Demo

Senior Endpoint Engineer

Blackstone Talent Group
Aurora, CO Full Time
POSTED ON 3/31/2026
AVAILABLE BEFORE 4/29/2026

Summary

The Windows Systems Administrator is a technical lead responsible for the architecture, security, and continuous optimization of the district’s Windows endpoint infrastructure. Reporting to the Director of Innovative Technology, this role serves as the primary engineer for the district’s Microsoft Endpoint Configuration Manager (MECM/SCCM) environment. The Administrator ensures enterprise-wide stability by designing robust patching workflows, managing complex software deployments, and maintaining the overall health of the Windows ecosystem.


Configuration & Infrastructure Maintenance (40%)

  • Lead infrastructure engineering for MECM/SCCM by designing, implementing, and scaling thehierarchy to support district-wide workstation services.
  • Drive system automation by developing and maintaining advanced PowerShell scripts tostreamline administration, automate configuration management, and remediate vulnerabilities.
  • Own vulnerability management and patch compliance by orchestrating Windows OS andthird-party patching to meet cybersecurity standards and achieve full compliance.
  • Establish and enforce configuration, compliance, and escalation support by hardening systemswith GPOs/MECM compliance baselines and serving as the subject matter expert for advancedtroubleshooting (kernel, deployment failures, registry-level issues).


Patching & Application Deployment (35%)

  • Improve and manage the patching lifecycle for Windows Servers and workstations, includingmaintaining the patching process/cycle and actively verifying and applying security updates.
  • Design, build, and execute automated OS deployment (OSD) imaging sequences to supportdistrict-wide workstation provisioning and reimaging.
  • Use Structured Query Language (SQL) and database querying to support reporting,troubleshooting, automation, and operational decision-making.
  • Manage application packaging and software deployment pipelines to deliver applicationsefficiently with minimal disruption to end users.


Documentation & Project Support (15%)

  • Develop and maintain documentation related to project, operational, incident, and problemmanagement.
  • Develop and maintain documentation for MECM/SCCM procedures and system configurations.
  • Analyze and document business processes to facilitate the evaluation of software updates,changes, and user enhancement requests.
  • Assist with the Enterprise Product Evaluation (EPE) for new hardware introduction andsoftware integrations.


Service & Communication (5%)

  • Manage incidents, service requests, and escalations by logging requests/support calls,troubleshooting, and escalating unresolved issues to vendors as needed.
  • Collaborate and communicate with end-users, teammates, and internal/external customers tounderstand district needs, provide solutions, and gather feedback.
  • Coordinate and oversee monthly downtime maintenance to ensure planned work is executedsmoothly, communicated clearly, and documented appropriately.
  • Partner with stakeholders to align process improvements, upgrades, and daily support workwith district goals—especially student growth and achievement.


Education and Training

  • Bachelor’s degree in Computer Science, Information Technology, or a related field (or equivalentprofessional experience).


Experience

  • Five years of experience in Windows Systems Administration, with three years specificallyfocused on MECM (SCCM) architecture and automated patch management.
  • Required experience includes two years of administering Microsoft Intune and one year ofexperience in Information Technology Infrastructure Library (ITIL) Change Management.
  • Expertise needed in Advanced knowledge of PowerShell and scripting, and experiencemanaging on-prem Active Directory, Azure Active Directory, and Azure AD Connect.
  • Scripting Proficiency: Advanced experience using PowerShell to manage Active Directoryobjects, manipulate the registry, and automate software deployments.
  • Networking Knowledge: Solid understanding of TCP/IP, DNS, DHCP, and PXE boot processes asthey relate to imaging and endpoint communication.


Skills, Knowledge, and Competencies

  • Ability to promote and follow district policies and building and department procedures.
  • Ability to communicate, interact, and work effectively and cooperatively with people fromdiverse backgrounds.
  • Ability to recognize the importance of safety in the workplace, follow safety rules, practice safework habits, utilize appropriate safety equipment, and report unsafe conditions to theappropriate administrator.
  • Strong oral and written communication skills. Strong Analytical, Multitasking, Organizational,and Time management skills.
  • Advanced knowledge of PowerShell and scripting (development and optimization).
  • Knowledge of technical change management best practices.
  • Solid background operating user, server, device management systems, network monitoringapplications, and operating centralized print management.
  • Deep knowledge and understanding of datacenter operations.
  • Strong customer service orientation and ability to continuously learn as the product evolves.
  • Ability to quickly identify client issues and conduct in-depth diagnostics on Microsoft Intuneproducts and the Microsoft Endpoint Configuration Manager program.
  • Experience with Active Directory Group Policy Object (GPO), including configuration andsecurity for Windows OS.
  • Experience in configuring and managing Multifactor Authentication (MFA) and conditionalaccess policies, managing Group Policy for an enterprise environment.
  • Versed in the management of System Center Configuration Manager (SCCM/MECM), includingimage creation and deployment of Windows OS, configuring, deploying, and troubleshootingIntune policies.

Salary : $100,000 - $130,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Senior Endpoint Engineer?

Sign up to receive alerts about other jobs on the Senior Endpoint Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$110,730 - $135,754
Income Estimation: 
$128,617 - $162,576
Income Estimation: 
$117,033 - $148,289
Income Estimation: 
$83,502 - $107,152
Income Estimation: 
$104,896 - $133,785
Income Estimation: 
$123,198 - $153,566
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Blackstone Talent Group

  • Blackstone Talent Group Colorado, CO
  • Job Description Blackstone Talent Group, an award-winning technology consulting and talent agency, is seeking a Junior Cyber Tools and Patching Architect t... more
  • 11 Days Ago

  • Blackstone Talent Group San Francisco, CA
  • Job Description Blackstone Talent Group, an award-winning technology consulting and talent agency is seeking a Media Testing Specialist to join our Client'... more
  • 11 Days Ago

  • Blackstone Talent Group Colorado, CO
  • Job Description Blackstone Talent Group, an award-winning technology consulting and talent agency, is seeking a System Test Engineer to join our Client's t... more
  • 12 Days Ago

  • Blackstone Talent Group Austin, TX
  • Associate Product Manager - Operational Products & Automation Position Details: Location: Austin, Tx (100% Remote) Type : Contract US Citizen, Green Card, ... more
  • 3 Days Ago


Not the job you're looking for? Here are some other Senior Endpoint Engineer jobs in the Aurora, CO area that may be a better fit.

  • Global Medical Response Greenwood, CO
  • Job Description Cybersecurity Endpoint Engineer Greenwood Village, CO. Hybrid $129000K-$132000K Range Why Choose GMR? Global Medical Response (GMR) and its... more
  • 1 Day Ago

  • Janus Henderson Investors Denver, CO
  • Why work for us? A career at Janus Henderson is more than a job, it’s about investing in a brighter future together . Our Mission at Janus Henderson is to ... more
  • 5 Days Ago

AI Assistant is available now!

Feel free to start your new journey!