TEKsystems Global Services, LLC
Lead Endpoint Engineer
TEKsystems Global Services, LLC, Poughkeepsie, New York, United States
Sr/Lead Endpoint Engineer
Hybrid role – 1–2 on‑site weeks in Poughkeepsie, NY. Full‑time, direct placement. Must be eligible to work in the U.S. without sponsorship.
Key Responsibilities
Lead build, maintain and update Windows desktop/laptop images, ensuring security, up‑to‑date packages and optimal performance.
Implement, maintain and troubleshoot identity and access management (IAM) solutions.
Manage the configuration, deployment and ongoing support of Microsoft Intune for endpoint devices.
Implement and enforce endpoint security policies to protect the organization’s IT infrastructure.
Handle software packaging and deployment using SCCM.
Conduct regular maintenance and optimization of endpoint systems, identifying opportunities for improvement.
Maintain device catalog and assess new laptop models and accessories for performance and quality.
Manage and support iOS and Android devices using Microsoft Intune.
Develop and maintain mobile security policies and ensure seamless integration with the broader IT infrastructure.
Serve as an escalation point for user troubleshooting with mobile devices, providing advanced support and resolving issues.
Stay current with MAM, MDM, security best practices and emerging technologies.
Develop PowerShell scripts for automation, deployment optimisation and security compliance.
Document configurations, policies and procedures; generate reports to track usage, compliance and risks.
Work with internal teams and third parties to drive continuous improvement and stay informed about product developments.
Collaborate on system upgrades and migrations.
Provide training to IT staff and users.
Required Skills & Qualifications
Azure VDI
Microsoft Intune
Intune Autopilot
Microsoft Configuration Manager (SCCM)
Knowledge of CyberArk, Entra ID and RBAC (preferred)
Strong scripting skills – PowerShell
Experience with endpoint security policies and compliance
Ability to troubleshoot complex incidents and guide less experienced team members
Education Bachelor’s degree preferred.
Pay & Benefits Pay range:
$110,000 – $125,000 per year.
Benefits:
Base & variable pay structure
Paid personal, holiday and volunteer time off
Professional development training (HVCU University & Academy)
Student loan repayment & tuition reimbursement programs
Medical, dental & vision coverage
401(k) with employer match and non‑elective contributions
Life, short‑term & long‑term disability insurance
Discounted loan rates & fees
Additional Information Application deadline: October 21, 2025. This position is anticipated to close on that date.
Equal Opportunity Employer The Company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, or genetic information.
#J-18808-Ljbffr
Key Responsibilities
Lead build, maintain and update Windows desktop/laptop images, ensuring security, up‑to‑date packages and optimal performance.
Implement, maintain and troubleshoot identity and access management (IAM) solutions.
Manage the configuration, deployment and ongoing support of Microsoft Intune for endpoint devices.
Implement and enforce endpoint security policies to protect the organization’s IT infrastructure.
Handle software packaging and deployment using SCCM.
Conduct regular maintenance and optimization of endpoint systems, identifying opportunities for improvement.
Maintain device catalog and assess new laptop models and accessories for performance and quality.
Manage and support iOS and Android devices using Microsoft Intune.
Develop and maintain mobile security policies and ensure seamless integration with the broader IT infrastructure.
Serve as an escalation point for user troubleshooting with mobile devices, providing advanced support and resolving issues.
Stay current with MAM, MDM, security best practices and emerging technologies.
Develop PowerShell scripts for automation, deployment optimisation and security compliance.
Document configurations, policies and procedures; generate reports to track usage, compliance and risks.
Work with internal teams and third parties to drive continuous improvement and stay informed about product developments.
Collaborate on system upgrades and migrations.
Provide training to IT staff and users.
Required Skills & Qualifications
Azure VDI
Microsoft Intune
Intune Autopilot
Microsoft Configuration Manager (SCCM)
Knowledge of CyberArk, Entra ID and RBAC (preferred)
Strong scripting skills – PowerShell
Experience with endpoint security policies and compliance
Ability to troubleshoot complex incidents and guide less experienced team members
Education Bachelor’s degree preferred.
Pay & Benefits Pay range:
$110,000 – $125,000 per year.
Benefits:
Base & variable pay structure
Paid personal, holiday and volunteer time off
Professional development training (HVCU University & Academy)
Student loan repayment & tuition reimbursement programs
Medical, dental & vision coverage
401(k) with employer match and non‑elective contributions
Life, short‑term & long‑term disability insurance
Discounted loan rates & fees
Additional Information Application deadline: October 21, 2025. This position is anticipated to close on that date.
Equal Opportunity Employer The Company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, or genetic information.
#J-18808-Ljbffr