> Markdown version of [/jobs/ext/2691511-lead-mac-platform-engineer](https://www.wearedevelopers.com/jobs/ext/2691511-lead-mac-platform-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Mac Platform Engineer - **Company:** Capital One Financial Corporation - **Location:** Richmond, VA, United States - **Experience:** Expert - **Salary:** $164,800.0 - $188,100.0 - **Contract:** Permanent contract - **Skills:** Testing (Software), Agile Methodology, AppleScript (Scripting Language), Business Software, Software Debugging, Shell Script, Software Vulnerability Management, Symantec, Scripting, Falcon Platform, Nessus, Casper Suite, Tools for Reporting, Qualys - **Published:** September 3, 2026 - **Apply:** https://www.capitalonecareers.com/job/richmond/lead-mac-platform-engineer/1732/100095713120 ## About the Role * High School Diploma, GED, or equivalent certification * At least 2 years of experience of managing macOS devices leveraging JAMF Pro * At least 2 years of experience with Vulnerability Management and patching * At least 2 years of experience using packaging tools (JAMF's Composer, Apple's package utility, or Suspicious Package) * At least 2 years of experience developing Shell scripts, AppleScript, or Python scripts, * Bachelor's Degree * One or more of the following JAMF Pro Certifications: JAMF Pro 200, 300, or 400. * 2+ years of experience in Change Management process * 2+ years of experience working within an Agile environment * 2+ years of experience with vulnerability management reporting tools: Qualys, Crowdstrike, Symantec, Trellix, or Nessus. * Experience with Mac Admins community and available open source solutions ## Description Capital One is looking for a Mac Platform Engineer to join our growing Mac Engineering team. The platform has grown to support over 40,000 endpoints in recent years, as one of the quickest growing platforms at Capital One. The engineering role will be focused on macOS vulnerability management, ensuring our fleet remains secure and "vuln-free". The engineer will have opportunities to identify and implement solutions for improving our vulnerability management processes and observability, maintaining existing processes and assisting other members of our engineering team with software testing/validation., * Package, test, and schedule out routine patches for business software when vulnerability patch fixes are released * Review vulnerability management reports and investigate devices with active vulnerabilities to drive down vulnerable endpoints * Engage with our vulnerability management partners for assistance with debugging false-positives, or getting more information related to vulnerabilities * Escalate vulnerabilities/patching operations that need an exception due to potential user impact * Assist with business-as-usual packaging requests for new software and software updates * Research and suggest improvements to our vulnerability management posture on endpoints to improve our overall compliance metrics * Periodically review existing automation processes to ensure they are working as expected and automatically updating client software * Assist with testing and validation of new software and agents the engineering team is planning to deploy * Improve vulnerability observability with telemetry from Mac endpoints to better inform decisions with data and alert on problems as they arise ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 129 - Now that's what I call private data!](https://www.wearedevelopers.com/magazine/468-dev-digest-129-now-that-s-what-i-call-private-data) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 139 - Soft and hard queries](https://www.wearedevelopers.com/magazine/487-dev-digest-139-soft-and-hard-queries)