1

Jamf Engineer Jobs in California (NOW HIRING)

Platform Engineering & Endpoint Management • Architect and govern endpoint platforms including: o Microsoft Intune / Endpoint Manager o SCCM / Configuration Manager (co-management scenarios) o Jamf ...

Infrastructure Engineer

Burbank, CA · Hybrid

$95K - $115K/yr

Infrastructure Engineer Location: Burbank, CA Reporting To: VP, Infrastructure Technology Legendary ... Act as platform owner for Intune and Jamf MDM systems. * Manage identity integrations and app ...

IT Engineer

San Jose, CA · On-site

$100K - $180K/yr

About the Role We're hiring an IT Engineer to own Hark's internal IT infrastructure end-to-end ... Hands-on experience with modern Mac fleet management (Kandji or Jamf). * Familiarity with SSO and ...

IT Engineer

San Jose, CA · On-site

$100K - $180K/yr

About the Role We're hiring an IT Engineer to own Hark's internal IT infrastructure end-to-end ... Hands-on experience with modern Mac fleet management (Kandji or Jamf). * Familiarity with SSO and ...

IT Engineer I

Los Angeles, CA · On-site

$101K - $133K/yr

We're hiring an IT Engineer l to join our Engineering Team. Oscar is the first health insurance ... Support the Mac OS fleet using Jamf, ensuring optimal performance and security. * Develop and ...

End Point Engineer

Modesto, CA · On-site

$35 - $50/hr

Description Boyett Petroleum is seeking a highly skilled End Point Engineer to join our IT team as ... Endpoint management tools (Intune, SCCM, JAMF, etc.) * Identity & access management (AD, Entra ID ...

The Endpoint Engineering team is a global organization responsible for the design, standardization ... Jamf. * Lead and manage complex endpoint projects from planning to execution. * You partner with ...

Jamf, Intune, Apple Business Manager, Code42 CrashPlan, Carbon Black Defense, MacOS operating systems and all supporting technologies. The engineer will be accountable for: • Design and support of ...

IT Engineer I

Los Angeles, CA · Hybrid

$101K - $133K/yr

We're hiring an IT Engineer l to join our Engineering Team. Oscar is the first health insurance ... Support the Mac OS fleet using Jamf, ensuring optimal performance and security. * Develop and ...

Senior IT Engineer

Los Angeles, CA · Hybrid

$149K - $195K/yr

As a Senior IT Engineer, you will be the primary technical point of contact for the entire ... You will bridge the gap between complex infrastructure--including Okta, JAMF, and Google Workspace ...

Senior IT Engineer

Los Angeles, CA · On-site

$149K - $195K/yr

As a Senior IT Engineer, you will be the primary technical point of contact for the entire ... You will bridge the gap between complex infrastructure-including Okta, JAMF, and Google Workspace ...

About the Role We are seeking a highly skilled and motivated IT Helpdesk and Operations Engineer to ... Manage endpoint security using tools like Jamf/Kandji & Intune for unified device management.

IT Helpdesk Engineer

Santa Clara, CA · On-site

$90K - $120K/yr

About the Role We are seeking a highly skilled and motivated IT Helpdesk and Operations Engineer to ... Manage endpoint security using tools like Jamf/Kandji & Intune for unified device management.

Mac/iOS Engineer

Cupertino, CA

$63.75 - $88/hr

... JAMF Casper for management of OSX devices. Certification highly-preferred Success in supporting and administering large implementations of iOS and OSX devices in a multi-location / geography ...

Showing results 41-60

Jamf Engineer information

See California salary details

$23.7K

$106.5K

$169.7K

How much do jamf engineer jobs pay per year?

As of Aug 6, 2026, the average yearly pay for jamf engineer in California is $106,543.00, according to ZipRecruiter salary data. Most workers in this role earn between $82,400.00 and $131,800.00 per year, depending on experience, location, and employer.

What does a Jamf engineer do?

A typical day for a Jamf Engineer involves managing and supporting Apple devices using Jamf Pro, resolving technical issues, and deploying software or configuration updates to macOS and iOS devices. You’ll work closely with IT teams to design automated workflows, enforce security policies, and ensure compliance across all endpoints. Collaboration with help desk staff and end users is common, providing guidance and troubleshooting support. This dynamic environment requires balancing regular maintenance tasks with project work, such as new device rollouts or system integrations.

What is a Jamf engineer?

A Jamf Engineer is responsible for deploying, managing, and troubleshooting Apple devices within an organization using Jamf software. They ensure seamless integration, security compliance, and optimal performance of macOS, iOS, and other Apple devices. Their role includes scripting, automation, software packaging, and policy enforcement to enhance IT workflows. Additionally, they provide technical support, monitor system health, and maintain documentation for efficient device management.

What are the key skills and qualifications needed to thrive as a Jamf engineer?

To thrive as a Jamf Engineer, you need expertise in Apple device management, scripting (such as Bash or Python), and macOS/iOS administration, often backed by relevant technical degrees or equivalent experience. Familiarity with Jamf Pro, Apple Business Manager, MDM solutions, and certifications like Jamf Certified Tech or Admin is highly valuable. Strong problem-solving skills, attention to detail, and effective communication are essential soft skills in this role. These competencies ensure secure, scalable device deployments and seamless collaboration across IT and end-user teams.

What are the most commonly searched types of Jamf Engineer jobs in California? The most popular types of Jamf Engineer jobs in California are:
What job categories do people searching Jamf Engineer jobs in California look for? The top searched job categories for Jamf Engineer jobs in California are:
What cities in California are hiring for Jamf Engineer jobs? Cities in California with the most Jamf Engineer job openings:
Infographic showing various Jamf Engineer job openings in California as of August 2026, with employment types broken down into 67% Full Time, and 33% Contract. Highlights an 100% In-person job distribution, with an average salary of $106,543 per year, or $51.2 per hour.

Other

Posted 6 days ago


Job description

We're hiring an experienced Staff IT Systems Engineer to be the senior technical owner of Obsidian's identity, endpoint, and IT platform foundation, and to help us operate that foundation as code. You will own how identity flows from our HR system into Okta and out to every application, how our device fleet is managed and hardened, and how the configuration behind all of it lives as version-controlled, AI- and human-authored code. You will set the bar for how a modern, security-first IT organization runs in an AI-forward company.

This is a high-leverage seat at a pivotal moment. Our identity platform is being stood up with a lifecycle orchestration layer in front of it, and we are moving the whole stack onto an infrastructure-as-code operating model. We are looking for a senior technical owner to set the bar for identity architecture, configuration-as-code, AI-augmented operations, and how a lean IT function leverages AI and automation to grow the function. 

You will report directly to the VP of Business Systems, Data & IT. You will partner closely with Security, DevOps, HR, Finance, and the go-to-market teams, and you will collaborate with teammates across the Business Systems, Data & IT function.

What You'll Do

Own the identity foundation

  • Serve as the senior technical owner of Okta as our primary identity provider, covering Universal Directory, SSO, MFA (Okta Verify FastPass and FIDO2), conditional access, Device Access, and Okta Identity Governance for access certifications and reporting.
  • Own the lifecycle orchestration that turns HR events into access. This includes joiner, mover, and leaver flows from our HRIS through the orchestration layer into Okta, with same-hour offboarding.
  • Own the SSO application catalog across our estate of applications: sequence the integrations, enforce group-based access by role, and make the catalog the definition of what is sanctioned.

Operate IT as code

  • Manage core platform configuration as version-controlled code in our corporate GitHub organization. This spans Okta policies, groups, group rules, app assignments, and governance campaigns; Jamf profiles, policies, and smart groups; the GitHub organization itself; and the underlying Google Cloud foundation, using OpenTofu and Terraform.
  • Bring imperative surfaces under the same discipline. Manage Google Workspace through scripts in git, run keyless through Workload Identity Federation, with verification and drift reporting where true state management is not possible.

Set the standard for AI-augmented operations

  • Author configuration with AI assistance from the start. You will set the team standard for what good looks like here.
  • Use read-only tooling for live observability, drift triage, and log investigation, with humans gating every production change.
  • Build AI-assisted IT support and self-service workflows on our automation platform so routine requests for access, provisioning, and license changes resolve without a ticket queue and a manual handoff.

Automate and harden the fleet

  • Own endpoint management across platforms with device trust and assurance wired into access policies, automated third-party patching, and application allowlisting.
  • Advance zero-trust network access and secrets-management patterns so identity and device health decide access.

Raise the bar across IT

  • Set technical standards for the IT function, document them so they scale beyond your own hands, mentor teammates, and be the person others learn identity and automation from.
  • Partner with the VP to shape IT priorities and sequencing, and represent IT's requirements in cross-functional security, compliance, and platform decisions.
What You'll Bring

We know few candidates match every line below. If you own most of the required list and are excited by the rest, we want to hear from you.

Requirements:

  • 8 or more years building and operating IT systems, identity, or platform infrastructure in production, with clear ownership of the systems you ran.
  • Deep, hands-on Okta ownership across SSO, MFA, Universal Directory, Lifecycle Management, and conditional access, ideally including Identity Governance. You have owned an Okta tenant end to end.
  • Hands-on Jamf Pro expertise managing a production Mac fleet, including configuration profiles, policies, smart groups, and patch workflows.
  • Proven infrastructure-as-code ownership with Terraform or OpenTofu managing real infrastructure or SaaS configuration in production, shipped through a pull-request-based GitOps workflow such as GitHub Actions.
  • Daily use of AI coding tools to ship production work.
  • Hands-on MDM depth with Jamf or Intune at fleet scale, including device compliance and trust.
  • Scripting fluency in Python, PowerShell, or a comparable language, and comfort automating against SaaS and platform APIs.
  • Clear written and verbal communication. You can explain an access policy or automation decision to an engineer and to a business stakeholder with equal clarity.

Preferred

  • Experience with a lifecycle or identity-governance orchestration layer and with HRIS-driven provisioning (Rippling, Workday, or similar).
  • Google Workspace administration at scale, including GAM7.
  • Secrets and non-human credential management (HashiCorp Vault, Doppler, Secret Manager, or equivalent).
  • Workflow and integration automation on an iPaaS or agent platform such as Workato, including human-in-the-loop steps and MCP-style tooling.
  • Zero-trust network access (Jamf Connect, Zscaler, Tailscale, or similar) and enterprise browser deployments.
  • Exposure to compliance-driven controls and evidence automation for SOC 2 or ISO 27001 and 27701, and tooling such as Drata.
  • Google Cloud Platform and familiarity with agentic or MCP tooling for operations.
  • B2B SaaS or cybersecurity domain background.