Desktop & Windows Engineer — Subject Matter Expert (SME)
mCloud Technology
About the role We are seeking an experienced Desktop & Windows Engineer to support a large federal enterprise IT environment. This role will develop, test, deploy, and maintain Windows operating system images and enterprise endpoint solutions. The ideal...
Job description
Key responsibilities
Design, build, test, and maintain Windows 11 operating system images for enterprise deployment.Engineer and support deployment solutions using Microsoft Configuration Manager (SCCM/MECM), Operating System Deployment (OSD), Microsoft Deployment Toolkit (MDT), Intune, and Windows Autopilot.Develop, test, and deploy application packages and software updates across desktops, laptops, tablets, and servers.Automate provisioning, configuration, reporting, troubleshooting, and server builds using PowerShell and other scripting tools.Manage endpoint configurations, compliance policies, Group Policy, and Windows update processes.Support patching and vulnerability remediation using tools such as HCL BigFix, MECM, and Windows Update for Business.Review vulnerability scans, maintain security documentation, and support assessments and audits.Troubleshoot complex Windows, application, hardware, and endpoint performance issues.Evaluate hardware and manage drivers, firmware, standards, and device lifecycle requirements.Recommend technical solutions that meet user needs and enterprise security requirements.
Required qualifications
Bachelor’s degree in computer science, business, or a related discipline. Ten years of relevant work experience may substitute for the degree.Deep knowledge of Windows 11 architecture, internals, and configuration.Strong experience with enterprise imaging, software distribution, and operating system deployment.Expertise in Active Directory, Group Policy Objects (GPOs), organizational unit structures, and domain services.Proficiency in PowerShell scripting and familiarity with VBScript.Experience with Intune, Autopilot, device compliance policies, and configuration profiles.Knowledge of endpoint security technologies, including BitLocker, Microsoft Defender for Endpoint, application control, and privilege management.Experience with patch management, vulnerability remediation, and secure endpoint configuration.Understanding of enterprise networking fundamentals, including DNS, DHCP, VPNs, and certificates.Experience with monitoring and troubleshooting tools such as Event Viewer, Log Analytics, and SIEM platforms.Familiarity with VDI and Hyper-V.Experience with C# or Visual Basic and strong knowledge of .NET.
Preferred qualifications
Advanced PowerShell skills, including module development and enterprise-scale automation.Strong experience with cloud-based endpoint management, Azure AD, Conditional Access, and Defender for Endpoint.Expertise in modern provisioning, including Autopilot, Enrollment Status Page (ESP) customization, and scripted deployments.Familiarity with Zero Trust endpoint principles and secure configuration baselines.Knowledge of certificate services, public key infrastructure (PKI), and enterprise certificate management.Advanced Windows troubleshooting experience using debugging symbols, Process Monitor (ProcMon), WinDbg, and performance analysis tools.