Endpoint Services Engineer

SchoolsFirst Federal Credit UnionTustin, CA

About The Position

The Endpoint Services Engineer is a senior individual contributor who provides technical leadership and mentorship to administrators while managing the organization's endpoint security program. This role is responsible for securing and maintaining the enterprise endpoint and mobile device fleet through our Endpoint Protection Platform (EPP). The position combines strategic oversight with hands-on technical execution to drive standardization of endpoint configurations, security hardening, vulnerability management, and advanced Endpoint Detection and Response (EDR) solutions, all aligned with the company's zero trust and XDR strategies. The engineer collaborates with cross-functional teams to develop security policies, automate routine management tasks, and support physical and virtual endpoint infrastructure. The ideal candidate will possess deep expertise in endpoint management, scripting, security configuration, and troubleshooting security software. Researches, evaluates, and recommends software and hardware products to maintain a stable and consistent end-user environment. Designs and implements advanced endpoint management solutions, optimizing processes and systems for the entire endpoint fleet. Serves as a project technical lead, providing tasks and technical leadership and executing plans and implementing technical solution projects to refresh supported systems. Designs and implements endpoint architecture, network integration, and backend infrastructure to support endpoint deployment and management. Automates complex, organization-wide tasks and integrates endpoint systems with other core IT systems (e.g., networking, identity management). Serves as an expert across multiple operating systems (Windows, macOS) and responsible for ensuring seamless integration of devices across diverse platforms. Additional Job Functions Performs other duties as assigned Complies with regulatory compliance and assigned training requirements including but not limited to BSA regulations corresponding to their specific job duties. Failure to do so may result in disciplinary and other employment related actions.

Requirements

  • High School Diploma or GED required
  • Bachelor's Degree in a related field or equivalent years of experience required
  • 5-7 years of prior relevant experience required
  • MD-102, MS-101 required
  • SC-200 required
  • CompTIA Network+ required
  • Skilled in managing Apple devices (macOS/iOS) for deployment, configuration, and ongoing support via MDM and MAM solutions in both on-premises and cloud/SaaS environments.
  • Advanced expertise in Active Directory and hybrid identity management, including Group Policy, multi-domain setups, and role-based access controls
  • Expert in designing and maintaining endpoint configurations
  • Expert in applying robust security protocols across multi-platform environments.
  • Skilled in implementing best practices for identity management within Active Directory and UEM frameworks to support organizational security policies.
  • Expertise in managing both on-premises and cloud-based infrastructures
  • Proficient in implementing scalable device configurations and updates within cloud environments.
  • Advanced skills in PowerShell with additional proficiency in Python and Bash, developing automation frameworks for application packaging, deployment, inventory management, and system configuration across macOS and Windows.
  • Demonstrated experience creating cross-platform automation processes.
  • Proven ability to lead endpoint lifecycle projects and enhancements, optimizing deployment pipelines and enforcing compliance.
  • Skilled in identifying process improvement opportunities within endpoint management, leading initiatives that reduce operational overhead, improve incident response, and elevate system performance.

Nice To Haves

  • CompTIA Security+ preferred
  • Expertise in automated OS deployment, system optimization, and troubleshooting across macOS and Windows platforms.

Responsibilities

  • Manages the organization's endpoint security program.
  • Secures and maintains the enterprise endpoint and mobile device fleet through our Endpoint Protection Platform (EPP).
  • Drives standardization of endpoint configurations, security hardening, vulnerability management, and advanced Endpoint Detection and Response (EDR) solutions.
  • Collaborates with cross-functional teams to develop security policies.
  • Automates routine management tasks.
  • Supports physical and virtual endpoint infrastructure.
  • Researches, evaluates, and recommends software and hardware products to maintain a stable and consistent end-user environment.
  • Designs and implements advanced endpoint management solutions, optimizing processes and systems for the entire endpoint fleet.
  • Serves as a project technical lead, providing tasks and technical leadership and executing plans and implementing technical solution projects to refresh supported systems.
  • Designs and implements endpoint architecture, network integration, and backend infrastructure to support endpoint deployment and management.
  • Automates complex, organization-wide tasks and integrates endpoint systems with other core IT systems (e.g., networking, identity management).
  • Serves as an expert across multiple operating systems (Windows, macOS) and responsible for ensuring seamless integration of devices across diverse platforms.
  • Performs other duties as assigned.
  • Complies with regulatory compliance and assigned training requirements including but not limited to BSA regulations corresponding to their specific job duties.

Benefits

  • Diverse, Equitable, and Inclusive Hiring commitment
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service