Windows Systems Engineer

LiveRamp

San Francisco (CA)

On-site

USD 120,000 - 160,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

LiveRamp is seeking a Windows Platform Engineer to own the Windows client and server stack, building and maintaining images, baselines, and security controls. You will automate lifecycle tasks and integrate Intune, Azure AD, and on‑prem AD where applicable, ensuring reliability and security at scale.

You will partner with Security and IT teams to deploy monitoring, incident response, and runbooks, while driving modern management and automation across Windows environments.

Qualifications

  • Minimum five years in Windows systems engineering, administration, or IT operations in enterprise environments.
  • Strong experience with Windows client and server management, Autopilot/OSD and group policies.
  • Proficiency deploying security tools (CrowdStrike, Netskope) and encryption solutions.
  • Solid scripting skills (PowerShell, Python) for automation and lifecycle tasks.

Responsibilities

  • Own the Windows client and server platform, including images, baselines, and security policies.
  • Design, implement, and maintain standardized Windows build images and gold images.
  • Administer Windows Server roles (file/print/app/infrastructure) and patching.
  • Manage Intune, Workspace ONE, and policy configurations for endpoints.
  • Collaborate with Security to deploy security tooling and ensure compliance baselines.
  • Automate onboarding/offboarding, group policy, software deployment, and patching.
  • Work with Azure AD and on-prem AD for identity, access, and SSO strategies.
  • Provide Tier 3–4 incident support and develop runbooks for self-service.

Skills

Windows systems engineering
Automation & scripting
Security & compliance
Azure AD & on-prem AD
Endpoint management

Tools

Intune
Workspace ONE
Configuration Manager
Autopilot
PowerShell
Python

Job description

LiveRamp is shaping the future of responsible data collaboration between the world’s leading brands, retailers, financial services providers, and healthcare innovators. As consumers embrace new AI-driven experiences, the LiveRamp data collaboration network exponentially expands the breadth and accuracy of the data on which marketing AI capabilities operate, powering deeper customer insight and measurable performance on a global scale. LiveRamp is headquartered in San Francisco, California, with offices worldwide. Learn more at LiveRamp.com.

You will
Windows platform engineering & administration
  • Own the Windows client and supporting server platform for corporate IT, including standard images, configuration baselines, and security policies.

  • Design, implement, and maintain standardized Windows build images and gold images (e.g., through Intune, Autopilot, Configuration Manager, or similar tools).

  • Administer Windows Server instances supporting BT services (e.g., file, print, app, and infrastructure services) including patching, troubleshooting, and performance tuning.

  • Ensure Windows endpoints and servers meet LiveRamp’s security standards, including encryption, endpoint protection, and compliance baselines.

Endpoint management (Windows-focused)
  • Administer and optimize Microsoft Intune, Workspace ONE, or similar tools for Windows endpoint management:

    • Device enrollment and compliance

    • Configuration profiles and policies

    • Software deployment and updates

  • Implement and maintain Windows Update and patch management strategies for clients and servers, balancing security and stability.

  • Collaborate with Security to deploy and manage CrowdStrike, Netskope, and other security tools on Windows endpoints and servers.

  • Maintain accurate, automated inventory of Windows devices and installed software, supporting license management and lifecycle planning.

Automation & integration
  • Identify opportunities to automate Windows lifecycle tasks (onboarding, offboarding, group policy, software deployment, access changes, patching).

  • Build and maintain automation using PowerShell, Python, or other scripting languages targeting Windows environments.

  • Utilize REST APIs, Graph API, and integration platforms to connect Intune, Azure AD, on-prem AD (if applicable), ITSM, and asset management systems.

  • Adopt configuration-as-code and infrastructure-as-code patterns (e.g., Git-based policy definitions, scripted server builds, policy as code).

Identity, directory, and access (Windows ecosystem)
  • Work with Azure Active Directory and/or on-prem Active Directory to manage users, groups, devices, and policies.

  • Support and optimize Single Sign-On (SSO) and conditional access policies in partnership with Security and Identity teams.

  • Troubleshoot authentication and authorization issues impacting Windows users and services.

Incident response, troubleshooting & escalation
  • Provide Tier 3–4 support for complex Windows-related incidents (OS, hardware, drivers, group policy, app compatibility, performance, and security).

  • Troubleshoot issues across the Windows stack: OS, hardware, endpoint management, VPN, Wi‑Fi, identity, and line‑of‑business apps.

  • Own complex incidents and problems end‑to‑end, driving root cause analysis and sustainable fixes through configuration and automation.

  • Document troubleshooting steps, known issues, and runbooks to enable support teams and self‑service.

Optimize & innovate
  • Continually assess the Windows user experience and platform health, leveraging monitoring and metrics to prioritize improvements.

  • Propose and implement enhancements in areas like Autopilot, app deployment strategies, self‑service, device performance, and security posture.

  • Evaluate new features in Windows, Intune, Azure AD, and related tools, piloting changes and rolling them out safely at scale.

Educate & enable
  • Provide guidance to users and BT teammates on Windows best practices, features, and self‑service tools.

  • Develop and deliver training, workshops, and documentation focused on Windows usage, troubleshooting, and self‑help.

  • Mentor junior engineers and support staff in Windows systems engineering and scripting.

Your team will

You’ll be part of the Business Technology – Client Services team, a globally distributed group responsible for:

  • Delivering an exceptional desktop computer experience for all LiveRampers.

  • Partnering with Security, Network Engineering, and other BT teams to keep our environment secure, performant, and reliable.

  • Administering and automating key business applications and services used across the company.

  • Enabling leaders and teams to move faster by removing technology friction and operational toil wherever it appears.

About you (Required Qualifications)

You possess:

  • An insatiable need to help people and feel the satisfaction of delighting your customers, even while your primary focus is on systems engineering and automation.

  • Incredible patience and empathy when working with users and teams who may be less technically deep, and the ability to explain Windows and infrastructure concepts clearly.

  • At least 5 years of experience in Windows systems engineering, systems administration, or IT operations, with significant hands‑on responsibility for Windows platforms in an enterprise environment.

  • Strong experience administering Windows client environments:

    • Standard images and Autopilot/OSD

    • Group Policy (or equivalent modern management policies)

    • Application deployment and support

  • Solid experience administering Windows Server, including roles such as file/print, application, and infrastructure services.

  • Deep proficiency with Microsoft Intune, Workspace ONE, Configuration Manager, or similar tools for Windows device management.

  • Strong PowerShell skills (and optionally Python) for automation of Windows configuration, reporting, and lifecycle tasks.

  • Experience deploying and operating security tools on Windows (e.g., CrowdStrike, Netskope, disk encryption, VPN, certificates).

  • Experience designing, implementing, and maintaining automations and integrations across Windows, Azure AD, on‑prem AD (if applicable), ITSM, and asset systems.

  • Experience with Google Workspace (gSuite) and Microsoft 365 administration.

  • A solid understanding of networking concepts (DNS, DHCP, VPN, Wi‑Fi, routing, firewalls) as they relate to Windows clients and servers.

  • Experience with monitoring, logging, and alerting for Windows endpoints and servers, and using data to drive reliability and performance improvements.

  • Experience with AI tools or modern automation platforms in IT operations is a plus.

  • An ISO, ITIL, or similar certification, or a strong desire to obtain them.

Preferred skills
  • Experience working in a fast‑paced, high‑growth, or global technology company.

  • Experience with hybrid identity models (Azure AD + on‑prem AD) and modern management transitions.

  • Prior experience contributing to or leading Windows migration or modernization projects (e.g., Windows 10 to 11, on‑prem to Intune).

  • Comfort working across multiple time zones and collaborating with global, cross‑functional teams.

  • Experience contributing to or authoring documentation, runbooks, automation playbooks, and user‑facing help content.

  • Experience with infrastructure‑as‑code or configuration‑as‑code practices (e.g., Git-backed definitions for policies and scripts).

We use automated decision systems (ADS) as part of our recruitment and hiring process. If you require an accommodation or believe that the use of an ADS may create a barrier to your application or participation in the hiring process due to a disability or other protected characteristic, please let us know. We are committed to providing reasonable accommodations and ensuring an equitable hiring experience for all candidates.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Ralph Lauren Sr Windows Engineer
Ralph Lauren Sr Windows Engineer

BoF Careers • Nutley (NJ)

On-site
USD 120,000 - 180,000
Windows Desktop Engineer
Windows Desktop Engineer

Phyton Talent Advisors • Jersey City (NJ)

On-site
USD 110,000 - 140,000
Windows Engineering Manager
Windows Engineering Manager

Fox Point Recruitment LLC • Plano (TX)

Hybrid
USD 155,000 - 209,000
Ralph Lauren Sr Windows Engineer
Ralph Lauren Sr Windows Engineer

Ralph Lauren • Nutley (NJ)

On-site
USD 140,000 - 190,000
Sr. Systems Engineer
Sr. Systems Engineer

Applied Digital • Ellendale (ND)

On-site
USD 90,000 - 120,000
Windows System Engineer
Windows System Engineer

ExecuSource, Inc. • Atlanta (GA), Northern (KY)

Hybrid
USD 90,000 - 120,000
Windows Engineering Manager
Windows Engineering Manager

Cephas Consultancy Services Private Limited • Plano (TX)

On-site
USD 140,000 - 200,000
Director, Enterprise Platform Engineering (Mac & Windows Endpoints)
Director, Enterprise Platform Engineering (Mac & Windows Endpoints)

Vanguard • Dallas (TX)

On-site
USD 130,000 - 180,000
Windows System Engineer
Windows System Engineer

ExecuSource • Sandy Springs (GA)

On-site
USD 80,000 - 120,000
Infrastructure Engineer
Infrastructure Engineer

Brooksource • Detroit (MI)

On-site
USD 110,000 - 150,000
Comprehensive health benefits
Weekly paychecks
Collaborative work environment