ROLE OVERVIEW Rubrik needs a strong Endpoint Engineer to backfill support for Jamf-based deployments and scripting on its Palo Alto-based device fleet. The existing team has two resources in India but needs additional onsite support. The client is specifically looking for someone with true end-to-end ownership of deployment and configuration — a prior candidate was passed over for relying on an engineering team to execute policies rather than implementing them directly. The role covers a ~90% Mac environment, plus Jamf, Intune, and Amazon WorkSpaces (VDI) for the remaining Windows-based endpoints, with responsibility for architecting and maintaining the Jamf Pro environment, leading Intune administration for Windows/Android, managing zero-touch provisioning (Apple Business Manager, Windows Autopilot), and building automation and reporting for the endpoint fleet. KEY RESPONSIBILITIES
Perform daily upkeep, system maintenance, and patch management across all managed endpoints
Serve as the final escalation point and subject matter expert for complex endpoint issues
Architect and maintain the Jamf Pro environment for macOS/iOS: configuration profiles, policies, and patching
Lead Microsoft Intune administration for Windows and Android: policy application, security baselines, and app delivery
Manage Apple Business Manager (ABM) and Windows Autopilot for zero-touch deployment
Administer Amazon WorkSpaces (VDI)
Develop and maintain PowerShell/Bash scripts to automate manual tasks and integrate system APIs
Build and maintain a library of packaged software (dmg, pkg, msi) for silent deployment
Implement automated reporting for hardware inventory, license compliance, and security auditing
Enforce endpoint security standards (FileVault/BitLocker, EDR agent health) and partner with Security on vulnerability remediation
REQUIREMENTS / MUST-HAVES
3–5+ years in an Endpoint Engineering or MDM-focused role
Proven experience managing macOS and iOS at scale via Jamf Pro
Experience managing Windows environments through Microsoft Endpoint Manager/Intune
Hands-on Amazon WorkSpaces administration
Experience deploying and managing a BYOD program for personal mobile devices (iOS/Android)
Ability to write and debug Bash and PowerShell scripts from scratch
Understanding of Okta or Azure AD (Entra ID) as it relates to device enrollment and SSO
Bachelor's degree in Computer Science, IT, or equivalent experience; Jamf 200/300, Microsoft MD-102, or AWS Certified Cloud Practitioner is a plus