Endpoint Engineer III

Applied Medical•Rancho Santa Margarita, CA
•Onsite

About The Position

The Endpoint Engineer III manages and secures Applied Medical's enterprise endpoint environment. This position, also known as an endpoint management engineer or IT endpoint engineer, administers device management platforms including Microsoft Intune, Microsoft Configuration Manager, and Windows Autopilot to support a secure, reliable, and modern workplace. The Endpoint Engineer III combines troubleshooting expertise, PowerShell scripting proficiency, and endpoint security knowledge to keep Applied Medical's device fleet compliant, current, and running smoothly.

Requirements

  • Administers Microsoft Intune, Microsoft Endpoint Manager, and Windows Autopilot in production environments.
  • Applies working knowledge of Microsoft 365, Entra ID (Azure AD), and modern identity and device management solutions.
  • Writes PowerShell scripts for administration, automation, and systems integration.
  • Implements enterprise endpoint security and compliance controls in regulated or security conscious environments.
  • Supports cloud based workplace technologies and modern management practices.
  • Applies knowledge of operating system deployment, software distribution, patching frameworks, and endpoint lifecycle management methodologies.
  • Manages multiple priorities while maintaining high standards of accuracy, quality, and customer satisfaction.
  • Successful completion of a Background Check.

Nice To Haves

  • Holds a bachelor's degree in information technology, computer science, engineering, or a related field, or an equivalent combination of education and five or more years of experience.
  • Holds relevant Microsoft certifications, such as MD-102, MS-102, AZ-104, or SC-300.
  • Collaborates with global teams supporting geographically distributed endpoint environments.
  • Participates in enterprise scale digital transformation or endpoint modernization initiatives.
  • Applies knowledge of regulatory compliance frameworks and security standards applicable to endpoint management.

Responsibilities

  • Manages enterprise endpoints using Microsoft Intune, Microsoft Configuration Manager (MECM), formerly known as SCCM, Windows Autopilot, and JAMF.
  • Diagnoses and resolves complex device, operating system, application, and deployment issues.
  • Develops PowerShell scripts and automation to streamline endpoint management, reporting, and operational processes.
  • Enforces endpoint security best practices, including device compliance, vulnerability remediation, patch management, Conditional Access, and Zero Trust principles.
  • Supports Windows, macOS, iOS, and Android devices across a modern workplace environment.
  • Plans, manages, and executes endpoint related projects, including operating system upgrades, device refreshes, migrations, and cloud transformation initiatives.
  • Partners with technical and non-technical stakeholders to communicate project status and resolve issues.
  • Leverages endpoint analytics and reporting to improve device health, performance, and compliance.

Benefits

  • Competitive compensation range: $71000 - $95000 / year (California).
  • Comprehensive benefits package.
  • Training and mentorship opportunities.
  • On-campus wellness activities.
  • Education reimbursement program.
  • 401(k) program with discretionary employer match.
  • Generous vacation accrual and paid holiday schedule.
  • Bonus and incentive compensation plans may apply.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service