Windows Administrator

Cognizant

Des Moines (IA)

Hybrid

USD 110,000 - 150,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
Long‑term/Short‑term Disability
Paid Parental Leave
Employee Stock Purchase Plan

Job summary

Cognizant in Des Moines, IA is hiring an experienced SCCM/Intune/Windows Administrator (L3) to support enterprise endpoint management, modern workplace initiatives, endpoint security, and Windows platform administration.

The role focuses on maintaining SCCM/MECM and Intune environments, device enrollment and lifecycle, patch management, and security compliance, with PowerShell automation and ITSM collaboration.

Qualifications

  • 8+ years of experience supporting enterprise Windows environments.
  • Strong hands-on expertise in SCCM/MECM administration and Microsoft Intune.
  • Experience managing enterprise endpoint deployments, patching, and compliance programs.
  • Experience supporting large-scale Windows migration and modernization projects.
  • Knowledge of ITIL Service Management practices.
  • Experience working within managed services and SLA-driven environments.
  • Proven experience supporting enterprise endpoint security initiatives.

Responsibilities

  • Administer, maintain, and optimize Microsoft Intune and SCCM/MECM environments for enterprise endpoint management.
  • Manage device enrollment, provisioning, imaging, deployment, and lifecycle activities across Windows endpoints.
  • Implement and support Windows Autopilot and modern device management solutions.
  • Configure compliance policies, configuration profiles, device restrictions, and endpoint governance standards.
  • Manage co-management environments integrating SCCM and Intune.
  • Monitor endpoint posture and ensure adherence to organizational technology standards.
  • Package, test, deploy, and support enterprise applications using SCCM and Intune.
  • Manage deployment of operating system patches, cumulative updates, feature updates, and third‑party software patches.
  • Monitor software distribution performance and deployment success metrics.
  • Perform patch compliance reporting and remediation activities.
  • Ensure endpoint systems remain compliant with security and operational standards.
  • Coordinate patching schedules and maintenance windows with business and infrastructure teams.
  • Support and administer Windows 10 and Windows 11 enterprise environments.
  • Manage OS migrations, feature upgrades, image maintenance, and deployment strategies.
  • Troubleshoot Windows operating system issues related to performance, reliability, and user experience.
  • Administer Active Directory integration and Group Policy configurations.
  • Maintain Windows security baselines and hardening standards.
  • Support endpoint performance optimization initiatives and system lifecycle planning.
  • Implement and maintain endpoint security controls aligned with enterprise security policies.
  • Support Microsoft Defender for Endpoint, BitLocker encryption, and endpoint protection technologies.
  • Conduct vulnerability assessments and coordinate remediation activities.
  • Partner with cybersecurity teams to address security findings and policy compliance gaps.
  • Ensure regulatory, audit, and organizational compliance requirements are met.
  • Support Zero Trust and endpoint security initiatives.
  • Diagnose and resolve complex SCCM client, Intune enrollment, software deployment, and endpoint configuration issues.
  • Support enterprise endpoint infrastructure including management points, distribution points, software update points, and related services.
  • Perform root cause analysis (RCA) for recurring incidents and service disruptions.
  • Act as an L3 escalation point for critical endpoint management issues.
  • Collaborate with server, network, cloud, and security teams to ensure seamless endpoint operations.
  • Maintain system stability and improve endpoint service availability.
  • Develop, maintain, and enhance PowerShell scripts for automation and operational efficiency.
  • Automate routine administration, health checks, reporting, and remediation activities.
  • Build operational dashboards and executive reporting metrics.
  • Monitor endpoint health, deployment performance, compliance status, and service quality metrics.
  • Identify opportunities to reduce manual effort through process automation and standardization.
  • Maintain runbooks, SOPs, and technical documentation.
  • Support audit activities and compliance reviews.
  • Participate in Incident, Change, Problem, Release, and Configuration Management processes.
  • Ensure all activities comply with ITIL and organizational governance standards.
  • Maintain accurate records for system configurations, deployments, and operational changes.

Skills

SCCM/MECM
Intune
Microsoft Endpoint Manager
Windows Autopilot
Co-Management
Device Enrollment
Windows 10
Windows 11
Active Directory
Group Policy
Security Hardening
Defender for Endpoint
BitLocker
PowerShell Scripting
Automation
ServiceNow
Incident Management
Change Management
Root Cause Analysis

Tools

SCCM/MECM tooling
Intune tooling

Job description

Job Title: SCCM/ Intune/ Windows Administrator (L3)

Job Location: Hybrid- Des Moines, IA, USA.

** Please note, this role is not able to offer visa transfer or sponsorship now or in the future

We are seeking an experienced SCCM / Intune / Windows Administrator (L3) to support enterprise endpoint management, modern workplace initiatives, endpoint security, and Windows platform administration. The ideal candidate will possess strong expertise in Microsoft Endpoint Configuration Manager (SCCM/MECM), Microsoft Intune, Windows 10/11 administration, endpoint security technologies, and PowerShell automation.

This role will be responsible for maintaining endpoint health, software deployment services, device lifecycle management, compliance enforcement, vulnerability remediation, and advanced troubleshooting within a large-scale enterprise environment.

In this role, you will

Endpoint Management & Modern Device Administration
  • Administer, maintain, and optimize Microsoft Intune and SCCM/MECM environments for enterprise endpoint management.
  • Manage device enrollment, provisioning, imaging, deployment, and lifecycle activities across Windows endpoints.
  • Implement and support Windows Autopilot and modern device management solutions.
  • Configure compliance policies, configuration profiles, device restrictions, and endpoint governance standards.
  • Manage co-management environments integrating SCCM and Intune.
  • Monitor endpoint posture and ensure adherence to organizational technology standards.
Software Distribution & Patch Management
  • Package, test, deploy, and support enterprise applications using SCCM and Intune.
  • Manage deployment of operating system patches, cumulative updates, feature updates, and third‑party software patches.
  • Monitor software distribution performance and deployment success metrics.
  • Perform patch compliance reporting and remediation activities.
  • Ensure endpoint systems remain compliant with security and operational standards.
  • Coordinate patching schedules and maintenance windows with business and infrastructure teams.
Windows Administration
  • Support and administer Windows 10 and Windows 11 enterprise environments.
  • Manage OS migrations, feature upgrades, image maintenance, and deployment strategies.
  • Troubleshoot Windows operating system issues related to performance, reliability, and user experience.
  • Administer Active Directory integration and Group Policy configurations.
  • Maintain Windows security baselines and hardening standards.
  • Support endpoint performance optimization initiatives and system lifecycle planning.
Endpoint Security & Compliance
  • Implement and maintain endpoint security controls aligned with enterprise security policies.
  • Support Microsoft Defender for Endpoint, BitLocker encryption, and endpoint protection technologies.
  • Conduct vulnerability assessments and coordinate remediation activities.
  • Partner with cybersecurity teams to address security findings and policy compliance gaps.
  • Ensure regulatory, audit, and organizational compliance requirements are met.
  • Support Zero Trust and endpoint security initiatives.
Infrastructure Support & Advanced Troubleshooting
  • Diagnose and resolve complex SCCM client, Intune enrollment, software deployment, and endpoint configuration issues.
  • Support enterprise endpoint infrastructure including management points, distribution points, software update points, and related services.
  • Perform root cause analysis (RCA) for recurring incidents and service disruptions.
  • Act as an L3 escalation point for critical endpoint management issues.
  • Collaborate with server, network, cloud, and security teams to ensure seamless endpoint operations.
  • Maintain system stability and improve endpoint service availability.
Automation & Operational Excellence
  • Develop, maintain, and enhance PowerShell scripts for automation and operational efficiency.
  • Automate routine administration, health checks, reporting, and remediation activities.
  • Build operational dashboards and executive reporting metrics.
  • Monitor endpoint health, deployment performance, compliance status, and service quality metrics.
  • Identify opportunities to reduce manual effort through process automation and standardization.
Documentation, Governance & ITSM
  • Maintain runbooks, standard operating procedures (SOPs), and technical documentation.
  • Support audit activities and compliance reviews.
  • Participate in Incident, Change, Problem, Release, and Configuration Management processes.
  • Ensure all activities comply with ITIL and organizational governance standards.
  • Maintain accurate records for system configurations, deployments, and operational changes.
Required Technical Skills
Endpoint Management
  • Microsoft Endpoint Configuration Manager (SCCM/MECM)
  • Microsoft Intune
  • Microsoft Endpoint Manager
  • Windows Autopilot
  • Co‑Management Architecture
  • Device Enrollment & Lifecycle Management
Windows Administration
  • Windows 10 Administration
  • Windows 11 Administration
  • Active Directory
  • Group Policy Administration
  • Windows Security Hardening
  • Endpoint Configuration Management
Security & Compliance
  • Microsoft Defender for Endpoint
  • BitLocker Administration
  • Endpoint Protection Policies
  • Vulnerability Management
  • Security Baselines
  • Compliance Reporting
Scripting & Automation
  • PowerShell Scripting
  • Windows Automation Frameworks
  • Task Automation
  • Operational Reporting Automation
ITSM & Operations
  • ServiceNow or other Enterprise ITSM Platforms
  • Incident Management
  • Change Management
  • Problem Management
  • Release Management
  • Root Cause Analysis (RCA)
  • SLA Management

What you’ll need to succeed (required skills)

  • 8+ years of experience supporting enterprise Windows environments.
  • Strong hands‑on expertise in SCCM/MECM administration and Microsoft Intune.
  • Experience managing enterprise endpoint deployments, patching, and compliance programs.
  • Experience supporting large‑scale Windows migration and modernization projects.
  • Knowledge of ITIL Service Management practices.
  • Experience working within managed services and SLA‑driven environments.
  • Proven experience supporting enterprise endpoint security initiatives.

Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:

  • Medical/Dental/Vision/Life Insurance

  • Paid holidays plus Paid Time Off

  • 401(k) plan and contributions

  • Long‑term/Short‑term Disability

  • Paid Parental Leave

  • Employee Stock Purchase Plan

Work model:

At Cognizant, we strive to provide flexibility wherever possible, and we are here to support a healthy work‑life balance though our various wellbeing programs. Based on this role’s business requirements, this is a hybrid role requiring 3 days a week at client site in Des Moines, IA, USA.

The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.

“Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SCCM / Intune / Windows Administrator (L3)
SCCM / Intune / Windows Administrator (L3)

Cognizant • Des Moines (IA)

Hybrid
USD 49,000 - 92,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contribution
+3
Experienced Windows Endpoint Administrator - SCCM & Intune
Experienced Windows Endpoint Administrator - SCCM & Intune

Cognizant • Des Moines (IA)

Hybrid
USD 49,000 - 92,000
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contribution
+3
Enterprise Compute Tower Lead (Windows & Linux Infrastructure)
Enterprise Compute Tower Lead (Windows & Linux Infrastructure)

Cognizant • Des Moines (IA)

Hybrid
USD 119,000 - 137,000
Medical/Dental/Vision/Life Insurance
401(k) plan and contribution
Paid holidays plus Paid Time Off
+3
Senior Power BI Developer
Senior Power BI Developer

Cognizant • Des Moines (IA)

Hybrid
USD 90,000 - 150,000
Medical/Dental/Vision/Life Insurance
Paid holidays + PTO
401(k) plan
+3
Service Desk Support Analyst
Service Desk Support Analyst

Cognizant • Chicago (IL)

On-site
USD 37,440 - 45,760
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
+3
Service Desk Support Analyst
Service Desk Support Analyst

Cognizant • Olympia (WA)

On-site
USD 37,440 - 45,760
Medical/Dental/Vision/Life Insurance
Paid holidays and Paid Time Off
401(k) plan and contributions
+3
Service Desk Support Analyst
Service Desk Support Analyst

Cognizant • Hartford (CT)

On-site
USD 37,440 - 45,760
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan
+3
Service Desk Support Analyst
Service Desk Support Analyst

Cognizant • Madison (WI)

On-site
USD 37,440 - 45,760
Medical/Dental/Vision Insurance
Paid Time Off
401(k) plan
+2
Service Desk Support Analyst
Service Desk Support Analyst

Cognizant • Atlanta (GA)

On-site
USD 37,440 - 45,760
Medical/Dental/Vision Insurance
Paid Holidays and Time Off
401(k) Plan
+3
Service Desk Support Analyst
Service Desk Support Analyst

Cognizant • Columbus (OH)

Hybrid
USD 37,440 - 45,760
Medical/Dental/Vision/Life Insurance
Paid Time Off
401(k) plan
+2