Mac Systems Engineer (JAMF / Apple Endpoint Management)

Hospital for Special SurgeryNew York, NY
Onsite

About The Position

The Mac Systems Engineer is responsible for the design, implementation, and ongoing management of Apple endpoint infrastructure, with a primary focus on Jamf Pro. This role ensures secure, scalable, and automated lifecycle management of macOS devices in an enterprise environment. The engineer partners with security, infrastructure, and end-user computing teams to deliver a seamless and compliant Apple user experience.

Requirements

  • 3–5+ years of experience managing macOS in an enterprise environment
  • Hands-on experience with Jamf Pro
  • Strong understanding of macOS architecture and administration
  • Experience with scripting (Bash, Python, or Zsh)
  • Experience with Apple device enrollment and management via Apple Business Manager
  • Knowledge of endpoint security controls and compliance frameworks

Nice To Haves

  • Experience integrating macOS with identity providers such as Microsoft Entra ID or Okta
  • Familiarity with MDM concepts and frameworks
  • Experience with enterprise tools (e.g., ServiceNow, Intune, endpoint security platforms)
  • JAMF certifications (e.g., JAMF 200/300/400/JAMF Pro)
  • Experience in regulated environments (e.g., healthcare, finance)

Responsibilities

  • Administer and maintain Jamf Pro for macOS device lifecycle management
  • Design and implement macOS provisioning workflows using zero-touch deployment (e.g., Apple Business Manager)
  • Develop and maintain configuration profiles, policies, and compliance baselines
  • Manage OS upgrades, patching, and application deployment
  • Develop automation using Bash, Python, or Zsh scripting
  • Create custom scripts for device configuration, remediation, and reporting
  • Integrate JAMF with enterprise tools (identity, security, ticketing systems)
  • Enforce endpoint security policies aligned with corporate standards
  • Implement disk encryption (FileVault), compliance monitoring, and remediation
  • Integrate macOS endpoints with identity providers (e.g., Microsoft Entra ID, Okta)
  • Support vulnerability remediation and audit readiness
  • Package, deploy, and maintain macOS applications
  • Maintain application catalog and self-service portal
  • Monitor and remediate patch compliance across macOS fleet
  • Partner with Service Desk and Desktop Engineering teams to support Mac users
  • Troubleshoot advanced macOS issues and escalations
  • Improve onboarding and device provisioning experience
  • Develop dashboards and reporting for compliance, inventory, and patch status
  • Track key metrics (device health, patch compliance, policy success rates)
  • Provide reporting for audits and leadership reviews

Benefits

  • Additional benefits consistent with the role
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service