Director AI Ready Endpoint Infrastructure Security

 Posted 5 hours ago
     
10+ years experience
Apply Now

Please mention DailyRemote when applying

?/100
Resume Match Score

Match your resume skills with our AI powered skill match!

Get professional review

AI Summary

The Director will lead the strategy, architecture, and operations of the enterprise endpoint ecosystem, ensuring it is optimized for both human users and AI agents. This role involves managing unified endpoint management, security hardening, and automated lifecycle processes to support a Zero Trust architecture.
Overview

About Us:

 

Working across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $4.5B company and 16,000 people work alongside our clients, here and abroad, to tackle their most complex challenges with integrity, respect, responsibility, and professionalism.


Responsibilities

What You'll Do:

  • The Director of AI-Ready Endpoint Infrastructure & Security is a senior technical leadership role responsible for the strategy, architecture, and operations of the enterprise endpoint ecosystem — built for both human users and AI agents as first-class workloads. Reporting to the VP of Intelligent Automation and IT Operations, this leader will build and operate a modern, automated, and security-hardened endpoint environment as a foundational pillar of the organization’s greenfield IT operational model. This role encompasses unified endpoint management (UEM), endpoint detection and response (EDR), device lifecycle automation, compliance enforcement, and the emerging mandate to provision endpoints as AI compute platforms capable of hosting on-device AI agents and local model inference. The Director will ensure all endpoints are continuously compliant, observable, and resilient — eliminating manual toil through automation, enabling the broader Zero Trust architecture strategy, and preparing the device fleet to serve the AI-First IT model where endpoints host both human users and intelligent agents as collaborators and stakeholders.

Key Responsibilities:

  • Unified Endpoint Management (UEM)
    • Architect and operate a unified endpoint management platform (Microsoft Intune, Jamf, or equivalent) spanning Windows, macOS, iOS, Android, and Linux device types.
    • Define and enforce device configuration baselines, compliance policies, and conditional access rules aligned to CIS Benchmarks and organizational security standards.
    • Lead the design and automation of the full device lifecycle — from zero-touch provisioning and onboarding through offboarding and secure decommission.
    • Implement enrollment programs to enable touchless device deployment for remote and distributed workforces.
  • Agent-Ready Device Architecture
    • Define and implement the architecture for AI-ready endpoints: provision devices as platforms capable of hosting on-device AI agents, local LLM inference, and edge AI processing workloads.
    • Establish device hardware standards and lifecycle criteria that account for AI compute requirements, including NPU availability, memory, and storage for on-device model execution.
    • Collaborate with the AI Platform & Fabric Engineer to define the endpoint requirements for running AI agents as first-class workloads — including agent identity, sandboxing, resource limits, and behavioral monitoring on the device.
    • Build management and observability capabilities for AI agents running on endpoints: monitor agent resource consumption, enforce policy, and detect anomalous agent behavior.
    • Ensure that agent-ready endpoint provisioning is integrated into the zero-touch device lifecycle — agents are deployed, updated, and decommissioned through the same automated pipeline as device operating systems and applications.
  • Endpoint Detection & Response (EDR) and Security
    • Own the enterprise EDR platform ensuring full coverage, policy enforcement, and continuous monitoring across all managed endpoints.
    • Collaborate with the CISO and security operations center (SOC) to ensure endpoint telemetry is integrated into SIEM and XDR platforms for correlated threat detection.
    • Drive endpoint hardening initiatives including application control, script block logging, attack surface reduction (ASR) rules, and privileged access workstation (PAW) configurations.
    • Extend EDR monitoring to detect and respond to anomalous AI agent behavior on endpoints — including unauthorized model access, unexpected data exfiltration, and agent privilege escalation.
    • Lead response efforts for endpoint-originated security incidents, coordinating containment, investigation, and remediation activities.
  • Patch Management & Vulnerability Remediation
    • Design and operate an automated patch management program covering OS updates, third-party applications, firmware, BIOS/UEFI, and AI runtime environments across all endpoint types.
    • Define SLA-driven patch cadences aligned to vulnerability severity classifications and compliance requirements.
    • Integrate patch operations with vulnerability management platforms to create a closed-loop remediation workflow.
    • Produce executive-level reporting on patch compliance posture, vulnerability age, and remediation velocity.
  • Endpoint Automation & Configuration as Code
    • Champion automation-first endpoint operations using Ansible, PowerShell DSC, and/or Terraform to manage configuration drift, enforce baselines, and deploy software at scale.
    • Build and maintain a software distribution and packaging pipeline for controlled, tested, and auditable application delivery — including AI runtime components and agent packages.
    • Develop automated runbooks for common endpoint operational tasks including re-imaging, software remediation, compliance remediation, and AI agent lifecycle management.
    • Integrate endpoint management platforms via APIs with ITSM platforms to enable self-service and automated ticket-driven workflows.
  • Zero Trust Endpoint Posture & Compliance
    • Ensure all managed endpoints — including those hosting AI agents — serve as verified, posture-checked entities within the broader Zero Trust architecture.
    • Implement and maintain device compliance signals fed into conditional access policies across Microsoft Entra ID, Okta, or equivalent identity platforms.
    • Define and enforce posture requirements for AI agent-hosting devices: agent identity verification, runtime integrity checks, and behavioral anomaly thresholds as conditions of network and application access.
    • Enforce CMMC Level 2 and NIST 800-171 endpoint security controls, maintaining audit-ready evidence of compliance across the device fleet.
    • Participate in audits, risk assessments, and continuous monitoring programs to validate and demonstrate endpoint compliance posture.
  • Executive Management & Governance
    • Build, lead, and mentor a high-performing endpoint engineering and operations team, fostering a culture of automation, continuous improvement, and security-first thinking.
    • Manage vendor relationships and contracts for endpoint tooling, licensing, and support agreements.
    • Define and track KPIs for endpoint health, patch compliance, EDR coverage, AI agent fleet health, and operational efficiency.
    • Translate endpoint risk and operational metrics into clear executive-level narratives and strategic roadmaps.

Qualifications

Minimum Qualifications

  • Education:
    • Bachelor’s degree in Information Technology, Computer Science, Systems Engineering, or related field or an equivalent combination of education and experience from which comparable knowledge and job skills can be obtained. (One year related experience may be substituted for one year of education, if degree is required)
  • Certifications:
    • Ability to obtain and maintain CMMC Level 2 certification.
  • Experience
    • A minimum of twelve (12) years of experience in IT operations, systems administration, or endpoint engineering.
    • A minimum of five (5) years of experience in a senior or lead technical leadership capacity.
    • Demonstrated hands-on experience architecting and operating enterprise UEM platforms (Microsoft Intune and/or Jamf required).
    • Direct experience deploying and operating EDR platforms (CrowdStrike, Microsoft Defender for Endpoint, or SentinelOne) at enterprise scale.
    • Strong background in automated patch management, vulnerability remediation workflows, and compliance reporting.
    • Experience with endpoint automation tooling including Ansible, PowerShell DSC, and scripting (PowerShell, Python, or Bash).
  • Other Requirements:
    • Ability to travel to project and customer locations as needed.
    • U.S. Citizenship required; ability to obtain and maintain a security clearance.
  • Skills:
    • Deep expertise in UEM platforms, EDR tooling, and enterprise endpoint security architecture.
    • Understanding of AI-ready device architecture requirements: on-device AI inference, NPU management, edge compute provisioning.
    • Proficiency in endpoint automation and configuration-as-code methodologies.
    • Strong understanding of Zero Trust device posture requirements and conditional access frameworks.
    • Ability to extend EDR and posture management to monitor and govern AI agents running on endpoint devices.
    • Excellent communication skills with the ability to present technical risk and strategy to executive audiences.
    • Demonstrated ability to lead cross-functional teams and manage vendor relationships in complex environments

Preferred Qualifications:

    • Master’s degree 
    • Experience in the government contractor/services industry.
    • Experience supporting FedRAMP or DoD IL environments.
    • Familiarity with privileged access workstation (PAW) design and implementation.
    • Experience managing AI agent deployments on endpoint devices, including resource governance and behavioral monitoring.
    • Familiarity with on-device AI inference, edge AI compute requirements, or AI agent deployment on endpoints.
    • Industry certifications: Microsoft Certified: Endpoint Administrator Associate (MD-102), Jamf Certified Expert, or equivalent.
    • Active Secret security clearance 

What We Bring

  • At V2X we strive to be market competitive in our total reward offerings.
  • The successful candidate’s starting pay will be based on, but not limited to, their job-related skills, experience, qualifications, work location, and market conditions.
  • The following salary range is intended to display the value of the company’s base pay compensation and may be modified at the discretion of the company.
    • USD $ 220,000 - 240,000
  • Provided salary range minimum and maximum values correspond to variances between regional/geographic locations across the United States.
  • Please speak with a recruiter for additional information.
  • Employee benefits include the following:
    • Healthcare coverage
    • Retirement plan
    • Life insurance, AD&D, and disability benefits
    • Wellness programs
    • Paid time off, including holidays
    • Learning and Development resources
    • Employee assistance resources
  • Pay and benefits are subject to change at any time and may be modified at the discretion of the company, consistent with the terms of any applicable compensation or benefit plans.

At V2X, we are deeply committed to both equal employment opportunity, including protection for Veterans and individuals with disabilities, and fostering an inclusive and diverse workplace. We ensure all individuals are treated with fairness, respect, and dignity, recognizing the strength that comes from a workforce rich in diverse experiences, perspectives, and skills. This commitment, aligned with our core Vision and Values of Integrity, Respect, and Responsibility, allows us to leverage differences, encourage innovation, and expand our success in the global marketplace, ultimately enabling us to best serve our clients.

Similar Jobs

See all Remote Software Development jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Software Development

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified