The Aspen Institute-posted 7 months ago
$90,000 - $100,000/Yr
Full-time • Mid Level
Aspen, CO
Religious, Grantmaking, Civic, Professional, and Similar Organizations

The Endpoint Systems Engineer is responsible for the engineering, operations and maintenance of end-user workstations, mobile devices, and other endpoint hardware/software required to support the Aspen Institute's mission, business objectives, and internal values. This position has a specific focus on related security systems administration, including endpoint detection and response, antimalware defense, vulnerability management, and endpoint device hardening. Additional responsibilities include support for workplace technologies including remote access, printing, and network audio/video systems. Direct technical responsibilities include overall lifecycle management of Windows, Mac, iOS and Android operating systems, end-user device hardware, inventory/asset management, and related device management systems, endpoint device security and antivirus/antimalware protection, vulnerability scanning and patching. Secondary responsibilities include management of core end-user desktop/mobile software (MSOffice, Google Workspace, Chrome, Zoom, Slack, Adobe, etc), print queue management software and printer hardware, videoconferencing software and conference room hardware. Additional responsibilities include procurement, hardware device inventory and reconciliation routines, software/mobile app license enrollment/management, and wireless account administration as needed. This role will additionally take ownership of escalated/appropriate incident tickets and service requests and work with end-users and ITS staff for resolution/fulfillment. This position will be expected to provide technology support for special events, festivals, and other activities. Additionally, the position will participate in on-call support rotations for non-business hours.

  • Engineering, administration, and overall lifecycle management of end-user computers and mobile devices.
  • Management of identity, security, access, configuration policies, updates, and app distribution for end-user workstations, mobile devices, or other endpoints.
  • Administration and engineering of device management systems including Microsoft Intune, JAMF, Windows 365, Windows Autopilot, Microsoft Defender for Endpoint, and Azure Active Directory (Azure AD).
  • Administration and engineering of endpoint security systems including Crowdstrike Falcon, Rapid7 Vulnerability Management and Detection & Response.
  • Management of corporate mobile accounts. Service as primary contact for employee Bring-Your-Own-Device programs.
  • Participation in IT Asset Management activities including inventory audits and reporting.
  • Development of policy, technical standards, and procedures for both end-users and IT support colleagues.
  • Participation in data protection, system performance and capacity analysis, system instrumentation/management, and change management activities.
  • Completion of assigned incidents and service requests, ensuring that all are resolved promptly and efficiently with a high degree of customer satisfaction.
  • Participation in Tier 3 support to the Help Desk, including training and mentoring as appropriate.
  • Participation in problem management, identifying trends and coordinating prompt, efficient, and properly tested responses, drawing from resources across the department as needed.
  • Participation in change management, submitting requests through the approval process and leading/participating/supporting the execution of approved changes.
  • Participation in security activities including incident response, business continuity, and disaster recovery.
  • Participation in on-call rotations to provide off-hours support of the Institute's systems.
  • Participation in technical and related activities in support of special events and festivals.
  • At least five years' experience with integrating and supporting Apple, Microsoft, and Android products in a heterogeneous enterprise environment, or the equivalent.
  • In-depth knowledge of Windows, OS X, iOS, Android operating systems.
  • Working knowledge of Microsoft Office desktop applications and the Microsoft 365 and Google Workspace cloud environments and of desktop/mobile communication applications including Zoom, Slack, and Microsoft Teams.
  • Strong knowledge of Microsoft Intune, Windows 365, Windows Autopilot, Microsoft Defender for Endpoint, and Azure Active Directory (Azure AD), part of Microsoft Entra.
  • Knowledge of JAMF Pro, JAMF Connect, and general Mac desktop support via shell scripting and command line.
  • Strong knowledge of endpoint security systems including Crowdstrike Falcon and Rapid7 Insight Detection & Response.
  • Outstanding customer service and communication skills.
  • Curiosity and willingness to learn.
  • Outstanding troubleshooting and problem-solving skills.
  • Broad knowledge of technology industry news, emerging trends, current security threats.
  • Excellent discipline/adherence to operating procedures and published knowledge base resources, as well as corporate and technology policy/practice.
  • Health benefits
  • Dental benefits
  • Vision benefits
  • Prescription benefits
  • Retirement benefits
  • Paid leave
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service