Enable job alerts via email!

Platform Configuration Engineer (Endpoints)

CACI International Inc.

Virginia (MN)

Remote

USD 89,000 - 188,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company is seeking a Platform Configuration Engineer (Endpoints) to support the US Coast Guard. This role involves configuring and maintaining secure endpoint baselines using Microsoft technologies. The ideal candidate will have experience in cybersecurity frameworks and strong communication skills. Flexible remote work options and opportunities for professional development are offered.

Benefits

Flexible remote work options
Funding for certifications
Collaborative culture
Access to cutting-edge technologies

Qualifications

  • 3+ years administering Microsoft Intune, MECM/SCCM, and Azure AD conditional access.
  • Hands-on experience implementing STIGs or CIS Benchmarks for Windows endpoints.

Responsibilities

  • Design, deploy, and maintain secure Windows and mobile device baselines.
  • Collaborate with USCG ISSMs/ISSOs to implement Zero Trust Architecture controls.
  • Monitor endpoint compliance using Microsoft Defender for Endpoint.

Skills

Microsoft Intune
PowerShell
Azure AD
Zero Trust
Communication

Education

Bachelor’s degree in Cybersecurity
Bachelor’s degree in Computer Science
Bachelor’s degree in Information Technology

Tools

MECM
Microsoft Defender for Endpoint
Microsoft Graph API
Azure CLI

Job description

Platform Configuration Engineer (Endpoints)

Job Category: Engineering
Time Type: Full time
Minimum Clearance Required to Start: Secret
Employee Type: Regular
Percentage of Travel Required: None
Type of Travel: None

The Opportunity:

The Department of Homeland Security (DHS) Continuous Diagnostics and Mitigation (CDM) Program is seeking a Platform Configuration Engineer (Endpoints) with an Azure focus to support the United States Coast Guard (USCG). The engineer will be responsible for configuring, managing, and maintaining secure endpoint baselines across the USCG enterprise environment, leveraging Microsoft Intune, Microsoft Endpoint Configuration Manager (MECM), and Azure Active Directory (Azure AD). This role is critical in enforcing endpoint security, supporting USCG Zero Trust initiatives, and integrating compliance controls aligned with federal cybersecurity frameworks (e.g., NIST 800‑53, FedRAMP) and USCG Risk Management Framework (RMF).

What We Offer:
  • Flexible remote work options to support work‑life balance.
  • Funding for certifications and professional development.
  • Opportunity to work on mission‑critical cybersecurity initiatives in support of USCG operations.
  • Collaborative culture emphasizing innovation, continuous improvement, and federal service excellence.
  • Access to cutting‑edge Microsoft cloud and security technologies.

Location: Remote (U.S. Based)

Responsibilities:
  1. Design, deploy, and maintain secure Windows and mobile device baselines in Intune, MECM, and Azure AD for the USCG enterprise.
  2. Develop configuration profiles, compliance policies, and conditional access rules that meet USCG and DoD security requirements.
  3. Collaborate with USCG ISSMs/ISSOs to implement Zero Trust Architecture controls across all managed endpoints.
  4. Monitor endpoint compliance using Microsoft Defender for Endpoint, Azure Compliance Manager, and USCG CDM dashboards; remediate deviations.
  5. Automate configuration deployment and reporting via PowerShell, Microsoft Graph API, and Azure Automation Runbooks.
  6. Create and maintain technical documentation, including baseline build guides, standard operating procedures, and USCG RMF artifacts.
  7. Integrate endpoint security controls into Azure Virtual Desktop (AVD) and hybrid environments leveraged by USCG missions.
  8. Ensure endpoint configurations comply with USCG, DHS, and DoD guidelines (STIGs, CIS Benchmarks, NIST 800‑53).
  9. Troubleshoot deployment issues, collaborate with USCG incident response teams, and provide root‑cause analysis.
  10. Track emerging Microsoft 365 and Azure features that impact device management; coordinate updates and change approvals through USCG processes.
Qualifications:

Required:

  • 3+ years administering Microsoft Intune, MECM/SCCM, and Azure AD conditional access.
  • Hands‑on experience implementing STIGs or CIS Benchmarks for Windows endpoints.
  • Proficiency with PowerShell scripting and automation for policy deployment and compliance reporting.
  • Experience supporting Zero Trust endpoint controls and integrating Microsoft Defender for Endpoint.
  • Working knowledge of federal cybersecurity frameworks (NIST 800‑53, NIST 800‑171, FedRAMP) and USCG RMF.
  • Excellent communication skills for interfacing with USCG cybersecurity stakeholders, engineers, and leadership.

Preferred Qualifications:

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related discipline.
  • Microsoft certifications such as MD‑102 (Endpoint Administrator), AZ‑500 (Security Engineer), or SC‑300 (Identity and Access Administrator).
  • Experience integrating device compliance with Azure Virtual Desktop (AVD) in a federal environment.
  • Familiarity with Microsoft Graph API, Azure CLI, and JSON configuration templates.
  • Hands‑on experience with Defender for Endpoint EDR and threat analytics.
  • Prior experience supporting USCG, DHS, or other federal cybersecurity compliance programs.
  • Must possess an active Secret clearance.
What You Can Expect:

A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.

An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a flexible time off benefit and access to robust learning resources to make your ambitions a reality.

A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.

Your potential is limitless. So is ours.

Learn more about CACI here.

Pay Range

The proposed salary range for this position is: $89,500 - $188,000. Factors influencing final salary include geographic location, relevant experience, education, certifications, and other considerations. We offer comprehensive benefits supporting employees and their families, including healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.

Since this position can be worked in more than one location, the range shown is the national average for the position.

We are an Equal Opportunity Employer. All qualified applicants will receive consideration without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, veteran status, or other protected characteristics.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Platform Configuration Engineer (Endpoints)

CACI International Inc

Virginia

Remote

USD 89,000 - 188,000

Yesterday
Be an early applicant

Platform Configuration Engineer (Endpoints)

CACI International

Remote

USD 89,000 - 188,000

2 days ago
Be an early applicant

Platform Configuration Engineer (Endpoints)

CACI

Virginia

Hybrid

USD 89,000 - 188,000

2 days ago
Be an early applicant

[Hiring] Senior Client Platform Engineer @Ramp

Ramp

Remote

USD 80,000 - 130,000

25 days ago

Platform Engineer

Quest Software

Philadelphia

Remote

USD 80,000 - 120,000

30+ days ago

Platform Engineer

One Identity

Philadelphia

Remote

USD 80,000 - 120,000

30+ days ago