Senior Microsoft Endpoint Management Engineer
Fire Fighter Sales & Service Co.
Job DetailsJob Location: Vast Enterprises Inc - Cranberry Township, PA 16066Position Type: Full TimeEducation Level: 2 Year DegreeTravel Percentage: NoneJob Shift: DayJob Category: Information TechnologyJob SummaryThe Senior Microsoft Endpoint Management...
Job description
Key ResponsibilitiesMECM / SCCMDesign, implement, administer, and maintain MECM infrastructure, including site systems, boundaries, boundary groups, distribution points, and client settings.Monitor MECM health, performance, and availability; perform upgrades, hotfix installations, and environment maintenance.Design and maintain Windows10/11 operating system deployment task sequences for bare‑metal, refresh, and in‑place upgrade scenarios.Manage boot images, driver repositories, deployment media, and PXE/task sequence troubleshooting.Package, test, deploy, and maintain enterprise applications using MSI, EXE, PowerShell, scripts, and establish detection methods, dependencies, supersedence, and deployment requirements.Manage Windows and third‑party patching solutions, including deployment rings, maintenance windows, compliance monitoring, and remediation.Intune / Cloud Endpoint ManagementDesign, implement, and administer Microsoft Intune environments for Windows, macOS, iOS, and Android device management.Configure device enrollment, Microsoft Entra ID join, hybrid join, compliance policies, configuration profiles, device restrictions, and endpoint security policies.Design and implement Windows Autopilot scenarios, including user‑driven, pre‑provisioned, and self‑deploying deployments.Configure Enrollment Status Page behavior, Autopilot profile assignments, and troubleshoot enrollment and provisioning issues.Package and deploy Win32, Microsoft Store, Microsoft 365 Apps, and line‑of‑business applications; manage application lifecycle and update processes.Configure and maintain security baselines, BitLocker management, Endpoint Privilege Management, Microsoft Defender integration, and Conditional Access integration.Co‑Management & Endpoint ModernizationDesign and implement MECM/Intune co‑management solutions and migrate workloads between MECM and Intune.Develop endpoint modernization roadmaps that guide customers from traditional device management to cloud‑native management.Assess customer endpoint environments and recommend best‑practice architectures for modern management, compliance, and security.Lead technical workshops, design sessions, implementation efforts, and customer‑facing endpoint management projects.Automation, Documentation & ReportingDevelop PowerShell scripts for endpoint automation, administration, reporting, and remediation.Integrate endpoint management workflows with Microsoft Graph API where applicable.Create and maintain technical documentation, SOPs, runbooks, architecture diagrams, and implementation guides.Develop reports using MECM, Intune, Power BI, SQL, and Microsoft reporting tools to track deployment success, compliance, and endpoint metrics.Provide Tier3 escalation support and mentor junior engineers or support staff.Qualifications5+ years of hands‑on experience administering MECM/SCCM in enterprise environments.5+ years of hands‑on experience administering Microsoft Intune.Strong experience with Windows10 and Windows11 deployment, management, and troubleshooting.Experience with operating system deployment, application packaging/deployment, patch management, endpoint security, and device compliance.Compensation & BenefitsMedical, dental, and vision insurance plans.Company‑paid life insurance and long‑term disability coverage.Optional supplemental benefits.Paid time off (PTO) starting in your first year of employment.Seven (7) paid holidays annually.401(k) plan with safe harbor match, including both traditional and Roth options.Business casual office environment.Employee referral program with bonus opportunities.