Endpoint Jobs
SerpAPI Google Jobs

SCCM Engineer

Solution Partners, Inc.

Our Healthcare client is seeking an experienced and highly skilled Senior Patching Engineer to lead and support enterprise-wide patching, vulnerability remediation, and endpoint management initiatives across a large healthcare environment. This role is...

Role overview

Job description

The ideal candidate will possess deep expertise in Microsoft Endpoint Management technologies, vulnerability remediation, operating system patching, compliance reporting, and healthcare IT operational requirements. This individual will work closely with Infrastructure, Security, and Compliance teams to ensure systems remain secure, compliant, and highly available while minimizing business disruption.

Work Requirements

Candidates must currently reside and be authorized to work in one of the following states:

Alabama, Arkansas, Florida, Georgia, Illinois, Indiana, Iowa, Kentucky, Louisiana, Mississippi, Missouri, North Carolina, Ohio, Oklahoma, South Carolina, Tennessee, Texas, Wisconsin, St. Louis, Missouri or Kansas City, Missouri.

Key Responsibilities

Patch Management & Vulnerability Remediation

Manage and maintain enterprise patching processes for Windows and Linux Servers, Windows workstations, and other supported platforms.

Plan, test, schedule, deploy, and validate security updates, cumulative updates, hotfixes, and feature upgrades.

Lead monthly patch cycles and emergency remediation activities for critical vulnerabilities.

Partner with Cybersecurity teams to identify, prioritize, and mitigate vulnerabilities based on risk and compliance requirements.

Develop patch deployment strategies that minimize downtime and maintain organizational service-level objectives.

Monitor patch compliance and drive remediation efforts to achieve established compliance targets.

SCCM (Microsoft Endpoint Configuration Manager)

Administer SCCM infrastructure including Software Update Points (SUP), Distribution Points, Boundary Groups, Collections, and Client Management.

Create, maintain, and optimize patch deployment packages and automated deployment rules.

Troubleshoot SCCM client health, software distribution, application deployments, and patching issues.

Develop compliance reporting and dashboards for executive leadership, IT management, and auditors.

Support operating system deployment (OSD) and endpoint lifecycle management initiatives.

Microsoft Intune & Endpoint Management

Administer Microsoft Intune policies, update rings, Autopilot, endpoint compliance, and device management configurations.

Manage co-managed environments integrating SCCM and Intune.

Support endpoint configuration, enrollment, compliance monitoring, and policy enforcement.

Collaborate with Security teams to implement Endpoint Security and Conditional Access strategies.

Server & Infrastructure Support

Support patching and maintenance for Windows and Linux Server environments across on-premises and cloud platforms.

Coordinate maintenance windows with infrastructure, application, and clinical teams.

Validate application functionality following patch deployments.

Perform root cause analysis for deployment failures and service-impacting issues.

Ensure high availability and operational stability of endpoint management platforms.

Compliance, Audit & Healthcare Security

Ensure systems comply with healthcare regulatory requirements including HIPAA, HITECH, and organizational security standards.

Produce audit-ready reports demonstrating patch compliance and vulnerability remediation.

Support internal and external audits related to system security and patch governance.

Maintain documentation, standard operating procedures, and technical runbooks.

Automation & Continuous Improvement

Develop PowerShell scripts and automation solutions for patching, reporting, and endpoint management activities.

Participate in architecture reviews and technology modernization initiatives.

Recommend and implement best practices for endpoint security and lifecycle management.

Required Qualifications

Bachelor's degree in Information Technology, Computer Science, Engineering, or related discipline, or equivalent work experience.

3+ years of experience supporting enterprise endpoint management environments.

3+ years of hands-on experience administering SCCM/MECM.

3+ years of experience administering Microsoft Intune.

Experience managing patching operations for large-scale environments consisting of servers and endpoints.

Strong knowledge of:

Microsoft SCCM/MECM

Microsoft Intune

Windows Update for Business (WUfB)

Windows Server platforms

Active Directory

Group Policy

PowerShell scripting

Microsoft Entra ID (Azure AD)

Experience with vulnerability management platforms such as Tenable, Qualys, Rapid7, or Microsoft Defender Vulnerability Management.

Strong troubleshooting and root-cause analysis skills.

Excellent communication and stakeholder management abilities.