Senior Mac Systems Engineer
San Francisco, CA - USA
Job Summary
Who Are We
Postman is the worlds leading API platform used by more than 45 million developers and 500000 organizations including 98% of the Fortune 500. Postman is helping developers and professionals across the globe build the API-first world by simplifying each step of the API lifecycle and streamlining collaborationenabling users to create better APIs faster.
The company is headquartered in San Francisco and has offices in Boston New York Austin Tokyo London and Bangalore - where Postman was founded. Postman is privately held with funding from Battery Ventures BOND Coatue CRV Insight Partners and Nexus Venture Partners. Learn more at or connect with Postman on X via @getpostman.
P.S: We highly recommend reading The API-First World graphic novel to understand the bigger picture and our vision at Postman.
The Opportunity
Postman is the worlds leading API platform used by more than 45 million developers and 500000 organizations. Behind that platform is a fleet of macOS endpoints and behind that fleet is the small team that keeps Postman engineers productive secure and unblocked. Were hiring a Senior Mac Systems Engineer to lead how we manage automate and evolve that fleet.
This is not a ticket-closing role. We want someone who treats endpoint management as a platform engineering problem: declarative version-controlled reproducible and continuously improved. You will own our Mac fleet end to end from the moment a device is forecasted and procured through provisioning daily operation and eventual retirement. You will partner closely with Security and GRC on CMMC Level 2 readiness and youll have a real mandate to evaluate evolve and re-architect our endpoint stack where it makes sense.
You will also help decide where AI belongs in IT at Postman and where it doesnt. Agentic systems are changing how IT teams work and we want a senior engineer who can apply them thoughtfully build with them safely and tell the difference between genuinely useful automation and hype.
If you spend time in the MacAdmins Slack have opinions about MDM vendors and have ever caught yourself thinking I could replace this with a few hundred lines of Go and a Git repo you are exactly who we want to talk to.
About the Role
- A real mandate to modernize. Were not looking for someone to maintain the status quo; we want someone with a point of view about where endpoint management and IT operations are going.
- Direct partnership with Security Engineering GRC and IT Operations leadership on initiatives that matter to the business.
- Budget and authority to evaluate pilot and adopt the right tools not just the incumbent ones.
- An organization that is investing seriously in AI and how it can augment the real work humans do and a team that wants you to push that investment into IT operations.
What Youll Do
- Own Postmans macOS fleet management strategy and execution: provisioning configuration patching telemetry and lifecycle.
- Treat infrastructure as code. Manage endpoint configuration automation and integrations through version-controlled peer-reviewed code rather than clicking through admin consoles.
- Lead automation as a first-class engineering discipline. Identify the highest-leverage manual workflows in IT and replace them with reliable observable testable automation.
- Apply AI and agentic systems pragmatically across IT operations: triage remediation knowledge surfacing vendor analysis and developer self-service. Decide where these tools belong build the guardrails and measure the outcomes.
- Own the macOS hardware lifecycle end to end: demand forecasting procurement strategy depot and inventory operations refresh cycles warranty and AppleCare programs and responsible end-of-life and sustainability practices.
- Continuously evaluate our endpoint stack. Identify where current tooling is holding us back prototype alternatives and lead migrations when the data supports it.
- Build internal tooling where vendors fall short: inventory pipelines compliance reporting automated remediation and self-service workflows for engineers.
- Partner with Security GRC and IT Operations to deliver controls that satisfy CMMC Level 2 and other compliance frameworks without slowing developers down.
- Design and operate the telemetry layer for endpoint visibility: osquery Fleet Kolide or whatever combination best fits the problem.
- Mentor IT Systems Administrators and partner with adjacent teams (Security Engineering DART Procurement) on cross-functional initiatives.
- Be the senior technical voice in vendor evaluations contract negotiations and architecture decisions for anything touching the Mac fleet.
About You
- 7 years managing macOS at scale in a fast-moving engineering organization including deep production experience with at least one major MDM (Jamf Kandji Mosyle SimpleMDM Workspace ONE or similar).
- A strong automation instinct. You see manual work as a bug you reach for code before consoles and youve built the kind of automation other people on your team rely on daily.
- Practical experience applying AI and LLM-based tooling to real IT and operations problems. Youve used Claude Code Cursor or similar agentic tools in your own workflow and ideally youve built or deployed agentic workflows that other people use.
- Strong scripting and software development skills. Youre comfortable in Python Go Bash or Swift and you write code that other engineers would be willing to review.
- Hands-on experience with infrastructure as code and modern DevOps practices: Terraform Git-based workflows CI/CD code review and treating production changes as software changes.
- Working knowledge of endpoint telemetry and device trust tooling: osquery Fleet Kolide Munki AutoPkg or comparable open-source ecosystems.
- Deep understanding of Apples management surface area: declarative device management MDM protocol configuration profiles FileVault Gatekeeper system extensions and the ongoing implications of Apple Silicon.
- Experience running a macOS hardware lifecycle program at scale: forecasting procurement asset management refresh planning and end-of-life logistics.
- Identity and access fluency: Okta SSO SCIM certificate-based authentication and how identity intersects with device posture.
- A track record of replacing manual or vendor-locked workflows with automated observable and testable systems.
- Excellent written communication. You can write a clear RFC a vendor evaluation or a runbook that someone three years from now will still understand.
Nice to Have
- Active participant in the MacAdmins community Penn State Slack MacDevOpsYVR MacSysAdmin or similar.
- Open-source contributions to projects like Munki Nudge AutoPkg osquery Fleet swiftDialog or your own published tooling.
- Experience building or deploying agentic AI workflows in a production IT or operations context including the unglamorous parts: evaluation guardrails cost control and failure modes.
- Experience standing up or significantly improving a Zero Trust device-trust program.
- Background supporting compliance frameworks such as CMMC SOC 2 ISO 27001 or FedRAMP.
- Familiarity with managing Windows or Linux endpoints alongside Mac (Intune Jamf Pro for iOS Fleet on Linux).
- Experience integrating endpoint data into a broader security data lake or SIEM.
The reasonably estimated base salary for this role ranges from $200000 to $250000 plus a competitive equity package. Actual compensation is based on the candidates skills qualifications and experience.
What Else
In addition to Postmans pay-on-performance philosophy and a flexible schedule working with a fun collaborative team Postman offers a comprehensive set of benefits including full medical coverage flexible PTO wellness reimbursement and a monthly lunch stipend. Along with that our wellness programs will help you stay in the best of your physical and mental health. Our frequent and fascinating team-building events will keep you connected while our donation-matching program can support the causes you care about. Were building a long-term company with an inclusive culture where everyone can be the best version of themselves.
At Postman we value in person collaboration. We are in office 5 days a week for all roles based out of our hubs in San Francisco Bay Area Boston Austin Tokyo and London. For roles based in Bangalore employees currently work in the office three days a week and will transition to five days per week by the end of the year. We were thoughtful in our approach which is based on collaboration and grounded in feedback from our workforce leadership team and peers. The benefits of our in office model will be shared knowledge brainstorming sessions communication and building trust in-person that cannot be replicated via zoom.
Our Values
At Postman we create with the same curiosity that we see in our users. We value transparency and honest communication about not only successes but also our work we focus on specific goals that add up to a larger vision. Our inclusive work culture ensures that everyone is valued equally as important pieces of our final product. We are dedicated to delivering the best products we can.
Equal opportunity
Postman is an Equal Employment Opportunity and Affirmative Action Employer. Qualified applicants will receive consideration for employment without regard to race color religion sex sexual orientation gender perception or identity national origin age marital status protected veteran status or disability status. Headhunters and recruitment agencies may not submit resumes/CVs through this website or directly to managers. Postman does not accept unsolicited headhunter and agency resumes. Postman will not pay fees to any third-party agency or company that does not have a signed agreement with Postman.
Required Experience:
Senior IC
About Company
Accelerate API development with Postman's all-in-one platform. Streamline collaboration and simplify the API lifecycle for faster, better results. Learn more.