Senior Microsoft Endpoint Management Engineer

alllinestechnology

Pittsburgh (Allegheny County)

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

alllinestechnology is seeking a Senior Microsoft Endpoint Management Engineer to design, implement, maintain, and support enterprise endpoint management using MECM/SCCM and Microsoft Intune, covering OS deployment, device compliance, and security controls. The role demands deep expertise in co-management, Entra ID integration, Windows Autopilot, and cloud-native management strategies.

The ideal candidate will lead modernization efforts, drive customer engagements, and provide senior-level

Qualifications

  • 5+ years of hands-on experience administering MECM/SCCM in enterprise environments.
  • 5+ years of hands-on experience administering Microsoft Intune.
  • Strong experience with Windows 10/11 deployment, management, and troubleshooting.
  • Experience with operating system deployment, application packaging/deployment, patch management, endpoint security, and device compliance.
  • Strong understanding of Microsoft Entra ID, Active Directory, Group Policy, DNS, DHCP, and PKI/certificates.
  • Advanced PowerShell scripting and automation experience.
  • Experience implementing MECM and Intune co-management.
  • Strong troubleshooting, communication, documentation, and customer-facing consulting skills.

Responsibilities

  • Design, implement, administer, and maintain MECM infrastructure and client settings.
  • Monitor MECM health, perform upgrades and maintenance.
  • Design OS deployment task sequences for various deployment scenarios.
  • Manage patching, and software deployment for enterprise apps.
  • Design, implement, and administer Intune environments for Windows, macOS, iOS, and Android.
  • Configure device enrollment, Entra ID join, hybrid join, and security policies.
  • Design Autopilot deployments and manage enrollment provisioning issues.
  • Package and deploy Win32 and line-of-business apps; manage lifecycle and updates.
  • Develop PowerShell automation scripts and integrate with Graph API; create technical docs and runbooks.

Skills

MECM SCCM
Microsoft Intune
PowerShell scripting
Endpoint security
Co-management
Cloud-based management
Windows deployment
Active Directory
Graph API
Documentation

Tools

Power BI
SQL

Job description

The Senior Microsoft Endpoint Management Engineer is responsible for designing, implementing, maintaining, and supporting enterprise endpoint management solutions using both Microsoft Endpoint Configuration Manager (MECM/SCCM) and Microsoft Intune. This role serves as a subject matter expert for traditional and modern endpoint management, including operating system deployment, application lifecycle management, device compliance, security controls, endpoint analytics, and cloud-based device management. The ideal candidate possesses deep expertise in both MECM and Intune and can help organizations modernize endpoint management through co-management, Microsoft Entra ID integration, Windows Autopilot, and cloud-native management strategies.

Key Responsibilities
Microsoft Endpoint Configuration Manager (MECM / SCCM)
  • Design, implement, administer, and maintain MECM infrastructure, including site systems, boundaries, boundary groups, distribution points, and client settings.
  • Monitor MECM health, performance, and availability; perform upgrades, hotfix installations, and environment maintenance.
  • Design and maintain Windows 10/11 operating system deployment task sequences for bare-metal, refresh, and in-place upgrade scenarios.
  • Manage boot images, driver repositories, deployment media, and PXE/task sequence troubleshooting.
  • Package, test, deploy, and maintain enterprise applications using MSI, EXE, PowerShell, scripts, and establish detection methods, dependencies, supersedence, and deployment requirements.
  • Manage Windows and third-party patching solutions, including deployment rings, maintenance windows, compliance monitoring, and remediation.
Microsoft Intune / Cloud Endpoint Management
  • Design, implement, and administer Microsoft Intune environments for Windows, macOS, iOS, and Android device management.
  • Configure device enrollment, Microsoft Entra ID join, hybrid join, compliance policies, configuration profiles, device restrictions, and endpoint security policies.
  • Design and implement Windows Autopilot scenarios, including user-driven, pre-provisioned, and self-deploying deployments.
  • Configure Enrollment Status Page behavior, Autopilot profile assignments, and troubleshoot enrollment and provisioning issues.
  • Package and deploy Win32, Microsoft Store, Microsoft 365 Apps, and line-of-business applications; manage application lifecycle and update processes.
  • Configure and maintain security baselines, BitLocker management, Endpoint Privilege Management, Microsoft Defender integration, and Conditional Access integration.
Co-Management & Endpoint Modernization
  • Design and implement MECM/Intune co-management solutions and migrate workloads between MECM and Intune.
  • Develop endpoint modernization roadmaps that guide customers from traditional device management to cloud-native management.
  • Assess customer endpoint environments and recommend best-practice architectures for modern management, compliance, and security.
  • Lead technical workshops, design sessions, implementation efforts, and customer-facing endpoint management projects.
Automation, Documentation & Reporting
  • Develop PowerShell scripts for endpoint automation, administration, reporting, and remediation.
  • Integrate endpoint management workflows with Microsoft Graph API where applicable.
  • Create and maintain technical documentation, SOPs, runbooks, architecture diagrams, and implementation guides.
  • Develop reports using MECM, Intune, Power BI, SQL, and Microsoft reporting tools to track deployment success, compliance, and endpoint metrics.
  • Provide Tier 3 escalation support and mentor junior engineers or support staff.
Required Qualifications
  • 5+ years of hands-on experience administering MECM/SCCM in enterprise environments.
  • 5+ years of hands-on experience administering Microsoft Intune.
  • Strong experience with Windows 10 and Windows 11 deployment, management, and troubleshooting.
  • Experience with operating system deployment, application packaging/deployment, patch management, endpoint security, and device compliance.
  • Strong understanding of Microsoft Entra ID, Active Directory, Group Policy, DNS, DHCP, and PKI/certificates.
  • Advanced PowerShell scripting and automation experience.
  • Experience implementing MECM and Intune co-management.
  • Strong troubleshooting, communication, documentation, and customer-facing consulting skills.
Preferred Qualifications
  • Experience with Microsoft Defender for Endpoint, Defender XDR, Microsoft Cloud PKI, Endpoint Privilege Management, and Microsoft security baselines.
  • Experience with Microsoft Graph API, Power BI reporting, tenant-to-tenant migrations, endpoint modernization projects, and third-party patching solutions.
  • Experience supporting SMB, education, healthcare, government, or enterprise organizations.
  • Ability to lead discovery sessions, translate technical needs into project scopes, and present recommendations to customers and internal stakeholders.
Preferred Certifications

Strongly Preferred

  • MD-102: Endpoint Administrator Associate
  • MS-102: Microsoft 365 Administrator Expert

Additional

  • SC-300: Identity and Access Administrator
  • AZ-104: Azure Administrator Associate
Ideal Candidate

The ideal candidate has extensive experience managing both MECM and Intune environments and understands how to bridge traditional endpoint management with modern cloud-based management. They can independently lead customer implementations, support large-scale device deployments, automate administrative processes, and provide strategic guidance around endpoint modernization and endpoint security. This is a senior technical position requiring strong consulting skills, customer engagement experience, and the ability to lead endpoint management projects from design through implementation and support.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Endpoint Management Administrator
Endpoint Management Administrator

Delta Computer Consulting • Marysville (OH)

Hybrid
USD 66,000 - 76,000
Health insurance
Vision insurance
Dental insurance
+3
Senior Endpoint Engineer (Applications)
Senior Endpoint Engineer (Applications)

The AES Corporation • Indianapolis (IN)

On-site
USD 80,000 - 120,000
Senior MECM & Intune Endpoint Management Architect
Senior MECM & Intune Endpoint Management Architect

alllinestechnology • Pittsburgh

On-site
USD 120,000 - 160,000
Endpoint Manager
Endpoint Manager

CHS Corporate • United States

On-site
USD 110,000 - 170,000
Microsoft Intune Engineer
Microsoft Intune Engineer

Compunnel, Inc. • Maryland

On-site
USD 100,000 - 130,000
Endpoint Engineer, Technology & Security
Endpoint Engineer, Technology & Security

Oaktree • Los Angeles (CA)

On-site
USD 110,000 - 150,000
Microsoft Intune Engineer- End User Computing Services Administrator
Microsoft Intune Engineer- End User Computing Services Administrator

iFlow Inc. • Palo Alto (CA)

Hybrid
USD 100,000 - 130,000
Intune Architect
Intune Architect

Stefanini North America and APAC • Indianapolis (IN)

On-site
USD 100,000 - 130,000
Senior Microsoft Endpoint Management Engineer
Senior Microsoft Endpoint Management Engineer

Fire Fighter Sales & Service Co. • Cranberry Township (OH)

On-site
USD 110,000 - 150,000
Medical, dental and vision insurance
Company‑paid life insurance and long‑‑
Paid time off
+4
Lead SCCM Endpoint Engineer (SCCM, Jira Asset Management)
Lead SCCM Endpoint Engineer (SCCM, Jira Asset Management)

Prosum • Los Angeles (CA)

On-site