Job Description:
• Design and implement cloud-based endpoint management solutions using Microsoft Azure and Intune
• Set, manage, and enforce configurations on macOS devices primarily through shell scripting orchestrated via Microsoft Intune
• Integrate and manage macOS devices using Apple Business Manager for zero-touch deployment
• Manage the software lifecycle for macOS, including application packaging, deployment, and updates through Microsoft Intune and the Company Portal
• Develop and maintain endpoint security policies across a multi-platform environment
• Monitor and optimize endpoint performance, security posture, and compliance metrics
• Implement Security Technical Implementation Guides (STIG) across all managed endpoints, with a specific focus on the macOS platform
• Create and enforce security policies in accordance with DoD and Navy cybersecurity standards
• Conduct security assessments and vulnerability management for endpoint devices
• Ensure compliance with federal regulations including FISMA, NIST, and DoD directives
• Engineer the configuration and security of macOS endpoints
• Configure, deploy, and manage Windows 11 enterprise environments
• Administer Linux systems with a focus on security hardening and automation
• Create comprehensive endpoint management policies using Azure Active Directory and Intune
• Develop automated deployment scripts and configuration management workflows, especially with shell scripting for macOS
• Design and implement conditional access policies and zero-trust security models
• Establish monitoring and reporting frameworks for endpoint compliance
Requirements:
• 3+ years of experience in cloud engineering or endpoint management
• Deep, hands-on experience managing macOS devices at scale using Microsoft Intune
• Strong proficiency in shell scripting to set, manage, and automate configurations on macOS
• Demonstrable experience with Apple Business Manager, including device enrollment (DEP) and app/book purchasing (VPP)
• Experience with software deployment and management on macOS using Intune's Company Portal
• Proven experience implementing and enforcing DoD standards (STIGs) and security best practices on the macOS platform
• Experience with Microsoft Azure cloud services and architecture
• Active DoD Secret clearance or ability to obtain clearance
• Microsoft Azure certifications (AZ-104, AZ-500, or similar)
• Experience with government/military IT environments
• Familiarity with ITIL frameworks and change management processes
Benefits:
• Opportunity to directly support U.S. Navy operations and personnel
• Work in an Agile Sprint team that values work-life balance