Open IT Jobs
Senior Systems Engineer
Position Overview
Our client is seeking a Senior Systems Engineer, Digital Workplace to join its IT organization. This role is responsible for engineering, automation, lifecycle management, and continuous improvement of the organization's endpoint and digital workplace technology environment.
The position has a strong focus on endpoint engineering and modern workplace technologies, including Windows, Microsoft Intune, Microsoft Entra ID, Azure Virtual Desktop (AVD), Microsoft 365, software deployment, patching, and device lifecycle management.
Supporting an environment of 1,000+ endpoint devices, this individual will serve as a senior technical resource for complex endpoint, systems, device management, and virtual desktop issues. The role also requires a practical understanding of infrastructure dependencies, including Windows Server, networking, DNS, DHCP, VPN, firewalls, applications, databases, and identity services.
Key Responsibilities
- Design, implement, and maintain enterprise endpoint management solutions using Microsoft Intune, Microsoft Entra ID, Azure Virtual Desktop, and Microsoft 365.
- Develop and maintain endpoint standards, configuration baselines, images, and device lifecycle processes.
- Lead initiatives involving endpoint modernization, Windows upgrades, virtual desktop optimization, and device standardization.
- Develop automation and scripting solutions using PowerShell, Python, or similar technologies to streamline endpoint administration.
- Automate software deployments, patching, provisioning, onboarding, offboarding, and routine support functions.
- Partner with ServiceNow and IT leadership to automate operational workflows and reduce manual processes.
- Ensure timely deployment of operating system, third-party application, and security patches.
- Support troubleshooting of infrastructure and cloud dependencies including authentication, DNS, DHCP, file services, print services, remote access, and application connectivity.
- Troubleshoot application and database connectivity issues, including server dependencies, service accounts, connection strings, permissions, and network communication paths.
- Support digital workplace technologies including Microsoft 365, Teams Rooms, collaboration platforms, mobile computing, and remote access technologies.
- Serve as a Tier III escalation point for complex endpoint, operating system, application, and virtual desktop issues.
- Develop self-service solutions, technical documentation, runbooks, knowledge articles, and support procedures.
- Mentor support analysts and other IT staff on endpoint engineering best practices.
- Lead endpoint-focused projects and collaborate with infrastructure, cybersecurity, application, and managed service provider teams.
- Support endpoint technologies utilized in healthcare and clinical environments while maintaining security, compliance, and operational continuity.
What We're Looking For
- 5+ years of progressive experience in endpoint engineering, desktop engineering, workplace technology, or infrastructure operations.
- 3+ years of experience administering enterprise endpoint management platforms.
- Strong experience with Microsoft Intune, including configuration profiles, compliance policies, application deployment, Windows Autopilot, and device lifecycle management.
- Experience with Microsoft Entra ID, including identity, groups, devices, and conditional access concepts.
- Strong experience with Windows 10/11 Enterprise deployment, configuration, troubleshooting, patching, imaging, and lifecycle management.
- Experience administering or supporting Azure Virtual Desktop (AVD), including host pools, user profiles, and remote desktop performance.
- Experience with enterprise software deployment, patch management, endpoint security, and mobile device management.
- Strong scripting and automation experience using PowerShell, Python, or similar technologies.
- Experience with ServiceNow or another IT Service Management platform, including incident, request, change, asset, and knowledge management workflows.
- Working knowledge of Windows Server, Active Directory-related services, DNS, DHCP, TCP/IP, routing, firewalls, VPN, and remote access technologies.
- Ability to troubleshoot issues across endpoints, applications, servers, databases, networks, and identity services.
- Strong documentation, communication, problem-solving, and root-cause analysis skills.
- Experience working within ITIL/IT Service Management environments.
- Healthcare or other regulated-industry experience is preferred.
Preferred Skills
- Azure infrastructure services, including virtual machines, networking, storage, monitoring, and identity integration.
- Microsoft Power Platform and low-code workflow automation.
- Python or other automation languages.
- Endpoint analytics, monitoring, vulnerability management, and configuration compliance tools.
- Basic SQL Server and database connectivity knowledge.
- Experience supporting healthcare, nonprofit, or other regulated environments.
Certifications
The following certifications are preferred/required based on experience:
- Microsoft Certified: Endpoint Administrator Associate or equivalent
- Microsoft Certified: Azure Administrator Associate or equivalent
- ITIL Foundation certification or demonstrated experience working within ITIL-aligned practices
- Microsoft 365 Administrator Expert is a plus
- Microsoft security, networking, cybersecurity, or Windows Server certifications are a plus
Ideal Background
The ideal candidate is not simply a senior desktop support technician. This is an engineering-focused role for someone who has progressed from traditional desktop/support responsibilities into enterprise endpoint engineering, automation, systems administration, and digital workplace technologies.
The strongest candidates will be hands-on with Intune, Entra ID, AVD, Windows 10/11, Microsoft 365, endpoint automation, and ServiceNow, while also possessing enough infrastructure knowledge to understand how endpoints interact with servers, applications, databases, identity systems, and networks.
This individual should be comfortable serving as a Tier III escalation resource, taking ownership of complex technical problems, identifying root causes, automating repetitive processes, improving standards, and partnering across infrastructure, cybersecurity, applications, and support teams.
Compensation & Employment Structure
This is a Contract-to-Hire opportunity. The position will initially be engaged on a contract basis with the intention of converting to a permanent employee.
- Work Arrangement: On-site in Tarrytown, NY
- Permanent Salary Upon Conversion: $80,000–$90,000 annually, depending on experience and qualifications.
Job ID: 5583