Job Description:
We are looking for highly skilled and proactive Service Desk Engineers to join our team supporting the Congressional Budget Office (CBO) under the SENTRY Blanket Purchase Agreement (BPA). As a Service Desk Engineer, you will design, implement, and maintain technical controls to reduce the risk of unauthorized initial discovery and lateral movement, malicious credential use, and persistence via machine key and related system-abuse techniques. This role focuses on engineering support for escalated and complex tickets--not routine help desk support. Multiple positions are available: Engineer, Cloud Service Desk Representative, Apple/macOS SME, and Microsoft SME.
Key Responsibilities:
- Endpoint Engineering: Design, build, and maintain secure standard workstation images for Windows and macOS that enable access to the VDI environment for both remote and on-site users.
- Patch Management: Engineer and maintain operating system and application patching, version control, and lifecycle management for supported applications using Ivanti, KACE, Microsoft Intune, and Group Policy Objects (GPO).
- Device Enrollment: Support Microsoft Intune registration and Windows Autopilot for desktops, laptops, and CBO-issued mobile devices.
- Authentication: Implement passwordless authentication, hardware security keys (e.g., YubiKeys), and other protections for privileged and sensitive accounts.
- Monitoring & Logging: Engineer and maintain logging, monitoring, and audit capabilities to track device enrollment, user authentication, network access, and endpoint activity.
- Runbooks & Documentation: Produce user-facing runbooks for imaging/recovery, patch-validation steps, enrollment troubleshooting, and common remediation tasks.
- Assessment-to-Remediation: Follow a formal workflow: Assess findings, recommend remediation plans, obtain approvals, implement changes, and validate results.
Required Qualifications:
- Clearance: Active Top Secret (TS) security clearance is required.
- Experience: Minimum of 8 years of experience in Information Technology, Endpoint Engineering, or Cybersecurity.
- Engineering Experience: Minimum of 6 years of experience performing engineering (not help desk) functions in enterprise environments.
- Change Control: Experience working under formal change control, audit, and security governance processes.
- Technical Proficiency: Demonstrated hands-on experience with:
- Windows and macOS workstation imaging and automation
- Ivanti and/or KACE for OS and application patching
- Microsoft Intune and Windows Autopilot
- JAMF Pro for macOS endpoint management
- Endpoint logging and SIEM/EDR platforms (Microsoft Sentinel/Defender)
- Role-Specific Expertise:
- Apple/macOS SME: Expertise in JAMF Pro and macOS endpoint management.
- Microsoft SME: Expertise in Microsoft Intune, Autopilot, and Windows endpoint management.
Desired Experience:
- Experience implementing passwordless authentication and hardware-backed credentials (YubiKeys, CAC).
- Experience supporting forensic collection and audit readiness.
- Bachelor's degree in Information Technology, Cybersecurity, or a related field (or equivalent experience).
Clearance Requirement: Active Top Secret (TS) security clearance required
Citizenship: U.S. Citizenship is required
Job Type: Full-time
Equal Opportunity Employer Statement
E-Logic, Inc. is an equal opportunity employer and is committed to creating an inclusive environment for all employees. We do not discriminate on the basis of race, color, religion, sex, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.