policies.
  • Knowledge of desktop and mobile operating systems such as Windows, iOS, Android, and macOS.
  • Ability to administer Microsoft 365 services, licensing, collaboration features, service health, and user support processes.
  • Knowledge of mailbox administration, mail flow, shared mailboxes, distribution groups, permissions, and Exchange Online troubleshooting.
  • Familiarity with zero trust principles, endpoint security, identity security, and secure configuration standards.
  • Basic knowledge of networking principles and how they relate to endpoint connectivity, cloud services, VPN-less access, and secure web access.
  • Understanding of compliance standards and regulations related to endpoint, identity, and access management.
  • Ability to use PowerShell for administration, automation, reporting, troubleshooting, and operational support.
  • Strong troubleshooting skills to diagnose and resolve identity, endpoint, secure access, Microsoft 365, and Exchange Online issues.
  • Ability to develop, implement, and maintain endpoint, identity, access, and application policies.
  • High attention to detail to ensure accurate configuration and compliance with policies.
  • Ability to adapt to new technologies and changing environments.
  • Strong ability to work collaboratively with infrastructure, cybersecurity, networking, service desk, and other departments.
  • Effective time management skills to prioritize tasks and meet deadlines.
  • Ability to provide excellent customer service and support to end users.

Nice To Haves

  • Experience with ManageEngine Endpoint Central or similar endpoint patching and device management platforms.
  • Experience supporting Zscaler ZIA/ZPA, client connectors, secure internet access, and private application access.
  • PowerShell scripting experience for administration, reporting, troubleshooting, and process automation.
  • Relevant certifications such as Microsoft Certified: Endpoint Administrator Associate, Microsoft 365 Certified Administrator, Microsoft Certified: Identity and Access Administrator Associate, JAMF Certified Admin, or similar.
  • Proficiency with ManageEngine Endpoint Central or similar tools for patch deployment, software updates, endpoint inventory, and remediation.
  • Knowledge of Zscaler ZIA/ZPA, client connector behavior, secure internet access, private application access, and policy troubleshooting.
  • Ability to train and support end users and IT teams on endpoint, identity, secure access, and Microsoft 365 best practices.
  • Ability to analyze complex technical issues and develop effective solutions.

Responsibilities

  • Architecture, engineering, security, administration, and continuous improvement of the enterprise endpoint, identity, and Microsoft 365 ecosystems.
  • Provide technical leadership for endpoint management, identity services, collaboration platforms, and cybersecurity initiatives that support a secure, resilient, and compliant hybrid (Cloud & On-prem) technology environment.
  • Serve as the subject matter expert for endpoint device management, Microsoft 365 administration, Entra ID (Azure AD), identity governance, authentication technologies, device security, and endpoint security architecture.
  • Identify, recommend, and implement cybersecurity best practices that strengthen the organization’s overall security posture and reduce operational risk.
  • Partner closely with Cybersecurity, Infrastructure, Service Desk, Cloud Engineering, and business stakeholders to ensure enterprise technologies align with security standards, regulatory requirements, and business objectives.
  • Administer Active Directory, Microsoft Entra ID, Microsoft Intune, ManageEngine Endpoint Central, Zscaler ZIA/ZPA, Microsoft 365, and Exchange Online.
  • Support user identity lifecycle processes, endpoint enrollment and compliance, device patching, application deployment, secure internet and private application access, mail administration, and Microsoft 365 services.
  • Provide advanced technical support for identity, endpoint, secure access, mail, and Microsoft 365 service issues while minimizing business disruption.
  • Implement and maintain endpoint and identity security controls to protect users, devices, applications, and data from threats and vulnerabilities.
  • Use PowerShell and other approved automation methods to improve administration, reporting, remediation, and operational efficiency.
  • Maintain comprehensive documentation of identity, endpoint, access, Microsoft 365, Exchange Online, and operational procedures.
  • Work closely with infrastructure, cybersecurity, networking, service desk, and business teams to align platform administration with organizational goals.
  • Provide guidance and support to IT teams and end users on endpoint, identity, secure access, and Microsoft 365 best practices.
  • Maintain accurate records for endpoint configurations, identity objects, access policies, mail administration, and Microsoft 365 service changes.
  • Adhere to documented Change Management processes to protect the integrity of the production environment.
  • Manage ticket loads and ensure response time SLAs are met for identity, endpoint, access, Microsoft 365, and Exchange Online support requests.
  • Develop and maintain procedures that support consistent, secure, and process-driven resolution of operational issues.

Benefits

  • Medical, dental and vision coverage
  • 401(k) retirement savings options
  • Paid holidays, vacation time and sick time
  • Travel privileges on Frontier Airlines and participating partner airlines, based on current program rules and availability
  • Buddy passes, based on eligibility and program rules
  • Travel-related discounts and employee discounts on select products, services and vendors
  • Employee support programs and resources, including the HOPE League, Frontier Airlines’ nonprofit organization
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service