IT Systems Engineer (Client Platform Engineering) at Anthropic at Anthropic | Torre

IT Systems Engineer (Client Platform Engineering) at Anthropic

Emma highlights
This highlight was written by Emma’s AI. Ask Emma to edit it.
Full-time

Legal agreement: To be defined

Provide your expected compensation while applying
location_on
Remote (anywhere)
Shared by
Emma of Torre.ai
2 days ago

Responsibilities


The Endpoint team (Client Platform Engineering) treats Anthropic’s device fleet as a distributed platform, not a collection of laptops,We run our own MDM as a production service and manage every piece of device configuration as code,Policies, configuration profiles, queries, remediation scripts, and software all ship through pull requests, CI, a staging environment, and a canary group before they reach the fleet,The fleet spans macOS, Windows, and a growing mobile footprint,You’ll own that platform end to end: the infrastructure underneath the MDM, the configuration on top of it, the patching and software pipelines that keep thousands of devices patched and secure, and the telemetry that tells us what is actually true on every device,You’ll build zero touch provisioning that turns a sealed box into a productive machine on day one, manage rapid patching enforcement schedules while maintaining a good user experience, and build automation and Claude-driven workflows to eliminate operational toil,The role sits at the intersection of security and developer experience: working with Security teams on hardening, compliance controls, and detection and response, and with developer and infrastructure teams to make sure controls don't get in the way of getting work done,It also lays the groundwork for access decisions based on device trust,If you think of “100% compliant” as a claim to audit rather than a fact to report, you’ll fit right in,The team is deliberately lean and runs with high autonomy,You’ll help define the endpoint roadmap, make architecture decisions, and own the platform every Anthropic employee’s work runs on,Your work will directly shape how we scale to AI Safety Level 4 and beyond,You’ll own endpoint configuration as code:author, review, test, and progressively roll out MDM policies, configuration profiles, and remediation scripts across macOS, Windows, and mobile, with canary stages and rollback built inYou’ll operate the MDM platform itself as a production service:including infrastructure as code, observability, upgrades, and incident responseYou’ll build patch management automation:with rapid enforcement timelines while maintaining good user experienceYou’ll design zero touch provisioning:that turns a sealed box into a productive machine on day oneYou’ll run software distribution for the fleet:including managed app distribution for mobile devicesYou’ll turn fleet telemetry into policy:dashboards, early drift warnings, and automation with Claude that removes operational toilYou’ll partner with Corporate Security:on endpoint hardening, binary authorization, and compliance controlsYou’ll serve as the deep escalation tier:for endpoint issues IT Operations can’t resolveRequirementsHave 8+ years building secure IT systems in complex environments, or for Staff level, have led projects spanning multiple teams that changed how an organization operatesHave managed endpoint fleets of thousands of macOS and Windows devices through a modern MDMTreat endpoint configuration as code and have moved past clicking in consoles, whether through scripted deployments or full GitOpsGo deep on one platform (macOS internals such as launchD, configuration profiles, TCC, and system extensions, or Windows internals such as CSPs, the registry, PowerShell, and BitLocker) and are genuinely hands on with the otherExcel at solving ambiguous problems with multiple stakeholdersCommunicate technical concepts clearly to any audienceView IT Engineering as requiring product engineering rigorSuccessfully deliver complex projects from conception to productionWrite clear documentation as a natural part of your workflow(Desirable) Have operated an MDM or device management platform as a service, not only consumed one as SaaS(Desirable) Have worked with open source endpoint and device management tooling(Desirable) Have built automated, progressive rollout systems with promotion gated on telemetry(Desirable) Have experience running infrastructure as code in a public cloud(Desirable) Have managed a mixed fleet across macOS, Windows, and mobile, with real depth on at least one platform(Desirable) Bring proficiency in Swift or Go for building endpoint tools(Desirable) Have used LLMs to automate operational work, or are excited to make Claude a teammateTechnical Skills:Python, shell scripting, and PowerShellMacOS or Windows internals (depth on one, working knowledge of the other)Querying live device state at fleet scaleModern MDM platforms (Jamf, Intune, Workspace ONE, or equivalent)GitOps, CI/CD for configuration management, and infrastructure as codePublic cloud fundamentals (containers, managed databases, CDN, monitoring)Device lifecycle automation (zero touch enrollment, patching, software distribution)Endpoint security fundamentalsMinimum education: Bachelor’s degree or an equivalent combination of education, training, and/or experienceRequired field of study: A field relevant to the role as demonstrated through coursework, training, or professional experienceMinimum years of experience: Years of experience required will correlate with the internal job level requirements for the positionLocation-based hybrid policy: Currently, we expect all staff to be in one of our offices at least 25% of the time. However, some roles may require more time in our officesVisa sponsorship: We do sponsor visas! However, we aren't able to successfully sponsor visas for every role and every candidate. But if we make you an offer, we will make every reasonable effort to get you a visa, and we retain an immigration lawyer to help with thisWe encourage you to apply even if you do not believe you meet every single qualification