
Description
Description
We're looking for a forward-thinking SCCM / Intune Engineer to help drive the modernization and automation of our endpoint management environment. As part of our Endpoint Engineering team, you'll play a key role in evolving our Windows 11 ecosystem, automating operational tasks, and integrating cloud-based management via Intune. If you're passionate about scripting, streamlining, and shaping the future of enterprise endpoint strategy, we want to hear from you. This position is hybrid- attendance required onsite in Washington D.C. at least once per week.
1. Modernization & Automation
- Lead efforts to automate endpoint management tasks using PowerShell, Proactive Remediations, and Task Sequences.
- Support a hybrid management model: modernizing endpoints with Intune while maintaining SCCM for existing workloads.
- Identify and resolve legacy technical debt through scripting, policy re-engineering, and configuration baseline development.
2. Windows 11 Optimization
- Collaborate on the enterprise-wide Windows 11 upgrade — ensuring modern configuration standards are met.
- Customize and optimize Windows 11 builds for security, performance, and compliance.
3. Policy & Platform Engineering
- Redesign and consolidate Group Policies and Intune device configurations to replace legacy controls.
- Build secure, scalable Intune app deployment models and explore Conditional Access integrations.
- Standardize application packaging workflows using modern deployment tools.
4. Endpoint Management at Scale
- Manage and support approximately 5,000 endpoints, primarily Windows workstations.
- Focus exclusively on desktops/laptops (no mobile device management).
- Use analytics and reporting tools (e.g., Power BI, CMPivot, SSRS) to assess device health and compliance.
Qualifications
Requirements:
- Bachelors and 5+ years specialized experience or Masters and 3+ years experience. Additional experience accepted in lieu of education.
- Must be a US Citizen and able to obtain a Public Trust
- Strong hands-on experience with Microsoft SCCM and Microsoft Intune in a hybrid or co-managed environment.
- Deep knowledge of PowerShell scripting, task sequencing, and automation of endpoint tasks.
- Proven ability to modernize and migrate traditional GPOs to Intune-compatible policies.
- Familiarity with Windows 11 management at scale, including security hardening and feature update control.
- Experience streamlining application delivery, leveraging Win32 packaging or line-of-business deployments.
- Strong collaboration and communication skills — able to work independently and translate technical plans to non-technical stakeholders.
Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.
Apply on company website