Senior Workstation Infrastructure Engineer

Insight Global
New York, NY, United States
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$104,000.0 - $128,960.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Active Directory Application Packaging Desktop Computing Linux Image Management Log Analysis System Center Configuration Manager Virtual Desktops Citrix Systems Windows PowerShell Server Administration
+7 more
VMware Horizon View Software Vulnerability Management Backend Powerquery Information Technology Patch Management Qualys

Job description

Our client, a global financial services firm, is looking for a Workstation Infrastructure Engineer to join their AMER IT team as a consulting resource on the workstation engineering group. This is a senior, hands-on backend engineering role, not a desktop support or admin position. You will own workstation infrastructure end-to-end, including patch management and security remediation, VDI backend engineering, SCCM/MECM administration, and Active Directory / Group Policy operations. You will serve as the Level 3 escalation point for the IT Support team and partner directly with the vulnerability management function on remediation. This role is replacing a long-tenured consultant on the team. The expectation is that you can hit the ground running with minimal ramp on the fundamentals. What You’ll Do

  • Own workstation patch management and security vulnerability remediation across laptops, desktops, and virtual desktops using SCCM/MECM
  • Engineer and maintain the SCCM/MECM environment, including application packaging, deployment, compliance reporting, and hands-on remediation when automated cycles fail
  • Support and troubleshoot VDI infrastructure (VMware Horizon and/or Citrix), including backend components, master image management, profile management, and session performance
  • Administer Active Directory and Group Policy, including trusts, FSMO role management, replication troubleshooting, and cross-domain resource access
  • Partner with the vulnerability management team to reconcile Qualys (or equivalent) findings against SCCM compliance state and drive remediation to closure
  • Automate mundane workstation and patch operations using PowerShell and Power Query
  • Own projects independently from scoping through delivery, keeping leadership informed on status and blockers
  • Serve as the Level 3 escalation point for the IT Support team on complex workstation, VDI, AD, and patching issues
  • Coordinate directly with end users to schedule maintenance windows and handle patch completion when the automated cycle fails

Requirements

  • 5+ years in workstation infrastructure engineering, with hands-on backend depth (not primarily desktop support or service desk)
  • Expert-level SCCM/MECM administration, including application packaging, software update management, deployment troubleshooting, and client-side log analysis (execmgr.log, AppEnforce.log, AppDiscovery.log, etc.)
  • Strong Windows OS engineering across current supported versions
  • Working backend experience with VMware Horizon and/or Citrix Virtual Apps and Desktops, including component architecture, master image management, and profile solutions (FSLogix, App Volumes, or equivalent)
  • Deep Active Directory and Group Policy expertise, including FSMO roles, trusts, and replication
  • PowerShell scripting for automation, reporting, and endpoint operations
  • Power Query for workstation reporting and data reconciliation
  • Financial industry experience (3+ years preferred)
  • Strong written and verbal communication, with the ability to document work and coordinate with end users directly
  • Bachelor’s degree in Computer Science, MIS, or a related field preferred

Nice to Have Skills & Experience

  • Qualys or equivalent vulnerability management platform experience
  • Linux workstation or server administration exposure
  • Experience replacing manual workstation processes with configuration-as-code or automation frameworks
  • Prior experience in a Level 3 escalation role supporting a front-office or trading floor user base

Benefits & conditions

Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.insightglobal.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Structuring and scaling the backend engineering team

Stefan Lingler Stefan Lingler +1 · Coffee With Developers

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

1:12 min

Choosing TypeScript for complex backend applications

Maximilian Otto Maximilian Otto · World Congress 2024

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

Videos

See all

Related articles

See all