Western Digital
Senior Mac Engineer
Irvine, CA, us · Posted 50m ago
Job Description
We are seeking a highly skilled Senior Mac Engineer to design, implement, and support enterprise Apple device management solutions. This role will be a part of a team within a fast-paced, dynamic environment, focused on the architecture and lifecycle management of macOS, iOS, and iPadOS devices using modern MDM platforms, including Jamf and Microsoft Intune.
Key Responsibilities
- Design and implement scalable Apple device management solutions using Jamf Pro and Microsoft Intune
- Architect zero-touch deployment workflows leveraging Apple Business Manager (ABM) and Automated Device Enrollment (ADE)
- Manage the full lifecycle of macOS and iOS devices (provisioning, configuration, patching, compliance, and decommissioning)
- Develop and maintain configuration profiles, policies, and scripts (Bash, Zsh, or Python)
- Integrate Apple devices into enterprise identity platforms (Azure AD / Entra ID)
- Implement and enforce security baselines aligned with CIS benchmarks and organizational standards
- Manage OS upgrade strategies and application deployment (PKG, DMG, VPP apps)
- Troubleshoot complex endpoint, authentication, and MDM issues across macOS/iOS environments
- Collaborate with security, networking, and infrastructure teams to ensure compliance and performance
- Automate workflows and reporting using APIs and scripting
- Provide Tier 3 escalation support and mentor junior engineers
- Partner with Global Service Desk to operationalize Apple support at scale
- Create structured troubleshooting workflows for common macOS/iOS issues
Create and maintain end-user documentation for Apple devices
Required Qualifications
- 5–8+ years of experience managing Apple devices in an enterprise environment
- Jamf certifications (Jamf 300/400)
- Deep expertise with Jamf Pro for macOS/iOS/tvOS
- Strong experience with Microsoft Intune (Endpoint Manager) for macOS/iOS
- Hands-on experience with Apple Business Manager (ABM)
- Strong scripting skills (Bash, Zsh, or Python)
- Experience with macOS internals, security frameworks, and system architecture
- Knowledge of identity integration (Azure AD / Entra ID, SSO, Conditional Access)
- Experience with device compliance, encryption (FileVault), and security tooling
- Familiarity with networking fundamentals (VPN, Wi-Fi profiles, certificates)
Preferred Qualifications
- Experience with Microsoft Entra ID (formerly Azure AD) and Conditional Access policies
- Experience integrating with Entra or other IdPs
- Knowledge of compliance frameworks (SOC 2, ISO 27001, CIS benchmarks)
- Background in user enablement, training, or technical writing
- Familiarity with tools like Autopkg, Setup Manager, Installomator
- Understanding of Blueprints and Compliance delivery mechanisms
- Familiarity with Platform SSO configurations
#LI-TD1
Compensation & Benefits Details
- An employee’s pay position within the salary range may be based on several factors including but not limited to (1) relevant education; qualifications; certifications; and experience; (2) skills, ability, knowledge of the job; (3) performance, contribution and results; (4) geographic location; (5) shift; (6) internal and external equity; and (7) business and organizational needs.
- The salary range is what we believe to be the range of possible compensation for this role at the time of this posting. We may ultimately pay more or less than the posted range and this range is only applicable for jobs to be performed in California, Colorado, New York or remote jobs that can be performed in California, Colorado and New York. This range may be modified in the future.
- If your position is non-exempt, you are eligible for overtime pay pursuant to company policy and applicable laws. You may also be eligible for shift differential pay, depending on the shift to which you are assigned.
You will be eligible to be considered for bonuses under either WD’s Short Term Incentive Plan (“STI Plan”) or the Sales Incentive Plan (“SIP”) which provides incentive awards based on Company and individual performance, depending on your role and your performance. You may be eligible to participate in our annual Long-Term Incentive (LTI) program, which consists of restricted stock units (RSUs) or cash equivalents, pursuant to the terms of the LTI plan. Please note that not all roles are eligible to participate in the LTI program, and not all roles are eligible for equity under the LTI plan. RSU awards are also available to eligible new hires, subject to WD's Standard Terms and Conditions for Restricted Stock Unit Awards.
- We offer a comprehensive package of benefits including paid vacation time; paid sick leave; medical/dental/vision insurance; life, accident and disability insurance; tax-advantaged flexible spending and health savings accounts; employee assistance program; other voluntary benefit programs such as supplemental life and AD&D, legal plan, pet insurance, critical illness, accident and hospital indemnity; tuition reimbursement; transit; the Applause Program; employee stock purchase plan; and the WD Savings 401(k) Plan.
- Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company’s sole discretion, consistent with the law.
Notice To Candidates: Please be aware that WD and its subsidiaries will never request payment as a condition for applying for a position or receiving an offer of employment. Should you encounter any such requests, please report it immediately to WD Ethics Helpline or email compliance@wdc.com.