# Desktop Engineer

**Company:** [Cyber Shell, LLC](null/companies/opzBXLwdBAb7Hh58qC7Bxr.md)
**Location:** Boulder, United States
**Workplace:** on site
**Employment type:** Full-time

[Apply for this job](null/view/b0baf1b9-d881-4e68-9dc2-68d799fc7306)

## Description

We are seeking a Desktop Engineer to keep a federal agency's end-user computing environment healthy, secure, and fully documented. This is a hands-on role covering the full endpoint lifecycle, imaging and deploying laptops, managing mobile devices, patching vulnerabilities, and supporting users across Windows and Mac platforms, including support of classified systems.

On a typical day you will:

\- Configure and deploy laptops and mobile devices for end users

\- Deploy applications using BigFix, Microsoft Intune, and Company Portal on iOS devices

\- Manage and support Mac devices using JAMF Pro

\- Manage endpoint vulnerabilities using enterprise security tools and drive remediation

\- Support Windows laptops and desktops, including personal productivity software and full-disk encryption with BitLocker

\- Administer Apple, Android, and mobile devices through Microsoft Intune

\- Install, configure, and maintain local and network printers, and support MS Surface Hub interactive whiteboards

\- Manage software licenses and maintain hardware/software inventory and documentation libraries

\- Perform preventive and remedial maintenance, run diagnostics, and arrange repair or replacement of equipment

\- Move and install equipment, upgrade components and drivers, and provision and support email accounts

## Requirements

\- 4+ years of desktop/endpoint support experience in an enterprise environment

\- \*\*Active Secret security clearance (or ability to obtain one); required to support classified systems\*\*

\- Hands-on experience with endpoint management tools: Microsoft Intune required; BigFix and JAMF Pro strongly preferred

\- Experience supporting both Windows and macOS devices

\- Experience with mobile device management (iOS and Android)

\- Working knowledge of endpoint security and vulnerability remediation

\- Experience with full-disk encryption (BitLocker or equivalent)

\- Strong documentation habits; inventory, configuration records, and SOPs

\- U.S. citizenship required

\- Available to work on-site during standard support hours (shifts within 7:00 a.m. – 6:00 p.m., Monday–Friday)

\- Preferred: CompTIA A+/Security+; Microsoft endpoint administration certifications; prior federal support experience

## Benefits

We offer a comprehensive benefits package designed to support you and your family:

\- Medical (HSA-qualified UnitedHealthcare plan), dental, and vision coverage; company pays 75% of employee premiums

\- $100,000 company-paid life & AD&D insurance, with optional voluntary buy-up coverage for you and your family

\- Short-term and long-term disability insurance, 100% company paid

\- 401(k) with an automatic 3% company contribution; immediately vested, yours whether or not you contribute

\- 11 paid federal holidays, 10 vacation days (growing to 20 with tenure), and 10 sick days per year

\- Company-paid certification exams and renewals

\- Tuition reimbursement up to $5,000 per year
