ROLE SUMMARY:
Responsible for the administration, optimization, and security of the organization's modern workplace environment across Microsoft Intune, Microsoft Entra ID (Azure AD), Microsoft 365, and endpoint management platforms. Supports endpoint engineering, identity and access management, application packaging and deployment, endpoint security, and project delivery initiatives in a cloud-first environment.
RESPONSIBILITIES:
- Administer Microsoft Intune (Endpoint Manager) across Windows and mobile devices (iOS/Android)
- Manage Entra ID (Azure AD), and identity lifecycle. Assisting with Conditional Access, MFA.
- Implement and maintain MDM policies across Windows, iOS, and Android devices
- Package and deploy applications (Win32, MSI, EXE) using Intune and PowerShell
- Configure compliance policies, configuration profiles, and security baselines
- Manage Windows Autopilot provisioning and lifecycle
- Design, build, and maintain Standard Operating Environment (SOE) images and endpoint configurations, aligned with modern provisioning approaches (Autopilot/Intune)
- Coordinate application compatibility (sociability) testing for SOE and platform updates, ensuring successful deployment and minimal business disruption
- Manage SOE/image update cycles including regression testing, validation, and controlled release into production
- Support Microsoft 365 services (Exchange Online, Teams, SharePoint, OneDrive)
- Monitor and maintain endpoint security tools including CrowdStrike
- Troubleshoot endpoint, identity, and application deployment issues
- Support project delivery including rollouts, migrations, and platform uplift initiatives
- Co-ordinating maintenance activities with Stores (SW Upgrades, imaging), via manual (Phone/Email) and automated jobs
- Maintain technical documentation and operational processes
Job Qualifications:
- Bachelor's degree in Information Technology, Computer Science, or related field.
- In-depth, hands-on expertise in Microsoft Intune Endpoint Management, including device configuration, policies, compliance, security baselines, groups, exclusions, job customisation, troubleshooting, and endpoint lifecycle management.
- Experience managing Entra ID (Azure AD) and Active Directory inc. Group Policies and other elements Hands-on expertise creating Microsoft Intune application packages from scratch and deploying them end-to-end (including Win32, MSI, and EXE), rather than only administering pre-existing packages.
- PowerShell scripting capability.
- Experience managing Windows 10/11 environments.
- Understanding of Conditional Access, compliance, and endpoint security.
- Experience with patch management and automation Exposure to SCCM / MECM co-management Reasonable understanding of Networking, DNS, DHCP.
- Hands-on MDM experience across Windows and mobile (iOS/Android)