Who is Forcepoint?
Forcepoint simplifies security for global businesses and governments. Forcepoint’s all-in-one, truly cloud-native platform makes it easy to adopt Zero Trust and prevent the theft or loss of sensitive data and intellectual property no matter where people are working. 20+ years in business. 2.7k employees. 150 countries. 11k+ customers. 300+ patents. If our mission excites you, you’re in the right place; we want you to bring your own energy to help us create a safer world. All we’re missing is you!
About the RoleWe are seeking a Staff/Principal Infrastructure Automation & AI Ops Engineer to modernize enterprise infrastructure operations across endpoint, identity, Microsoft 365, network, cloud, and IT service management. This is not a traditional systems administration role. The successful candidate will establish an automation-first, API-driven, AI-assisted operating model that replaces manual administration with policy-as-code, automated remediation, and intelligent operational workflows, extending the governance and security foundation already built across the environment.
The engineer will act as a technical authority and architecture leader, unifying Intune, Entra ID, Microsoft 365, CrowdStrike Falcon, CyberArk, Freshservice, AWS, Commvault, and Juniper NGFW infrastructure into a single automation and telemetry architecture. The ideal candidate moves fluidly between writing Python, PowerShell, and Bash, troubleshooting a production authentication issue, reviewing architecture, and defining an AI-driven remediation strategy.
The organization operates as customer zero for Forcepoint's Data Security Everywhere (DSE) / DLP platform, piloting AI-assisted data security and remediation workflows ahead of general availability. This engineer will help shape how that integration extends into the broader automation and AI Ops corporate architecture.
Key ResponsibilitiesEndpoint Engineering & AutomationOwn the architecture and standards for the Windows endpoint platform in Intune. Design lifecycle automation covering provisioning, configuration, compliance, patching, and retirement, and sustain current patch and compliance rates as the fleet scales. Engineer Windows Autopilot workflows that enforce standard-user deployment and close local-admin exposure. Build automated software inventory auditing by reconciling Intune with CrowdStrike Falcon Discover, and design self-healing remediation for common failures.
Identity, Zero Trust & Access AutomationServe as a technical authority for Entra ID identity architecture. Automate Joiner, Mover, and Leaver workflows across Entra ID, M365, and Freshservice. Mature Conditional Access from audit mode into full enforcement. Develop AI-assisted entitlement and RBAC analysis that surfaces excessive privilege, stale access, and segregation-of-duties risk. Partner on Beyond Trust privileged-access automation, including onboarding, credential rotation, and session monitoring.
Microsoft 365 Platform EngineeringArchitect and automate Entra ID, Intune, Exchange Online, SharePoint Online, Teams, and Conditional Access administration through Microsoft Graph and PowerShell. Establish configuration baselines and drift detection, and carry forward the SharePoint governance and versioning cleanup already underway.
Infrastructure-as-Code & Automation EngineeringOwn the automation engineering practice enterprise-wide. Set standards for Terraform, Bicep, and scripting frameworks in place of one-off scripts. Build CI/CD pipelines and API-driven integrations across Intune, Entra ID, Freshservice, AWS, and Juniper, and deliver reusable automation modules other engineers can build on. Convert high-volume manual processes into automated Freshservice service catalog workflows.
AI Ops & Intelligent AutomationDeliver production AI-assisted capabilities, not pilots, across endpoint, identity, network, cloud, and Service Desk. Implement anomaly detection and event correlation, intelligent ticket classification and routing in Freshservice, and predictive models for certificate expiration, patch compliance, and firewall licensing. Ensure every automated action carries authentication, authorization, logging, approval, and rollback controls, with human approval gates on high-risk changes.
Serve as a technical partner on the organization's customer-zero engagement with Forcepoint DSE/DLP, helping define how AI-assisted data security detection and remediation workflows integrate with the broader endpoint, identity, and ITSM automation architecture.
Observability & Security GuardrailsBuild a unified telemetry view spanning endpoint, identity, network, cloud, M365, and ITSM. Implement secrets management through Key Vault, Secrets Manager, or Vault, eliminate hardcoded credentials and standing privileged access, and enforce least-privilege RBAC with full audit trails for every automated action.
Technical LeadershipDefine the architecture standards adopted across Infrastructure & Operations. Lead design reviews, mentor engineers, and partner with Network, Cloud, Security, Identity, and Service Desk leaders, shaping standards across teams without relying on direct reporting authority.
Required Qualifications- 10+ years in infrastructure, systems, or platform engineering, with demonstrated experience designing automation (not just executing predefined procedures) in large enterprise environments.
- Expert-level Microsoft Intune and Windows endpoint management, including Autopilot and local-admin/LAPS enforcement.
- Strong hands-on Entra ID experience: SSO, MFA, Conditional Access, Zero Trust, identity lifecycle, SCIM/API-based provisioning.
- Advanced PowerShell, Python, and/or Bash; strong REST API/webhook integration and Git experience; experience with Terraform, Bicep, or Ansible and CI/CD pipelines.
- Deep Microsoft 365 administration, including Microsoft Graph API and SharePoint governance.
- Experience with EDR platforms (CrowdStrike Falcon preferred) and vulnerability/patch management reporting.
- Understanding of 802.1X, enterprise PKI/CA, certificate deployment via MDM, and NAC/authentication troubleshooting.
- Demonstrated experience with AI-assisted or event-driven production automation, including anomaly detection and automated remediation with appropriate security guardrails.
- Experience with AWS platform engineering and account hygiene.
- Direct Freshservice (or ServiceNow/Jira Service Management) administration and API integration experience.
- Experience with CyberArk or equivalent PAM platforms, and Commvault or equivalent backup platforms.
- Network automation using Python/Ansible; experience with observability/telemetry pipelines.
- Experience with LLM/AI agent frameworks and enterprise AI governance.
- Familiarity with Forcepoint DSE/DLP or Claude-based AI security tooling, or interest in shaping an early customer-zero AI/data-security integration.
- Microsoft 365 Certified: Enterprise Administrator Expert; Terraform Associate; AWS/Azure professional certification.
- 60–80%+ of repeatable endpoint tasks automated; patch/compliance rates sustained or improved.
- Automated Joiner/Mover/Leaver workflows live; Conditional Access moved from audit to full enforcement.
- Infrastructure changes delivered through Git/CI/CD with reusable modules adopted across teams.
- Proactive certificate, firewall, and endpoint compliance monitoring in place.
- Multiple AI Ops use cases in production (ticket classification, automated low-risk remediation) with measurable reduction in mean time to detect/resolve.
This role is measured by outcomes, not ticket volume: tickets eliminated, processes automated, incidents prevented, risk reduced, engineering capacity created.
The right candidate can architect a solution, build the automation, secure it, measure it, and roll it back if needed. This is an automation and platform architect who codes fluently, not an administrator who happens to know Intune and Freshservice.
Don’t meet every single qualification? Studies show people are hesitant to apply if they don’t meet all requirements listed in a job posting. Forcepoint is focused on building an inclusive and diverse workplace – so if there is something slightly different about your previous experience, but it otherwise aligns and you’re excited about this role, we encourage you to apply. You could be a great candidate for this or other roles on our team.
The policy of Forcepoint is to provide equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status and to affirmatively seek to advance the principles of equal employment opportunity.
Forcepoint is committed to being an Equal Opportunity Employer and offers opportunities to all job seekers, including job seekers with disabilities. If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access the Company’s career webpage as a result of your disability. You may request reasonable accommodations by sending an email to [email protected].
Applicants must have the right to work in the location to which you have applied.
Skills Required
- 10+ years in infrastructure, systems, or platform engineering, including designing automation in large enterprise environments
- Expert Microsoft Intune and Windows endpoint management experience, including Autopilot and local-admin/LAPS enforcement
- Strong Entra ID experience with SSO, MFA, Conditional Access, Zero Trust, identity lifecycle, and SCIM/API-based provisioning
- Advanced PowerShell, Python, and/or Bash skills
- Strong REST API, webhook integration, and Git experience
- Experience with Terraform, Bicep, or Ansible and CI/CD pipelines
- Deep Microsoft 365 administration experience, including Microsoft Graph API and SharePoint governance
- Experience with EDR platforms; CrowdStrike Falcon preferred
- Understanding of 802.1X, enterprise PKI/CA, certificate deployment through MDM, and NAC/authentication troubleshooting
- Experience with AI-assisted or event-driven production automation, anomaly detection, and automated remediation with security guardrails
- AWS platform engineering and account hygiene experience
- Freshservice, ServiceNow, or Jira Service Management administration and API integration experience
- CyberArk or equivalent PAM platform experience
- Commvault or equivalent backup platform experience
- Network automation using Python or Ansible and observability/telemetry pipeline experience
- Experience with LLM/AI agent frameworks and enterprise AI governance
- Familiarity with Forcepoint DSE/DLP, Claude-based AI security tooling, or similar AI/data-security integrations
- Microsoft 365 Certified: Enterprise Administrator Expert, Terraform Associate, or AWS/Azure professional certification
Forcepoint Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Forcepoint and has not been reviewed or approved by Forcepoint.
-
Leave & Time Off Breadth — U.S. PTO is positioned as flexible or unlimited, with paid holidays and sick time, plus 20 hours of paid volunteer time each year. These elements support work-life balance if applied consistently across teams.
-
Parental & Family Support — Offerings include parental leave, adoption assistance, and family medical leave. These benefits complement core medical coverage for family needs.
-
Wellbeing & Lifestyle Benefits — Support includes an EAP via TELUS Health, wellness programs, and tuition assistance up to $5,250 annually, alongside mentoring and Forcepoint University resources. These programs provide personal, emotional, and professional development support.
Forcepoint Insights
What We Do
We protect and secure our customer’s rapidly evolving digital world by providing a Data-First SASE solution. Forcepoint is the people-centric cybersecurity company that understands behavior and adapts security response and enforcement to risk. The Forcepoint ONE Platform simplifies security for companies around the world. We live by our values of being customer-centric, simplicity-focused, innovative, trustworthy and ethical, and people-centric.
Why Work With Us
Join our team and feel good about the work you do. At Forcepoint, you’re given unique opportunities to make an impact within your team, the company, and the world. We focus on delivery to our customers, high performance within our teams, and giving back to our communities.
Gallery
.png)






