Our client is looking for an experienced End User Computing Engineer to design, implement, and support modern endpoint management solutions. You will play a key role in delivering a secure, consistent, and productive experience for end users across Windows devices.
Responsibilities:
- Design, deploy, and maintain Windows Autopilot provisioning profiles and deployment profiles
- Manage and optimize Microsoft Intune for device configuration profiles, compliance policies, application deployment, endpoint security (including Windows Defender and Microsoft Defender for Endpoint integration), and conditional access policies
- Develop, maintain, and troubleshoot Group Policy Objects (GPOs) in hybrid Active Directory environments, migrating relevant policies to Intune where appropriate
- Create and maintain PowerShell scripts and automation solutions for device management, reporting, remediation, and bulk operations across Intune, Active Directory, and Microsoft 365
- Administer and support Active Directory (on-premises) and Microsoft Entra ID (Azure AD), including user/device lifecycle management, group management, hybrid identity (Azure AD Connect), and identity governance
- Support Microsoft 365 services related to end-user computing, including Exchange Online, SharePoint Online, Teams, OneDrive, and related security/compliance features
- Troubleshoot complex endpoint, identity, and application issues affecting end users; provide Tier 2/3 support and root-cause analysis
- Collaborate with security, identity, and infrastructure teams to ensure devices meet compliance, security baselines, and zero-trust principles
- Document processes, standards, and runbooks; contribute to continuous improvement of the end-user computing platform
- Stay current with Microsoft roadmap changes (Autopilot, Intune, Entra ID, Windows) and evaluate new capabilities for adoption
Requirements:
- Over 3 years of work experience in End User Computing
- Proven hands-on experience with Windows Autopilot (profile configuration, hardware hashing, self-deploying/user-driven modes, troubleshooting enrollment)
- Strong expertise in Microsoft Intune (device configuration, compliance, app protection/deployment and endpoint security)
- Solid experience with Group Policy management, troubleshooting, and hybrid GPO-to-Intune migration strategies
- Advanced PowerShell scripting skills for automation of Intune, Active Directory, Entra ID, and Microsoft 365 tasks
- Strong knowledge of Active Directory and Microsoft Entra ID
- Experience with Microsoft 365 administration in the context of end-user computing and device management
- Experience supporting Windows 11 enterprise environments at scale