Endpoint Engineer

Antero Resources CorporationDenver, CO
$125,000 - $140,000Onsite

About The Position

Under limited supervision, this position will implement, administer, and continuously optimize Microsoft Intune and Endpoint Manager platforms to manage the full lifecycle of Windows, mobile, and remote workforce devices across corporate and field operations environments. This role involves designing and implementing configuration profiles, compliance policies, and conditional access controls to ensure adherence to corporate cybersecurity standards and regulatory requirements. The Endpoint Engineer will be responsible for packaging, deploying, and maintaining applications using Intune and automated deployment tools, as well as monitoring endpoint compliance and security posture by managing patching, antivirus protection, encryption, security policies, and remediation initiatives in partnership with the IT Security team. Additionally, the role includes managing mobile device enrollment, application protection policies, and BYOD strategies while ensuring data protection and user productivity. The Endpoint Engineer will lead the integration of Intune with Azure AD, Microsoft Defender, SIEM tools, and other enterprise systems for accurate reporting and security visibility, and develop compliance, device health, patch status, software inventory, and audit readiness reports for leadership. This position also serves as escalation support for endpoint and Intune-related issues, collaborating with Service Desk and Infrastructure teams to resolve complex incidents and improve support processes. Participation in change management processes, testing new configurations, and ensuring controlled rollouts are also key responsibilities. The role involves evaluating, recommending, and implementing modern endpoint management practices, including Autopilot, zero-touch provisioning, and cloud-first strategies. Other duties as assigned.

Requirements

  • Bachelor’s Degree from an accredited institution.
  • Field of Study: Computer Science, Engineering or related field.
  • At least three (3) years of experience in endpoint management or systems engineering.
  • At least two (2) years of administering Microsoft Intune/Endpoint Manager technology.
  • Experience designing and supporting modern endpoint management and security solutions including Entra ID (Azure AD), Autopilot, Conditional Access, Microsoft Defender for Endpoint, and Zero Trust architectures.
  • Microsoft certifications such as MD-102, Endpoint Administrator Associate.

Nice To Haves

  • Strong knowledge of Microsoft Endpoint Manager (Intune) and modern device management.
  • Advanced understanding of operating systems (e.g. Windows, iOS, Android) and endpoint lifecycle.
  • Advanced knowledge of patch management, compliance frameworks, and security standards.
  • Familiarity with ITSM tools and ticketing systems.
  • Demonstrated ability to maintain documentation, standards, and technical procedures related to endpoint engineering, device security, and lifecycle management.
  • Ability to multi-task and manage prioritization of multiple requests within ticketing systems and leadership direction.
  • Cross-functional collaboration skills with ability to act as a liaison between end user and internal IT department to meet business needs.
  • Ability to analyze technical data, troubleshoot complex issues, and implement effective solutions.
  • Effective written and verbal communication skills.

Responsibilities

  • Implement, administer and continuously optimize Microsoft Intune and Endpoint Manager platforms to manage the full lifecycle of Windows, mobile, and remote workforce devices across corporate and field operations environments.
  • Design and implement configuration profiles, compliance policies, and conditional access controls to ensure adherence to corporate cybersecurity standards and regulatory requirements.
  • Responsible for packaging, deploying, and maintaining applications using Intune and automated deployment tools.
  • Monitor endpoint compliance and security posture by managing patching, antivirus protection, encryption, security policies, and remediation initiatives in partnership with IT Security team.
  • Manage mobile device enrollment, application protection policies, and BYOD strategies while ensuring data protection and user productivity.
  • Lead the Integration of Intune with Azure AD, Microsoft Defender, SIEM tools, and other enterprise systems to maintain accurate reporting and security visibility.
  • Develop and deliver compliance, device health, patch status, software inventory, and audit readiness reports to leadership, identifying trends and recommending corrective actions.
  • Serve as escalation support for endpoint and Intune-related issues, collaborate with Service Desk and Infrastructure teams to resolve complex incidents and improve support processes.
  • Participate in change management processes, testing new configurations and ensuring controlled rollouts.
  • Evaluate, recommend, and implement modern endpoint management practices, including Autopilot, zero-touch provisioning, and cloud-first strategies.
  • Perform other duties as assigned.

Benefits

  • Health Care eligibility including Medical & Prescription, Dental and Vision coverages
  • Health Savings Account (HSA), Dependent Care FSA and Dependent Care FSA match
  • Employer Paid Insurance: Basic Life and AD&D (employee, spouse, child), Short-Term and Long-Term Disability Coverage
  • Voluntary Insurance: Life and AD&D, Accident, Long Term Care, Critical Illness, Hospital Indemnity, Pet Insurance, Legal Services
  • Employee Assistance Program (EAP)
  • 401(k) with employer matching
  • Student Loan Repayment Reimbursement
  • Vacation, Personal Choice Days (PCD), Sick Time
  • Paid Parental Leave
  • Company paid Holidays
  • Wellness Reimbursement
  • Subsidized Parking and Public Transportation
  • Financial Well-being Program
  • Professional Membership Reimbursement
  • Employee Discount Programs
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service