Endpoint Engineering Tech-Lead Manager
Listed on 2025-11-25
-
IT/Tech
Cybersecurity, Systems Engineer, IT Support, Cloud Computing
Core Weave is The Essential Cloud for AI™. Built for pioneers by pioneers, Core Weave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups, and global enterprises, Core Weave combines superior infrastructure performance with deep technical expertise to accelerate breakthroughs and turn compute into capability. Founded in 2017, Core Weave became a publicly traded company (Nasdaq: CRWV) in March 2025.
Learn more at
Core Weave is seeking an experienced, hands‑on, Endpoint Engineering Tech‑Lead Manager (TLM) to lead the strategy, design, and execution of our endpoint engineering function. This role will ensure the security, performance, and reliability across thousands of employee endpoint systems spanning MacOS, Windows, Linux client operating systems and iOS, Android mobile operating systems.
AboutThe Role
You’ll drive modernization of our endpoint management practices, driving adoption of Infrastructure as Code, release management best‑practices, while ensuring security, compliance, and operational excellence of our endpoint fleet.
In This Role You Will- Lead, mentor, and develop a talented group of client endpoint engineers.
- Define and execute the strategic roadmap for endpoint engineering in alignment with Core Weave’s business and security goals.
- Drive execution and development practices including sprint planning, retrospectives, and continuous process improvements.
- Manage vendor relationships, budget, and procurement for all endpoint tools, licenses, and services.
- Partner with cross‑functional teams (Security, HR, Developer Productivity and Engineering) to deliver scalable and secure endpoint solutions.
- Oversee configuration, deployment, and lifecycle management of endpoints across Linux, macOS, Windows, iOS, Android, and VDI environments.
- Implement Infrastructure as Code and change management practices.
- Design and enforce release management systems and processes, including automated testing and observability systems to ensure safe and efficient changes.
- Drive improvements in application packaging, distribution, and deployment pipelines to enhance efficiency and reliability.
- Drive improvements for device trust and remote‑access solutions.
- Ensure timely vulnerability management and patching for all endpoints.
- Implement and enforce endpoint security agents/capabilities such as Data Loss Prevention (DLP), Endpoint Detection & Response (EDR), Enterprise Browser and Web Protection controls and similar solutions.
- Ensure compliance with industry standards and best‑practices such as CIS benchmarks, NIST SP 800‑215 and regulatory requirements including SOC‑2, ISO 27001, Cyber Essentials Plus, and FedRAMP.
- Lead integration and optimization of endpoint management and security platforms such as Chaf, Jamf, Intune, Jump Cloud, Azure Virtual Desktop and App Streaming solutions.
- Leverage observability and synthetic testing platforms, such as Elastic, to proactively monitor endpoint performance and user experience.
- Partner with Security and IT teams to ensure effective monitoring, alerting, and incident response capabilities.
- 5+ years of proven experience leading an endpoint engineering team.
- Deep expertise managing all client and mobile operating systems (Linux, macOS, Windows, iOS, Android).
- Demonstrable experience with Infrastructure as Code frameworks.
- Demonstrable experience operationalizing Desktop‑as‑a‑Service (DaaS) or Virtual Desktop Infrastructure (VDI) at scale.
- Experience developing coding/scripting using Bash, Python, Go, and Power Shell.
- Hands‑on experience with endpoint management platforms (Jamf, Intune, Jump Cloud, Azure Virtual Desktop, Chef, App Streaming).
- Experience with endpoint vulnerability management, patching, and secure configuration practices.
- Deep understanding of EDR, DLP and SASE solutions and optimizations of these security systems.
- Proficiency in network fundamentals (VPN, DNS, DHCP, routing, firewall, SASE and proxy configurations).
- Understanding of common compliance and security frameworks requirements including SOC 2, Cyber Essentials Plus, FedRAMP, GDPR, HIPAA, and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).