What are the responsibilities and job description for the Endpoint Engineer position at IMPACT Technology Recruiting?
This position is a contract-to-hire position. It requires four days per week onsite in Tempe, AZ.
Key Responsibilities
- Administer Jamf Pro for the macOS endpoint fleet, including device enrollment, configuration profiles, policy management, application deployment, and security baseline enforcement
- Manage PDQ Connect for Windows endpoint patching, software deployment, inventory collection, and remote remediation across distributed field and corporate environments
- Author and maintain PowerShell and command-line scripts for software packaging, application deployment, endpoint automation, and reporting workflows
- Package, test, and deploy software applications through PDQ Connect and Jamf Pro, ensuring consistent installation, validation, and rollback capability across the fleet
- Maintain endpoint configuration standards, security baselines, and compliance requirements aligned with Sundt IT and Cybersecurity policies, including CMMC Level 2 readiness considerations
- Troubleshoot endpoint management platform issues including failed deployments, agent health degradation, policy conflicts, and configuration drift
- Collaborate with the Service Desk, Hardware Technology, and Application Engineering teams on escalations involving endpoint configuration, software deployment failures, or platform-level issues
- Document endpoint engineering processes, packaging standards, deployment runbooks, and platform configurations in the team knowledge base
- Evaluate and recommend improvements to endpoint management tooling, automation opportunities, security posture, and operational efficiency
- Support endpoint lifecycle activities including imaging baselines, refresh cycles, decommissioning workflows, and asset disposition coordination
Knowledge:
- Three or more years administering Jamf Pro or equivalent enterprise macOS management platform.
- Demonstrated production experience with PDQ Connect, PDQ Deploy, or comparable Windows endpoint management platforms (SCCM/MECM, and Intune)
- Working knowledge of Windows 11 endpoint operating systems and macOS administration
- Understanding of software deployment lifecycle, application packaging, and software distribution mechanics across mixed-OS environments
- Familiarity with Active Directory, Microsoft Entra ID, and identity integration with endpoint management platforms
Skills:
- Proficient PowerShell scripting for endpoint automation, software deployment, system configuration, and operational reporting
- Command-line (CMD/Batch) scripting for Windows software packaging and silent installer wrapping
- Application packaging across multiple installer types: MSI, EXE, scripted installers, and macOS PKG
- Endpoint security configuration and policy authoring (compliance baselines, conditional access integration, FileVault, BitLocker)
- Troubleshooting and root-cause analysis on endpoint management platforms and the underlying operating systems
Abilities:
- Balances priorities across Mac and Windows fleets simultaneously
- Communicates effectively with both technical peers and non-technical end users
- Self-directs in a distributed corporate-and-field IT environment
- Documents work consistently and contributes to team knowledge management
Preferred
- Experience with Microsoft Intune
- Familiarity with patch management strategies including PatchMyPC, Microsoft Update for Business, or third-party patch automation
- Microsoft certifications: MD-102 (Endpoint Administrator), MS-102 (Microsoft 365 Administrator)
- Jamf Certified Tech or Jamf Certified Admin
- ITIL 4 Foundation or equivalent service management framework
Salary : $50 - $60