2

Remote Jamf Engineer Jobs in New York (NOW HIRING)

Senior Corporate Security Engineer

New York, NY · On-site +1

$125K - $171K/yr

This role can either be in-office or remote. Responsibilities Security Engineering & Control Design ... Experience securing Google Workspace, Okta, Jamf, Microsoft Intune, GitHub, Slack, Atlassian, AWS ...

Deep macOS security experience -- Jamf Pro, FleetDM, or equivalent MDM at scale * Strong IaC ... remote state, and CI pipelines shipped through MRs and code review, not tickets and manual steps

Tech Ops Manager

New York, NY · Remote

$80K - $150K/yr

This position collaborates closely with Engineering, Security, and Operations teams to support ... e.g., Jamf), and endpoint security. * Remote Operations: Proven experience managing IT infrastr ...

... engineers and expert research teams to produce some of the most innovative and cutting-edge ... Provide hands-on and remote support for macOS and Windows devices, covering setup, deployment ...

Remote Jamf Engineer information

What skills and qualifications are needed to thrive as a remote Jamf engineer?

To thrive as a Remote Jamf Engineer, you need expertise in macOS administration, Jamf Pro configuration, and device lifecycle management, often supported by relevant IT degrees and Jamf certifications. Familiarity with scripting languages (such as Bash or Python), mobile device management (MDM) platforms, and remote troubleshooting tools is typically required. Strong problem-solving skills, effective communication, and self-motivation are essential soft skills for remote work and client interactions. These abilities are crucial for ensuring secure, efficient Apple device management and delivering responsive IT support to distributed teams.

What is a remote Jamf engineer?

A Remote Jamf Engineer is an IT professional who specializes in managing and supporting Apple devices using Jamf, a popular enterprise management platform for macOS, iOS, iPadOS, and tvOS devices. Working remotely, they configure, deploy, and troubleshoot Apple devices for organizations, ensuring security and seamless operation. Their responsibilities often include creating and maintaining device management policies, providing technical support, and integrating Jamf with other IT systems, all while working from a location outside the traditional office environment.

What is the difference between Remote Jamf Engineer vs Remote Mobile Device Management (MDM) Specialist?

AspectRemote Jamf EngineerRemote Mobile Device Management (MDM) Specialist
CertificationsJamf Certified Technician, Apple Certified Support ProfessionalMDM platform certifications (e.g., VMware, MobileIron)
Work EnvironmentIT teams managing Apple devices in enterprise settingsIT teams managing various mobile devices across platforms
Industry UsagePrimarily in organizations with Apple device ecosystemsOrganizations using multiple mobile device platforms
Search/Comparison IntentFocus on Apple device management expertiseBroader mobile device management skills

While both roles involve managing mobile devices remotely, a Remote Jamf Engineer specializes in Apple devices using Jamf solutions, whereas a Remote MDM Specialist manages multiple device types across platforms. The Jamf Engineer's expertise is more focused on Apple ecosystems, making it ideal for organizations heavily invested in Apple products.

What are common challenges faced by remote Jamf engineers when managing Apple devices across distributed teams?

Remote Jamf Engineers often encounter challenges related to supporting a wide variety of Apple devices spread across multiple locations. Ensuring consistent device configuration, deploying updates, and troubleshooting issues remotely can be complex, especially with varying network environments and user technical proficiency. Communication and collaboration with IT support teams and end-users are essential to quickly resolve issues and maintain security compliance. Leveraging Jamf's automation and reporting tools can help streamline workflows and minimize disruptions.
What are the most commonly searched types of Jamf Engineer jobs in New York? The most popular types of Jamf Engineer jobs in New York are:
What job categories do people searching Remote Jamf Engineer jobs in New York look for? The top searched job categories for Remote Jamf Engineer jobs in New York are:
What cities in New York are hiring for Remote Jamf Engineer jobs? Cities in New York with the most Remote Jamf Engineer job openings:
Infographic showing various Remote Jamf Engineer job openings in New York as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% Remote job distribution.

Staff Enterprise and Cloud Engineer

Zocdoc

New York, NY • On-site, Remote

Other

Medical, Dental, Vision, Retirement, PTO

Re-posted 6 days ago


Job description

*Please note, we are open to remote candidates for this role.

Your Impact on Our Mission

Zocdoc's greatest asset is its people. As a Staff Enterprise, and Cloud Engineer on our Corporate Cloud Engineering team within Corporate IT, you'll make it possible for every Zocdoc'r to work securely and efficiently.

You will own the technical vision and strategy for identity and access management across our corporate stack, with Microsoft Entra ID, enterprise SSO/SCIM, and our SaaS and AI platforms at the center. You'll design scalable identity governance that keeps teams productive while reducing risk, and you'll lead crossfunctional initiatives that make secure, leastprivilege access the default, not an afterthought.

You'll also play a key role in the reliability and security of our core corporate infrastructure: helping ensure our AWS/Azure/GCP environments, onprem VMware footprint, and foundational services are patched, healthy, and wellrun so engineering and business teams can focus on shipping product and supporting patients and providers.

You'll enjoy this role if you are...

  • Technical Domain Expert: Deeply fluent in Microsoft Entra ID (Identity Governance, Access Packages), SSO/SCIM standards (SAML, OIDC), and custom integrations for a diverse SaaS and AI estate.
  • AI Governance Pioneer: Excited to scale AI platforms like OpenAI and Anthropic through thoughtful RBAC, tiered spend/quota governance, and secure, consumable access patterns.
  • Outcome-Oriented Automationist: Comfortable working the access queue to identify patterns, with a relentless focus on building the automation and self-service tools that retire repetitive manual work.
  • Collaborative Leader & Mentor: A cross-functional partner who models Staff-level behaviors by mentoring engineers, aligning stakeholders, and setting the technical standards that drive adoption across the organization.
  • Autonomous & Curious Professional: An outcome-driven leader who brings humility, curiosity, and a sense of humor to solving challenging problems in a growing, high-scale environment.

Your day to day is...

  • Strategic IAM Vision & Authority: Own the multi-year technical roadmap and architectural standards for Corporate and Cloud IAM (centered on Entra ID), acting as the technical authority who uplevels the team through design reviews and RFCs.
  • Scalable SSO & AI Governance: Architect secure SSO, SCIM, and JIT provisioning patterns for all enterprise tools, specifically owning the access posture, spend governance, and automated approval workflows for AI platforms (OpenAI, Claude, GCP).
  • Enterprise SaaS Architecture: Define configuration standards, security baselines, and lifecycle management patterns that scale across dozens of SaaS platforms. Drive consolidation and rationalization initiatives, and proactively close governance gaps before they become audit findings or incidents.
  • Automation & Toil Elimination: Field escalated tickets to identify and eliminate repeating manual work-converting complex access requests into self-service paths or automated workflows using Terraform, Python, or PowerShell.
  • Access Incident Response & On-Call: Participate in a tiered on-call rotation for triaging functional area outages, conditional access failures, compromised accounts, and break-glass events, and convert recurring pages into automated detections, runbooks, and self-healing workflows to reduce toil over time.
  • Endpoint Lifecycle & Software Distribution: Own the architectural engineering of endpoint configuration, software distribution, and provisioning workflows across Jamf (macOS) and Intune (Windows), partnering with InfoSec on hardening baselines and rolling out enterprise software (including AI developer tools) at scale.
  • Identity Hygiene & Infrastructure: Hands-on ownership of identity certificate and token lifecycles, GitHub access pipelines, and AWS landing-zone governance (Control Tower/IAM baselines) to ensure proactive monitoring and prevent configuration drift.
  • Zero Trust & Device Posture: Partner with Security to drive Zero Trust initiatives, integrating Conditional Access with device posture data from Intune, Jamf, and CrowdStrike across the broader SaaS estate (Snowflake, Jira, Google Workspace).
  • Compliance & Audit Engineering: Lead IAM workstreams for HITRUST and SOC2 cycles by translating audit requirements into reusable engineering patterns and participating in a critical on-call rotation for access-related incidents.
  • Trusted Cross-Functional Partner: Serve as a trusted technical partner to InfoSec, People Systems, Compliance, and Engineering leadership. Influence roadmap priorities based on deep understanding of stakeholder needs, and represent IT Engineering in strategic planning, audit cycles, and incident response.
  • Org-Level Visibility: Lead initiatives whose impact is recognized at the organizational level identity governance transformation, least-privilege enforcement at scale, or AI access governance translating business goals into actionable plans and aligning multiple teams behind them.

You'll be successful in this role if you have...

  • Scope of Prior Ownership: Track record leading identity or enterprise platform initiatives at a multi-thousand-employee organization, with measurable outcomes (toil eliminated, audit findings reduced, time-to-access shortened, or comparable business metrics).
  • Influence Without Authority: Demonstrated ability to drive adoption of standards across teams through RFCs, design reviews, and architectural pattern-setting.
  • Architectural Leadership & Influence: 10+ years in IT/Systems (mid-to-large scale) as a "player-coach" with a proven track record of defining adoption-ready standards and writing the design docs/RFCs that become the organization's source of truth.
  • Entra ID & Identity Governance: Deep expertise in Microsoft Entra ID (Conditional Access, PIM, Identity Governance) and the ability to own the entire identity lifecycle, including onboarding/offboarding flows and permission hygiene.
  • Scalable Integration Engineering: Extensive experience delivering SSO and SCIM integrations (SAML, OIDC/OAuth) across a massive SaaS estate, with a focus on replacing manual access work with programmatic or self-service provisioning.
  • Process Automation & Toil Reduction: A systems-thinker comfortable being measured by toil eliminated; expert at automating workflows across IdP, HRIS (Workday), and SaaS platforms via APIs to remove repetitive manual tasks.
  • Modern AI & Ecosystem Management: Experience governing IAM, spend, and quotas for AI platforms (OpenAI, Anthropic) and fluency in using Generative AI tools (Claude Code, LLMs) to accelerate engineering velocity.
  • Compliance & Security Hygiene: Experience in audit-sensitive environments ( HITRUST/SOC2 evidence collection) and owning the security hygiene of the identity certificate and token lifecycle.
  • Enterprise Platform Oversight: Familiarity with the broader endpoint and security ecosystem, including Intune, Jamf, Google Workspace, and CrowdStrike, to ensure a cohesive identity posture across all platforms.
  • Infrastructure-as-Code & AWS: Hands-on experience with AWS infrastructure and networking primitives (VPC, DNS, Load Balancing) to debug connectivity, utilizing AWS CDK, Terraform, Python, or PowerShell for automation.

NYC 

  • Unlimited Vacation
  • 100% paid employee health benefit options (including medical, dental, and vision)
  • Commuter Benefits
  • 401(k) with employer funded match
  • Corporate wellness program with Wellhub
  • Sabbatical leave (for employees with 5+ years of service)
  • Competitive paid parental leave and fertility/family planning reimbursement
  • Cell phone reimbursement
  • Catered lunch everyday along with beverages and snacks
  • Employee Resource Groups and ZocClubs to promote shared community and belonging
  • Great Place to Work Certified

ZocDoc logo

About ZocDoc

Sourced by ZipRecruiter

Zocdoc is the country's leading digital health marketplace that helps patients easily find and book the care they need. Each month, millions of patients use our free service to find nearby, in-network providers, compare choices based on verified patient reviews, and instantly book in-person or video visits online. Providers participate in Zocdoc's Marketplace to reach new patients to grow their practice, fill their last-minute openings, and deliver a better healthcare experience. Founded in 2007 with a mission to give power to the patient, our work each day in pursuit of that mission is guided by our six core values. Zocdoc is a private company backed by some of the world's leading investors, and we believe we're still only scratching the surface of what we plan to accomplish. Zocdoc is a mission-driven organization dedicated to building teams as diverse as the patients and providers we aim to serve. In the spirit of one of our core values - Together, Not Alone , we are a company that prides itself on being highly collaborative, and we believe that diverse perspectives, experiences, and contributors make our community and our platform better. We're an equal-opportunity employer committed to providing employees with a work environment free of discrimination and harassment. Applicants are considered for employment regardless of race, color, ethnicity, ancestry, religion, national origin, gender, sex, gender identity, gender expression, sexual orientation, age, citizenship, marital or parental status, disability, veteran status, or any other class protected by applicable laws.

Industry

Internet websites and web search portals

Company size

501 - 1,000 Employees

Headquarters location

New York, NY, US

Year founded

2007