Position Summary The Endpoint / Systems Administrator is responsible for administering, maintaining, and securing the organization’s endpoint, identity, cloud, and virtualization environments. This position has a strong focus on Microsoft Intune, Windows endpoint management, Microsoft 365, Active Directory, mobile device management, PowerShell automation, cybersecurity, patch management, and infrastructure administration. The administrator works closely with internal IT staff, managed service providers (MSPs), vendors, and business stakeholders to maintain reliable and secure technology services across the organization.
Responsibilities
Microsoft Intune & Endpoint Management
- Administer and maintain Microsoft Intune for Windows, iOS, and Android devices.
- Manage Windows device enrollment and provisioning using Windows Autopilot, including Hybrid Autopilot and Microsoft Entra ID joined environments.
- Create, deploy, maintain, and troubleshoot Intune configuration profiles, compliance policies, security policies, and device restrictions.
- Manage Windows Update policies, update rings, feature updates, quality updates, and endpoint patching.
- Package, deploy, update, and troubleshoot applications through Intune.
- Manage device groups, assignments, filters, and deployment targeting.
- Troubleshoot device enrollment, synchronization, compliance, application deployment, and configuration issues.
- Administer iOS/iPadOS and Android devices through Microsoft Intune.
- Manage mobile application deployment and configuration.
- Support Apple Business Manager and Android Enterprise environments.
- Maintain mobile device compliance, security, configuration, and application policies.
- Troubleshoot mobile enrollment, application, licensing, and device-management issues.
PowerShell & Automation
- Develop and maintain PowerShell scripts for system administration and endpoint management.
- Deploy PowerShell scripts and remediation tasks through Microsoft Intune.
- Automate repetitive administrative tasks, reporting, configuration changes, and troubleshooting.
- Utilize PowerShell for Microsoft 365, Active Directory, Entra ID, Exchange Online, and endpoint administration.
Cybersecurity & Endpoint Security
- Apply cybersecurity best practices across endpoints, servers, identities, and cloud services.
- Administer endpoint security controls including Microsoft Defender technologies, BitLocker, Windows Firewall, and security baselines.
- Review and implement security recommendations and remediation activities.
- Assist with vulnerability remediation, security assessments, and penetration-testing findings.
- Maintain secure endpoint configurations while balancing security requirements with business needs.
Patch & Application Management
- Manage Windows operating system and third‑party application patching.
- Monitor endpoint patch compliance and remediate devices that fail to update.
- Coordinate application upgrades and deployments.
- Test updates and configuration changes prior to production deployment.
- Assist with organization-wide Windows upgrades and migrations.
Active Directory & Microsoft 365
- Administer and troubleshoot Microsoft Active Directory.
- Manage users, computers, groups, organizational units, and Group Policy.
- Support hybrid Active Directory and Microsoft Entra ID environments.
- Administer Microsoft 365, Exchange Online, Microsoft Teams, and Entra ID.
- Manage users, licensing, shared mailboxes, distribution groups, and permissions.
- Troubleshoot authentication, access, licensing, and Microsoft 365 service issues.
- Administer and support Nutanix and VMware virtual infrastructure.
- Create, configure, maintain, and troubleshoot virtual machines.
- Assist with Windows Server administration, server upgrades, maintenance, and troubleshooting.
- Coordinate infrastructure maintenance while minimizing business disruption.
Networking, VPN & MSP Coordination
- Work directly with networking MSPs and vendors to maintain and improve network infrastructure.
- Coordinate network, firewall, wireless, and infrastructure upgrades.
- Administer and troubleshoot VPN and remote-access solutions.
- Assist with DNS, DHCP, routing, firewall, wireless, and general connectivity troubleshooting.
- Coordinate technical changes and troubleshooting between internal IT and external service providers.
Qualifications
- Minimum Qualifications
- Minimum of 4 years of professional IT experience in systems administration, endpoint administration, infrastructure, technical support, or a related IT role.
- Minimum of 2 years of hands‑on Microsoft Intune experience managing devices in a production environment.
- Hands‑on experience with Microsoft Intune policies, configuration profiles, compliance policies, application deployment, and Windows Update management.
- Experience with Windows Autopilot, including an understanding of Hybrid Autopilot and Entra ID joined deployments.
- Experience managing Windows 10/11 endpoints.
- Experience managing iOS/iPadOS and Android devices through an enterprise MDM platform.
- Working knowledge of PowerShell scripting and automation.
- Experience with Active Directory, Group Policy, and Microsoft Entra ID.
- Experience administering Microsoft 365 and Exchange Online.
- Experience with Nutanix, VMware, or comparable enterprise virtualization technologies.
- Working knowledge of networking, VPNs, DNS, DHCP, firewalls, and enterprise network infrastructure.
- Understanding of cybersecurity principles, endpoint security, least privilege, vulnerability remediation, and system hardening.
- Experience with operating system and third‑party application patch management.