Benefits: - 401(k) matching
- Bonus based on performance
- Competitive salary
- Dental insurance
- Health insurance
- Paid time off
- Parental leave
- Tuition assistance
POSITION OVERVIEWReporting to the Program Manager, the Systems Engineer shall perform Endpoint/identity/device-lifecycle engineering to reduce unauthorized discovery, lateral movement, credential misuse, and persistence. Designs/maintains secure macOS & Windows workstation images (on-site + VDI/remote); engineers patching/version control (Ivanti, KACE, Intune, GPO); supports Intune/Autopilot enrollment with passwordless auth & hardware keys (YubiKey, CAC); builds logging/telemetry into SIEM/EDR; runs assess12 recommend 12approve 12 implement 12 validate workflow; produces runbooks and KT. Excludes Tier 1 help desk.
REQUIRED QUALIFICATIONS- Active Top Secret Clearance
- Core (all J7 roles): 8 yrs IT/Endpoint Engineering/Cybersecurity;
- 6 yrs engineering (not help desk) in enterprise environments;
- Experience under formal change control/audit/security governance.
- Role-specific: Windows & macOS image build/automation/rollback/version control;
- VDI/EDR/auth/logging agent Integration; Ivanti/KACE patching; Intune/Autopilot/JAMF; passwordless & hardware-backed credentials; endpoint logging (Windows Event, macOS Unified Logs) into SIEM (e.g., MS Sentinel); forensic collection/audit readiness.
Preferred education:
- Bachelor's (IT/Cyber/related); substitutable by experience per COR.
Flexible work from home options available.
Compensation: $135,000.00 - $150,000.00 per year