Principal Endpoint Architect

MACOM Technology Solutions Holdings, Inc.Lowell, MA
$138,000 - $209,000

About The Position

The Principal Endpoint Architect is responsible for the design, deployment, configuration, and ongoing health of MACOM's global endpoint estate, including physical workstations, shared devices, virtual desktops, servers and other devices. This role sits within the End User Support team and owns the full lifecycle of endpoint management tooling — Microsoft Intune, SCCM, Azure Virtual Desktop (AVD), PDQ, Group Policy, ServiceNow, etc.— ensuring devices are secure, compliant, patched, and performing well for the global user base.

Requirements

  • Strong troubleshooting across Windows endpoint ecosystem.
  • Experience operating in co-managed (SCCM + Intune) environment.
  • Ability to work cross-functionally with Infrastructure, Security, and Service Desk teams.
  • Proven ability to modernize endpoint management.
  • Brings a continuous improvement mindset, simplifying legacy processes and reducing operational friction.
  • Anticipates downstream operational and security impacts when introducing new tools, policies, or platform changes.
  • Strong ownership mindset over endpoint lifecycle and platform health.
  • Maintains high standards for execution, documentation, change control, and operational resilience.
  • Comfortable operating in regulated, security-conscious environments (CMMC, NIST, etc.)
  • Balances user experience, security, and supportability when making endpoint architecture decisions.
  • Capable of balancing operational stability with transformation initiatives.
  • U.S. Persons (U.S. citizens, U.S. nationals, lawful permanent residents, or individuals granted asylum or refugee status) will be considered for this position.

Responsibilities

  • Own global endpoint controls for encryption, local admin strategy, device control, conditional access readiness, and compliance reporting.
  • Establish device build standards, hardening baselines, and lifecycle policies.
  • Design, implement, and manage Intune configuration profiles and compliance policies across physical and virtual endpoints.
  • Administer the enterprise application catalog, including AppLocker and WDAC policy enforcement.
  • Lead cloud endpoint transformation initiatives, including Autopilot rollout and SCCM co-management.
  • Partner with Security on endpoint policy enforcement and compliance.
  • Support remediation of vulnerabilities identified via enterprise scanning tools.
  • Contribute to overall endpoint security posture and Zero Trust initiatives.

Benefits

  • Health, dental, and vision insurance.
  • Employer-sponsored 401(k) plan.
  • Paid time off.
  • Professional development opportunities.
  • Restricted stock unit (RSU) awards
  • Cash bonuses
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service