Senior Administrator, Systems Management

Cencora

Conshohocken (Montgomery County)

On-site

USD 120,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Qualifications

  • Bachelor's degree in Computer Science, Management Information Systems, or a related technology field (equivalent experience considered).
  • 8+ years of IT experience, including 5+ years in infrastructure/endpoint engineering.
  • Advanced, hands-on expertise with MECM/SCCM and Microsoft Intune, including co-management, Autopilot, compliance policies, and Win32 deployment.
  • Experience remediating security vulnerabilities with CVE triage and patch‑compliance reporting (Microsoft Defender/vulnerability management tooling).

Responsibilities

  • Package, test, and deploy Windows and third-party applications through MECM and Intune (Win32 apps) with reliable detection logic and dependency handling.
  • MECM/Intune co-management concepts: client settings, boundaries, deployment collections, Autopilot, compliance policies, and baselines.
  • Design, write, and maintain advanced PowerShell scripts for automation, remediation, and reporting (Intune/MECM).
  • Identify, prioritize, and remediate security vulnerabilities across the endpoint fleet with CVE/patch‑compliance reporting and mitigation timelines.
  • Manage third-party application patching programs (Patch My PC, Ivanti, etc.) to minimize vulnerability exposure windows.
  • Leverage networking fundamentals to resolve connectivity issues affecting client-server communication and patch distribution.
  • Collaborate with Architecture, Networking, Information Security, and Support teams to develop and support endpoint solutions.
  • Triage escalations from Endpoint Support and Security, acting as a technical escalation point for Level 1/2 teams.

Skills

MECM/SCCM
Microsoft Intune
PowerShell scripting
Patch management
Security remediation
Active Directory & GPO
AI automation tools
Networking basics

Education

Bachelor's degree in CS/IS or related field

Tools

PSAppDeployToolkit
Advanced Installer
Orca
Patch My PC
Ivanti
VBScript

Job description

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere.

Senior Endpoint Engineer/Administrator (Level 3) responsible for the design, deployment, and advanced support of endpoint management solutions across a large, distributed physical and virtual device estate using Microsoft Endpoint Configuration Manager (MECM) and Microsoft Intune in a co-managed environment. Owns application packaging, third-party patch management, security vulnerability remediation, advanced PowerShell automation, and at-scale incident troubleshooting, partnering closely with Information Security, Networking, and Support teams to keep the endpoint fleet secure, compliant, and reliable.

Key Responsibilities
  • Package, test, and deploy Windows and third-party applications through MECM and Intune (Win32 apps), using PSADT and other silent-install packages with reliable detection logic and dependency handling.
  • MECM/Intune co-management experience: client settings, boundaries and boundary groups, deployment collections, Autopilot profiles, compliance policies, and configuration baselines across the enterprise endpoint estate.
  • Design, write, and maintain advanced PowerShell scripts for automation, remediation, and reporting, including Intune and MECM.
  • Identify, prioritize, and remediate security vulnerabilities across the endpoint fleet in partnership with Information Security - driving CVE/patch-compliance reporting and mitigation timelines for OS and third-party applications.
  • Third-party application patching lifecycle - identifying, packaging, testing, and deploying updates (e.g., via Patch My PC, MECM, application/patch deployment) to minimize vulnerability exposure windows.
  • Networking knowledge (DNS, DHCP, IP addressing/subnetting, VLANs, boundary/content distribution) to resolve connectivity issues affecting client communication, application delivery, and patch distribution.
  • Leverage AI-assisted tools (Claude, Copilot and other scripting assistants) and automation/orchestration to streamline packaging, remediation, and reporting - tracking work in JIRA and version-controlling scripts/configs in GitHub.
  • Partner and collaborate with multiple technical teams (Architecture, Networking, Information Security, Support, etc.) to develop and support endpoint solutions.
  • Triage and resolve escalations from Endpoint Support and Security, acting as a technical escalation point for Level 1/2 teams.

This job profile description is a standardized, non-contractual reference description and global reference tool provided for organizational consistency and talent architecture purposes across Cencora. It does not alter actual job duties, responsibilities, reporting lines, working conditions, grading, compensation, or other essential terms and conditions of employment.

Actual duties and responsibilities may vary based on business needs, local requirements, and operational practices. Where a team member's role is governed by an employment agreement, local terms and conditions, prior job description or collective bargaining agreement, those documents shall prevail in case of any inconsistency. Mandatory local laws shall also prevail.

Experience and Educational Requirements
  • Bachelor's degree, preferably in Computer Science, Management Information Systems, or a related technology field (equivalent experience considered).
  • At least 8 years of IT experience, including 5+ years in infrastructure/endpoint engineering.
  • Advanced, hands-on expertise with Microsoft Endpoint Configuration Manager (MECM/SCCM) and Microsoft Intune, including co-management, Autopilot, compliance policies, and Win32 application deployment.
  • Demonstrated experience remediating security vulnerabilities - identifying, prioritizing, and patching OS and third-party application vulnerabilities, including CVE triage and patch-compliance reporting (Microsoft Defender/vulnerability management tooling).
  • Advanced PowerShell scripting ability (functions, modules, error handling, remoting, Graph API/Intune scripting), plus familiarity with VBScript for legacy support.
  • Proven ability to troubleshoot complex incidents at scale across large, distributed endpoint environments, with strong root-cause analysis skills.
  • Strong application packaging experience (.MSI/.MST, Win32; App-V/MSIX familiarity a plus) using, PSAppDeployToolkit, Advanced Installer, and Orca.
  • Experience managing third-party application patching programs (e.g., Patch My PC, Ivanti, or similar).
  • Solid understanding of Active Directory and Group Policy for managing user/computer objects, including GPO troubleshooting (gpresult, RSoP).
  • Working knowledge of wired/wireless networking fundamentals: DHCP, DNS, IP addressing, subnetting, and VLANs, and how they affect client-server communication and content distribution.
  • Familiarity with Windows 11 Enterprise features, settings, and deployment; BIOS/UEFI configuration; Bitlocker and Microsoft Defender.
  • Experience with virtualization technologies (Citrix, VMware) and thin/zero-client delivery is a plus.
  • Solid track record of delivering thoughtful, effective, and timely solutions to complex business problems that enhance the end-user experience.
Additional / Preferred Skills
  • AI-assisted automation and Copilot-style tools (Microsoft Copilot, GitHub Copilot, Claude) to speed up scripting, triage, and remediation.
  • Service-Now for Incident, request logging.
  • GitHub (or Azure DevOps) for version-controlled scripts and Intune/MECM configuration-as-code, including basic CI/CD pipelines.
  • JIRA (or similar) for ticketing, sprint/backlog tracking, and change management.
  • Working familiarity with Azure AD/Microsoft Entra ID, conditional access, and Windows Autopatch.
  • Experience mentoring Level 1/2 engineers and producing clear runbooks/knowledge-base documentation.
  • ITIL foundations or equivalent incident/problem/change management experience.
What Cencora offers

We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora

Full time

Equal Employment Opportunity

Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.

The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.

Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned

Affiliated Companies

Affiliated Companies: AmerisourceBergen Services Corporation

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Endpoint Engineer | MECM/Intune Automation Champion
Senior Endpoint Engineer | MECM/Intune Automation Champion

Cencora • Conshohocken

On-site
USD 120,000 - 160,000
Senior Administrator, Systems Management
Senior Administrator, Systems Management

Cencora • Harrisburg

On-site
USD 120,000 - 160,000
Engineer III, Endpoint Engineering
Engineer III, Endpoint Engineering

Cencora • United States

Remote
USD 130,000 - 180,000
Medical, dental, vision benefits
Paid parental leave
Mentorship programs
Engineer III, Endpoint Engineering
Engineer III, Endpoint Engineering

Cencora • Harrisburg

On-site
USD 120,000 - 180,000
Medical insurance
Dental coverage
Vision coverage
+3
Senior Endpoint Engineer/Administrator, Systems Management
Senior Endpoint Engineer/Administrator, Systems Management

AmerisourceBergen Services Corporation • Pennsylvania

Hybrid
USD 110,000 - 140,000
Medical, dental, and vision care
Adoption assistance
Paid parental leave
+1
Engineer III, Endpoint Engineering
Engineer III, Endpoint Engineering

AmerisourceBergen Services Corporation • Pennsylvania

Hybrid
USD 140,000 - 180,000
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

Remote Jobs • United States

Remote
USD 130,000 - 170,000
Training programs
Professional development
Mentorship programs
+1
Principal Engineer, Security Engineering
Principal Engineer, Security Engineering

Cencora • Conshohocken

On-site
USD 120,000 - 180,000
Medical, dental, vision
Training & mentorship
Wellness programs
+1
Principal Engineer, Security Engineering
Principal Engineer, Security Engineering

Cencora • Carrollton (TX)

On-site
USD 120,000 - 160,000
Senior Administrator, Systems Management
Senior Administrator, Systems Management

World Courier • Conshohocken, Northern (KY)

On-site
USD 110,000 - 140,000