Remote Workspace Engineer - Secure Company Laptop & Digital Environment Specialist
hace 7 días
Chicago
Job DescriptionJob Description: Remote Workspace Engineer - Secure Company Laptop & Digital Environment Specialist Location: Remote (Must be available during core business hours) Company: FuntoNetwork (IT Solutions & Services Firm) Department: Remote Workforce Technology & Security Reports To: Director of Remote Operations & Security Position Overview FuntoNetwork is seeking a specialized Remote Workspace Engineer to design, implement, and manage secure, compliant, and productive digital workspaces on company-provided laptops for our 100% remote workforce. This critical role focuses on ensuring that every employee's company-issued laptop is pre-configured, secured, monitored, and maintained to meet our exacting standards for security, productivity, and compliance in a fully remote environment. You will architect and maintain the technical environment within which our distributed team operates, implementing comprehensive controls, monitoring, and support systems on hardware we own and control. This is about creating a standardized, secure, and managed remote workspace that travels with our laptops anywhere in the world. Core Mission Your primary objective: Create, deploy, and maintain a standardized, secure, and monitored remote work environment on all company-provided laptops, ensuring productivity, security, and compliance across our distributed workforce. Company Asset Management Philosophy: Implement "full visibility and control" on company-owned hardware, ensuring consistent security posture and operational standards regardless of employee location or network environment. Key ResponsibilitiesLaptop Provisioning & Lifecycle Management (35%) • Develop and maintain standardized, hardened laptop images for different employee roles, • Manage the entire laptop lifecycle: procurement, imaging, deployment, maintenance, and retrieval, • Create automated deployment workflows for new hires and replacement devices, • Implement remote wipe and lockdown capabilities for lost, stolen, or offboarded devices, • Maintain inventory tracking and asset management for all company laptopsSecurity Configuration & Compliance Enforcement (30%), • Implement and manage comprehensive security controls on all company laptops:, • Full disk encryption (BitLocker, FileVault), • Endpoint Detection and Response (EDR) solutions, • Application allow-listing and software restriction policies, • Firewall and network security configurations, • Security baselines and compliance monitoring, • Enforce automated compliance checks and remediation, • Implement conditional access policies based on device compliance statusRemote Monitoring & Productivity Assurance (20%), • Deploy and configure employee monitoring solutions on all company laptops:, • Application and website usage tracking during work hours, • Activity monitoring with clear productivity metrics, • Camera status and usage monitoring for video conferencing, • Communication monitoring across work platforms, • Design and implement transparent monitoring policies with employee acknowledgment, • Create management dashboards for productivity and security metricsCommunication & Data Controls (15%), • Configure and enforce communication security policies:, • Email security controls with external communication restrictions, • Approved messaging platform configurations and monitoring, • File transfer controls and data loss prevention, • External sharing restrictions for collaboration tools, • Implement web filtering and content controls, • Manage secure remote access solutions (VPN, ZTNA) and network restrictionsRequired Technical Skills & ExperienceEssential Qualifications, • 3+ years in endpoint management, laptop provisioning, or remote workforce technology, • Proven experience managing company-owned laptop fleets in remote environments, • Expert knowledge of:, • Modern MDM/UEM solutions (Microsoft Intune, Jamf, etc.), • Endpoint security suites and configuration management, • Imaging and deployment technologies (Windows Autopilot, DEP, etc.), • Remote monitoring and management tools, • Hands-on experience with:, • Creating and maintaining standardized laptop images, • Implementing comprehensive security controls on endpoints, • Deploying monitoring solutions on company devices, • Remote troubleshooting and support for distributed devicesSecurity & Compliance Expertise, • Understanding of security frameworks for endpoint protection, • Experience with compliance enforcement and reporting, • Knowledge of data protection regulations for remote work scenarios, • Ability to balance security requirements with employee productivityTechnical Competencies, • Strong scripting skills for automation (PowerShell, Bash, Python), • Experience with cloud-based device management platforms, • Understanding of network security for remote devices, • Knowledge of identity and access management integrationDaily Operations & ControlsLaptop Deployment & Management:, • Pre-configure all laptops with standardized secure image before shipping, • Implement remote management capabilities from first boot, • Automate software deployment and updates, • Manage security policy enforcement and compliance reportingMonitoring Implementation:, • Deploy activity monitoring with employee transparency and acknowledgment, • Implement work-time tracking on company devices, • Configure appropriate productivity and security alerts, • Establish clear usage policies for company-provided equipmentCommunication Security:, • Configure email and messaging controls on all devices, • Implement data loss prevention at endpoint level, • Monitor and control external communications as per policy, • Enforce encryption for all work communications and dataRemote Support:, • Provide remote troubleshooting and support for company laptops, • Implement remote control solutions for technical assistance, • Develop self-service resources for common issues, • Deployment Success: 99% successful laptop provisioning and deployment, • Security Compliance: 100% of laptops meeting security standards, • Incident Prevention: Reduction in security incidents from managed devices, • Productivity: Maintenance of productivity metrics in remote environment, • Excel at creating standardized, repeatable technical solutions, • Understand security deeply but implement it practically, • Can manage technical controls while respecting employee experience, • Enjoy solving problems for distributed users, • Are detail-oriented in configuration and documentation, • Clear, documented policies on acceptable use of company equipment, • Employee acknowledgment of monitoring on company-owned devices, • Focus on work-hour productivity and security, not personal surveillance, • Regular review of monitoring practices with HR and Legal, • Respect for reasonable personal use during non-work hoursWhat We Provide, • Modern Tools: Enterprise-grade MDM, security, and monitoring solutions, • Standardized Hardware: Consistent laptop models for easier management, • Support Team: Collaboration with IT, Security, and HR departments, • Professional Development: Training on latest remote work technologies, • Technical Resume with specific laptop fleet management experience, • Cover Letter addressing:, • Your approach to creating standardized laptop configurations, • Experience implementing monitoring on company-owned devices, • Philosophy on balancing security controls with employee productivity, • How you handle remote support for distributed laptop users, • Scenario Response:, • Outline your process for provisioning laptops for 50 new remote hires, • Describe your approach to implementing acceptable monitoring on company devices, • Every employee has a consistent, secure, and productive work environment, • Security controls are implemented uniformly across all endpoints, • Monitoring and compliance are built into our hardware foundation, • Support and maintenance are standardized and efficient