Client Engineer
Overview
As a Microsoft Endpoint/Client Engineer at Lubrizol, you will lead enterprise endpoint modernization and secure device management across Windows environments. You’ll collaborate with IT, security, and business stakeholders to advance digital transformation and optimize user experience. This role focuses on deploying modern desktop solutions, automating administration, and strengthening endpoint security at scale. You’ll contribute to a mission-driven culture that values science, sustainability, and inclusion, offering a meaningful opportunity to shape how employees work safely and efficiently.
Compensation / BenefitsCompetitive salary with performance-based bonus plans401(k) match + Age-Weighted Defined ContributionMedical, dental & vision coverageHealth Savings Account (HSA)Paid holidays, vacation, and parental leaveFlexible work environment
ResponsibilitiesSupport Microsoft Windows operating systems across enterprise hardware and environmentsEngineer, troubleshoot, and optimize endpoint hardware, software, drivers, Group Policy, and device management workflowsAdminister and support Microsoft Modern Desktop solutions using Intune and MDM for secure provisioning and lifecycle managementDrive best practices for Entra ID, Azure, Windows Autopilot, Autopatch, and Zero Touch deploymentSupport endpoint security, OS hardening, compliance initiatives, and digital transformation programsDevelop and maintain technical documentation, standards, and procedures for endpoint management and supportCollaborate with IT, security, and business stakeholders to improve device performance, automation, and user experienceUtilize PowerShell, WSL, and command-line tools to automate administration and operations
Key requirementsBachelor’s degree in Information Technology, a related field, or equivalent experienceMinimum of four years of hands-on experience supporting and managing endpoint devices and management platformsExperience with Microsoft Entra ID, Microsoft Intune, Windows Autopilot, Microsoft Autopatch, and Active DirectoryExperience managing Windows endpoints, deployment profiles, OS hardening, policy implementation, and Zero Touch deploymentsHands-on experience administering and supporting Windows 10/11 Enterprise environmentsUnderstanding of AD OUs, Group Policy Objects, and device driver managementWorking knowledge of cloud-based device management frameworks, endpoint security, compliance, and modern workplace conceptsProficiency with PowerShell automation, WSL, and command-line toolsAbility to document technical procedures and communicate with non-technical stakeholdersDemonstrated ability to resolve complex technical issues in distributed endpoint environments and work in a teamcollaborationcommunication with non-technical stakeholdersproblem-solving in distributed environmentsMicrosoft Entra IDMicrosoft IntuneWindows Autopilot