Domain Architect, Windows Endpoint
at Alphabet
Posted 18 hours ago
No clicks
- Compensation
- Not specified USD
- City
- Dallas
- Country
- United States
Currency: $ (USD)
Lead the Windows Endpoint domain architecture for 30,000+ endpoints, delivering secure, scalable and modern workplace solutions. Define endpoint management patterns using Intune, SCCM, Autopilot, and cloud integrations, while enforcing governance over deployment standards. Implement security and compliance controls (SEC, SOX, PCI), modernize the workspace with Windows 11 and Azure Virtual Desktop, and reduce manual effort through automation. This hybrid role is in-office Tue-Wed-Thu and can be based in Dallas, TX (also Charlotte, NC or Malvern, PA).
What You’ll Do:
- Architect & Innovate: Define and evolve endpoint management patterns leveraging Intune, SCCM, Autopilot, and cloud integrations.
- Technology Governance: Oversee BOAT (Bringing On Additional Technologies) reviews to ensure minimal overlap and compliance with deployment standards.
- Secure & Comply: Implement solutions aligned with SEC, SOX, PCI requirements, enforcing DLP, least privilege, and auditability.
- Modernize the Workplace: Drive adoption of Windows 11, Azure Virtual Desktop, and automation through Logic Apps, Runbooks, and other Azure tools.
- Optimize Operations: Reduce manual effort with automation (PowerShell, GitHub Actions) and streamline support workflows.
- Collaborate & Align: Partner with engineering, security, and support teams to deliver solutions that meet business needs and technical standards.
- Document & Govern: Maintain architecture artifacts, reference models, and approval workflows (ARB/MCC/SAR/SARB).
Your Expertise:
Operating Systems: Windows 10/11 (macOS experience a plus)
Endpoint Management: Intune, SCCM, Autopilot, AVD (JAMF helpful)
Security Tools: CrowdStrike, Tanium, Digital Guardian, Elastic SIEM
Cloud & Automation: Azure, Logic Apps, Power Automate, GitHub Actions
Networking: Zscaler, Cisco/Aruba segmentation, firewall validation
Scripting & DevOps: PowerShell, JSON, YAML, Git (C# legacy)
Compliance: Data residency, export controls, audit logging, PII/PHI handling
Qualifications:
Minimum of eight years related work experience, with at least three years in a technology architect role.
Undergraduate degree or equivalent combination of training and experience; graduate degree preferred.
Special Factors
Sponsorship
Vanguard is not offering visa sponsorship for this position.About Vanguard
At Vanguard, we don't just have a mission—we're on a mission.
To work for the long-term financial wellbeing of our clients. To lead through product and services that transform our clients' lives. To learn and develop our skills as individuals and as a team. From Malvern to Melbourne, our mission drives us forward and inspires us to be our best.
How We Work
Vanguard has implemented a hybrid working model for the majority of our crew members, designed to capture the benefits of enhanced flexibility while enabling in-person learning, collaboration, and connection. We believe our mission-driven and highly collaborative culture is a critical enabler to support long-term client outcomes and enrich the employee experience.

