The End User Computing (EUC) Architect is a senior technical leadership role responsible for defining and executing enterprise endpoint, security, and identity architecture across Windows, macOS, and mobile device environments. The position leads the modernization of traditional endpoint management toward cloud-first Modern Management using Microsoft Intune, SCCM/MECM, Windows Autopilot, Jamf Pro, Microsoft Defender for Endpoint, Microsoft Entra ID, Microsoft 365, and CyberArk Endpoint Privilege Management.
Key Responsibilities
Endpoint Architecture & Modernization
- Own and maintain the enterprise EUC and endpoint management roadmap across Windows and macOS.
- Architect Microsoft Intune, SCCM/MECM, and Jamf Pro environments.
- Lead SCCM-to-Intune modernization and co-management initiatives.
- Design modern provisioning strategies using Windows Autopilot and Apple Automated Device Enrollment.
- Establish enterprise endpoint architecture, governance, standards, and operational procedures.
macOS & Jamf Management
- Architect and manage enterprise Jamf Pro capabilities.
- Design macOS enrollment, provisioning, configuration, and lifecycle management strategies.
- Manage configuration profiles, policies, application deployment, patching, compliance, and inventory.
- Implement FileVault encryption, macOS security controls, and configuration standards.
- Develop macOS upgrade and lifecycle strategies.
- Integrate Jamf with Microsoft Intune, Entra ID, Conditional Access, and Microsoft Defender for Endpoint.
Cross-Platform Endpoint Management
- Establish consistent endpoint management standards across Windows and macOS.
- Develop enterprise strategies for provisioning, application deployment, patching, compliance, security, and device lifecycle management.
- Ensure Windows and macOS platforms meet enterprise security and compliance requirements.
Windows Lifecycle Management
- Lead large-scale Windows migration and modernization projects.
- Design OS deployment, in-place upgrade, and device replacement strategies.
- Develop deployment rings, pilot programs, and risk mitigation plans.
- Create automated deployment and upgrade frameworks capable of supporting tens of thousands of endpoints.
Engineering & Automation
- Develop automation using PowerShell, shell scripting, .NET, SQL, REST APIs, and other scripting technologies.
- Automate endpoint provisioning, application deployment, security remediation, patching, and compliance processes.
- Develop custom inventory, compliance, reporting, and endpoint management solutions.
- Integrate endpoint management platforms with identity and security technologies.
Endpoint Security
- Architect Microsoft Defender for Endpoint across Windows and macOS.
- Develop security baselines, vulnerability remediation processes, and endpoint detection and response capabilities.
- Implement Attack Surface Reduction, endpoint compliance, disk encryption, and device security controls.
- Partner with Cybersecurity and SOC teams to improve endpoint detection, response, and threat monitoring.
- Support Zero Trust initiatives through device compliance, device health, Conditional Access, and identity-driven security controls.
Identity & Privileged Access
- Integrate endpoints with Microsoft Entra ID, Conditional Access, MFA, PIM, PAM, and identity governance technologies.
- Architect CyberArk Endpoint Privilege Manager and Microsoft Endpoint Privilege Management solutions.
- Develop least-privilege strategies for Windows and macOS.
- Govern local administrator rights and application elevation.
- Partner with IAM teams to integrate endpoint management with enterprise identity and access management architecture.
Security Analytics
- Develop KQL queries for Microsoft Defender XDR, Microsoft Sentinel, Log Analytics, and Advanced Hunting.
- Build security and compliance dashboards using PowerBI and SQL.
- Develop threat-hunting queries and correlate endpoint telemetry with identity, vulnerability, and configuration data.
- Automate security reporting and operational workflows.
Technical Leadership
- Serve as the senior technical escalation point for Endpoint Engineering.
- Act as the architectural authority for Windows, macOS, Intune, SCCM, Jamf, endpoint security, and endpoint/identity integration.
- Mentor endpoint engineers and administrators.
- Lead architecture reviews and enterprise technology decisions.
- Develop standards, documentation, reference architectures, and operational procedures.
- Drive collaboration across Endpoint Engineering, Cybersecurity, IAM, Infrastructure, and Application teams.
Candidate Profile:
The ideal candidate has extensive experience architecting and managing large-scale enterprise endpoint environments across Windows and macOS. They should possess deep expertise in Microsoft Intune, SCCM/MECM, Jamf Pro, Windows Autopilot, Apple Automated Device Enrollment, Windows 10/11, macOS, iOS, Android, Microsoft Defender for Endpoint, Entra ID, Conditional Access, CyberArk EPM, PowerShell, shell scripting, KQL, endpoint security, and Zero Trust architecture.
The candidate should have demonstrated experience leading enterprise endpoint transformation initiatives and be capable of bridging Endpoint Engineering, Cybersecurity, and IAM while providing senior-level architecture and technical leadership.
In short, this is a Senior EUC / Endpoint Security & Identity Architect responsible for the architecture, modernization, security, and lifecycle management of the organization's complete Windows, macOS, and mobile device endpoint ecosystem, with Intune, SCCM, and Jamf serving as the core endpoint management platforms.
Fortive Corporation Overview
Fortive’s essential technology makes the world stronger, safer, and smarter. We accelerate transformation across a broad range of applications including environmental, health and safety compliance, industrial condition monitoring, next-generation product design, and healthcare safety solutions.
We are a global industrial technology innovator with a startup spirit. Our forward-looking companies lead the way in software-powered workflow solutions, data-driven intelligence, AI-powered automation, and other disruptive technologies. We’re a force for progress, working alongside our customers and partners to solve challenges on a global scale, from workplace safety in the most demanding conditions to groundbreaking sustainability solutions.
We are a diverse team 18,000 strong, united by a dynamic, inclusive culture and energized by limitless learning and growth. We use the proven Fortive Business System (FBS) to accelerate our positive impact.
At Fortive, we believe in you. We believe in your potential—your ability to learn, grow, and make a difference.
At Fortive, we believe in us. We believe in the power of people working together to solve problems no one could solve alone.
At Fortive, we believe in growth. We’re honest about what’s working and what isn’t, and we never stop improving and innovating.
Fortive: For you, for us, for growth.
Fortive’s essential technology makes the world stronger, safer, and smarter. We accelerate transformation across a broad range of applications including environmental, health and safety compliance, industrial condition monitoring, next-generation product design, and healthcare safety solutions.
We are a global industrial technology innovator with a startup spirit. Our forward-looking companies lead the way in software-powered workflow solutions, data-driven intelligence, AI-powered automation, and other disruptive technologies. We’re a force for progress, working alongside our customers and partners to solve challenges on a global scale, from workplace safety in the most demanding conditions to groundbreaking sustainability solutions.
We are a diverse team 17,000 strong, united by a dynamic, inclusive culture and energized by limitless learning and growth. We use the proven Fortive Business System (FBS) to accelerate our positive impact.
At Fortive, we believe in you. We believe in your potential—your ability to learn, grow, and make a difference.
At Fortive, we believe in us. We believe in the power of people working together to solve problems no one could solve alone.
At Fortive, we believe in growth. We’re honest about what’s working and what isn’t, and we never stop improving and innovating.
Fortive: For you, for us, for growth.
Ready to move your career forward? Find out more at careers.fortive.com.
We Are an Equal Opportunity Employer
Fortive Corporation and all Fortive Companies are proud to be equal opportunity employers. We value and encourage diversity and solicit applications from all qualified applicants without regard to race, color, national origin, religion, sex, age, marital status, disability, veteran status, sexual orientation, gender identity or expression, or other characteristics protected by law. Fortive and all Fortive Companies are also committed to providing reasonable accommodations for applicants with disabilities. Individuals who need a reasonable accommodation because of a disability for any part of the employment application process, please contact us at applyassistance@fortive.com.