Sr. Endpoint Management Engineer

Cypress HCM

Denver (CO)

Hybrid

USD 76,000 - 85,000

Part time

4 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Cypress HCM is seeking an Endpoint Engineer to support a large enterprise desktop environment. This role focuses on reliable, secure, and standardized endpoint services, with automation, patching, device lifecycle management, and cloud transition initiatives.

The candidate will hands-on manage Windows devices, Intune, SCCM, Autopilot, Entra ID, and PowerShell automation, collaborate with security and IT teams, and travel up to 25% to regional locations as needed.

Qualifications

  • Significant hands-on experience supporting Microsoft Configuration Manager (SCCM) in a large/complex org.
  • Strong working knowledge of Microsoft Intune, Active Directory and Group Policy.
  • Experience managing Windows 10/11 deployments, imaging, and device lifecycle activities.
  • Experience with enterprise app deployment, packaging, patching, and vulnerability remediation.
  • Strong PowerShell capabilities to automate repetitive admin tasks.
  • Understanding of endpoint compliance, governance, and reporting.
  • Solid knowledge of endpoint security principles and secure configuration practices.
  • Strong troubleshooting and analytical skills with independent problem solving.

Responsibilities

  • Engineer, administer, and maintain enterprise Windows desktop and laptop environments.
  • Manage devices throughout their lifecycle, including provisioning, deployment, configuration, upgrades, refreshes, and retirement.
  • Administer and optimize endpoint management technologies including Microsoft Intune, SCCM, Windows Autopilot, and Microsoft Entra ID.
  • Package, test, and distribute applications and software across enterprise environments.
  • Create and maintain PowerShell scripts and automation to improve deployment, remediation, and administrative processes.
  • Coordinate endpoint patching activities and support vulnerability remediation and compliance initiatives.
  • Develop and maintain operational reporting related to endpoint health, compliance, software deployment, and management activities.
  • Act as a senior escalation point for complex endpoint issues, including troubleshooting, root cause investigation, and resolution of Tier 3 incidents.
  • Partner with cybersecurity teams to identify and address endpoint security risks and strengthen device compliance.
  • Support initiatives designed to modernize endpoint management and transition legacy processes toward cloud-based solutions.
  • Work across IT teams, third-party providers, and business groups to deliver dependable and secure workplace technology services.
  • Participate in onsite support or travel to regional locations when necessary, with travel up to ~25%.

Skills

Intune
SCCM/ConfigMgr
PowerShell
Active Directory
Group Policy
Troubleshooting

Education

Bachelor's degree in IT/CS/Eng

Tools

Windows Autopilot
SCCM (ConfigMgr)
Intune Admin Console

Job description

Endpoint Engineer

6-month contract

Location: Denver, CO (hybrid 3 days onsite)

Pay: $55 - $62/hr (Compensation can vary depending on experience)

General Overview

We are seeking an Endpoint Management Engineer to help support and evolve a large enterprise desktop environment. This individual will play a key role in maintaining reliable, secure, and standardized endpoint services while contributing to automation, software development, patching, device lifecycle management, and ongoing workplace technology initiatives. The ideal candidate will be someone with deep hands‑on experience in the Microsoft endpoint ecosystem who can operate effectively in a complex enterprise environment. This person should be comfortable troubleshooting difficult technical issues independently, improving existing processes, and working closely with infrastructure, security, and IT teams.

Responsibilities
  • Engineer, administer, and maintain enterprise Windows desktop and laptop environments.
  • Manage devices throughout their lifecycle, including provisioning, deployment, configuration, upgrades, refreshes, and retirement.
  • Administer and optimize endpoint management technologies including Microsoft Intune, Conjuration Manager (SCCM), Windows Autopilot, and Microsoft Entra ID.
  • Package, test, and distribute applications and software across enterprise environments.
  • Create and maintain PowerShell scripts and automation to improve deployment, remediation, and administrative processes.
  • Coordinate endpoint patching activities and support vulnerability remediation and compliance initiatives.
  • Develop and maintain operational reporting related to endpoing health, compliance, software deployment, and management activities.
  • Act as a senior escalation point for complex endpoint issues, including troubleshooting, root cause investigation, and resolution of Tier 3 incidents.
  • Partner with cybersecurity teams to identify and address endpoint security risks and strengthen device compliance.
  • Support initiatives designed to modernize endpoint management and transition legacy processes toward cloud-based solutions.
  • Work across IT teams, third-party providers, and business groups to deliver dependable and secure workplace technology services.
  • Participate in onsite support or travel to regional locations when necessary, with travel expected to be up to approximately 25%.
Requirements
  • Bachelor's degree in Information Technology, Computer Science, Engineering, Business, or a related field, or equivalent professional experience.
  • Significant hands‑on experience supporting Microsoft Configuration Manager (SCCM) with a large or complex organization.
  • Strong working knowledge of Microsoft Intune, Active Directory and Group Policy.
  • Demonstrated experience managing Windows 10/11 deployments, upgrades, imaging, and device lifecycle activities.
  • Experience with enterprise application deployment, packaging, patching, and vulnerability remediation.
  • Strong PowerShell capabilities, including the ability to automate repetitive administration and remediation tasks.
  • Understanding of endpoint compliance, operational controls, reporting, and governance.
  • Solid knowledge of endpoint security principles and secure configuration practices.
  • Strong troubleshooting and analytical skills with the ability to work through complex technical problems independently.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Desktop Engineer
Desktop Engineer

firstPRO, Inc • Bryn Mawr (PA)

On-site
USD 75,768 - 82,656
Senior Endpoint Engineer
Senior Endpoint Engineer

Dunhill Professional Search & Government Solutions • Washington

Hybrid
USD 150,000 - 175,000
Endpoint Engineer / DHS Desktop Support Services
Endpoint Engineer / DHS Desktop Support Services

Jobgether SRL • Washington

Hybrid
USD 135,000 - 150,000
Salary range $135,000--$150,000 per yr
Sr. Endpoint Engineer
Sr. Endpoint Engineer

MSM Technology • Arlington (VA)

On-site
USD 100,000 - 130,000
Senior Endpoint Engineer
Senior Endpoint Engineer

Kwik Trip, Inc. • La Crosse (WI)

On-site
USD 90,000 - 120,000
Endpoint Systems Administrator
Endpoint Systems Administrator

Hansen Talent Group • Columbia (SC)

Hybrid
USD 65,000 - 90,000
Hybrid work schedule
Senior Endpoint Engineer
Senior Endpoint Engineer

ZENITH INFOTEK LLC • North Carolina

Hybrid
USD 120,000 - 170,000
Endpoint Engineer / DHS Desktop Support Services
Endpoint Engineer / DHS Desktop Support Services

Jobgether SRL • United States

Hybrid
USD 135,000 - 150,000
Salary: $135,000–$150,000 per year
Primarily remote work
Hybrid meetings in DMV area
Senior Endpoint Engineer
Senior Endpoint Engineer

ZENITH INFOTEK LLC • Alabama

Hybrid
USD 110,000 - 160,000
Senior Endpoint Engineer (Applications)
Senior Endpoint Engineer (Applications)

The AES Corporation • Indianapolis (IN)

On-site
USD 80,000 - 120,000