Vanguard

WindowsEndpointAutomationEngineer

$135–185k ~AI est. Wayne, Pennsylvania, United States FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Windows Endpoint Automation Engineer at Vanguard. Skills: Endpoint automation, Windows engineering, PowerShell, CI/CD. Lead endpoint automation. Engineer deployment workflows”

What You'll Achieve.

Reduce operational toil; Improve reliability

Industry & Context.

Problems you'll solve

Analytical; Problem-solving; Troubleshooting

What They're Looking For.

Must Have

8 years related work experience, Undergraduate degree in related field or equivalent experience

Nice to Have

Experience with Desired State concepts, Familiarity with monitoring/telemetry concepts

What You'll Do.

Lead endpoint automation

Engineer deployment workflows

Modernize deployment workflows

Build PowerShell frameworks

Build supporting tooling

Define Windows endpoint standards

Evolve Windows endpoint standards

Partner with release governance

Improve validation practices

Implement CI/CD practices

Expand CI/CD practices

Integrate with identity platforms

Integrate with security platforms

Support secure provisioning

Support access patterns

Support device compliance

Reduce operational toil

Automate routine work

Codify repeatable runbooks

Improve observability

Improve troubleshooting signals

Collaborate across Workplace Engineering

Standardize engineering patterns

Share automation approaches

How You'll Work.

Team & Collaboration

Partner with QA; Partner with release governance; Collaborate across Workplace Engineering; Work across teams

Communication Scope

Written communication; Verbal communication

Process & Methodology

Planning, Organization, Delivery discipline

Full Job Description

**Core Responsibilities:** * Lead endpoint automation for provisioning, compliance, remediation, and standard configuration across the Windows fleet. * Engineer and modernize deployment workflows using Microsoft Intune, SCCM/MECM, and Windows Autopilot, with a focus on repeatability, safety, and scale. * Build reusable PowerShell-based frameworks (and supporting tooling) for device configuration, drift detection, self-healing remediation, and operational consistency. * Define and evolve Windows endpoint standards including OS baseline configuration, security baselines, and lifecycle practices aligned with enterprise requirements. * Partner with QA and release governance to improve validation practices for patches, feature updates, policy changes, security configuration, and application rollouts. * Implement and expand CI/CD practices for endpoint engineering content (scripts, configuration, packaging, policy-as-code where applicable), using Git-based workflows, reviews, and promotion patterns. * Integrate with identity and security platforms (e.g., Microsoft Entra ID) to support secure provisioning, access, and device compliance patterns. * Reduce operational toil and improve reliability by automating routine work, codifying repeatable runbooks, and improving observability and troubleshooting signals. * Collaborate across Workplace Engineering (Windows, VDI, macOS/mobility, Digital Workplace) to standardize engineering patterns and share automation approaches. **Technical Requirements:** * Strong experience with Windows endpoint engineering in an enterprise environment (OS configuration, policy management, troubleshooting, and lifecycle management). * Hands-on experience with Microsoft Intune and SCCM/MECM for application delivery, device management, and endpoint configuration. * Experience with Windows Autopilot and modern provisioning patterns. * Proficiency in PowerShell for automation, packaging, and remediation workflows. * Working knowledge of CI/CD concepts a

Free ATS check

Applying for this Windows Endpoint Automation Engineer role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Vanguard?

Real rants from real employees. Read before you apply.

Read Company Rants →