Endpoint Engineer II
Reston, VA - USA
Job Summary
TheâEndpointâEngineer LevelâIIâsupports Microsoft 365 environments forâmanaged services customers.âThis roleâfocuses onâprovidingâsupport and configuration for endpoint technologies across physical devices and cloud-hosted desktop platforms. This role supports customers in the Defense Industrial Base with a strong emphasis on compliance with CMMC 2.0 and NIST 800-171.ââ
The Endpoint EngineerâIIâworks alongside moreâexperienced engineers in a managed services environment to ensure secure compliant and consistent endpoint management across Windows 11 devices Windows 365 Cloud PCs and Azure Virtual Desktops.â
This role will focus on bothâthe ongoingâoperations ofâmanaged servicesâas well as project-based onboarding and adoption.â
Role &Responsibilities:
ââEndpointSupport&Administrationâ
- Act as escalationâpointâforâEndpointâEngineerâIâsupport requests.â
- Configure and manage physical devices Windows 365 Cloud PCs and Azure Virtual Desktop environments using:â
- Microsoft Intuneâ
- Microsoft Endpoint Managerâ
- Group Policy and local security policies (as needed)â
- Deploy applications manage compliance policies and enforce conditional access and endpoint protection settings.â
- Manageâdevice enrollments provisioning packages and configuration profiles.â
- Assistâin the application of compliance baselines and security settings aligned with Zero Trust principles.â
Securityâ&âComplianceâTasksâ
- Support customer alignment with endpoint-related CMMC 2.0 and NIST 800-171 controls (e.g. system configuration updates access policies).â
- Monitor Defender for Endpoint alerts andâassistâwith remediation steps under guidance.â
- Apply or verify device compliance policies (encryption anti-malware update status).â
- Support the Security Operations team and the Security Program Management organization with endpoint remediation and reporting asârequired.
ServiceâDeliveryâ&âOperationsâ
- Respond to service requests and incidents in alignment with SLAs and internal escalation paths.â
- Perform newcustomeronboarding using SOPs such as the Microsoft 365 Baselineâcomponentâpackage produced by the Product Development team.â
- Troubleshoot persistent or advanced endpoint issues including profile corruption policy misapplication or user provisioning failures.â
- Collaborate with modern workplace and identity teams on cross-cutting access and compliance issues.â
- Document technical issues solutions and recurring patterns in internal knowledge base systems.â
- Use Remote Monitoring and Management (RMM) platforms such asNinjaOneand N-Central (N-Able) for:â
- Device status monitoringâ
- Script executionâ
- Patch compliance trackingâ
- Remote troubleshootingâ
- Record issues and time spent using internal PSA/ticketing systems.â
Customer Engagementâ
- Work directly with customer stakeholders primarily technical contacts to resolve routine issues and implementâendpointâchanges.â
- Participate in onboarding activities forânew users sites or departments within existing managed customers.â
- Assistâwith software distribution and application lifecycle support.â
- Helpâmaintainâinventory and documentation of all managed endpoints (physical and virtual).â
Team Collaborationâ
- Escalate complex issues to more senior endpoint engineering staff or to other teams asânecessary after performingâtroubleshooting.â
- Participate in regular team syncs and ongoing training sessions to stay current on Microsoft 365 features and changes.â
Operational Excellenceâ
- Follow standard operating procedure (SOP) documents to support customers. Update SOPs where necessary when steps or processes change.â
- User PowerShellâor other scripting technologies and frameworks to automate routine management tasks and generate reports.â
- Contribute to reusable scripts and configuration templates for device provisioning and baseline enforcement.â
Competencies / Skills:
- 35 years of experience supporting enterprise Windows endpoints in aâmanaged services enterprise IT or regulated environment.â
- Deep working knowledge of Microsoft Intune Endpoint Manager Windows 365 and Azure Virtual Desktop.â
- Experience configuring compliance and security policies to meet CMMC 2.0 or NIST 800-171 requirements.â
- Proficient in PowerShell for administration and basic automation.â
- Familiarity with RMM tools ( Automate N-Able/N-Central) and PSA systems (e.g. ConnectWise Manage ServiceNow).â
- Strong troubleshooting and escalation management skills.â
- Strong customer service orientation and clear communication skills.â
- U.S. Citizenshipârequiredâ(due to work with defense contractors and ITAR-regulated customers).â
Preferred
- Experience working in a managed services or IT outsourcing environment.â
- Familiarity with compliance-driven IT support (CMMC NIST 800-171 DFARS 7012).â
- Exposure to scripting tools (PowerShell) for endpoint automation.â
- Hands-on experience with Azure Virtual Desktop or Windows 365.â
- Microsoft 365 Certified: Fundamentals (MS-900)â
- Microsoft 365 Certified: Modern Desktop Administrator Associate (MD-102)â
- CompTIA A or Securityâ
Where required by law this posting includes a goodâfaith pay range for candidates who will perform the role in specificjurisdictions. For other locations the actual compensation may differ. Final compensation will bedeterminedbased on qualifications experience skills work location internal equity and currentmarket data. This job posting is not a contract or promise of employment or anyparticular compensation and any employment offer will be set out in a written offer letter.
EOE M/F/D/V
Required Experience:
IC
About Company
NeoSystems offers strategic back office services, hosting, CMMC & security services for government contractors. Find out what we can do for your business!