Microsoft Intune / Windows Endpoint Management Engineer
VIVA USA INC
Microsoft Intune / Windows Endpoint Management Contractor Overview We are seeking an experienced Microsoft Intune and Windows Endpoint Management contractor to support a large-scale migration of a complex Windows environment from traditional Active...
Job description
This engagement is focused on modernizing endpoint management without implementing Hybrid Entra ID Join. The environment includes multiple Active Directory domains, numerous Group Policy Objects (GPOs), shared-device scenarios, and a diverse application portfolio.
The contractor will be responsible for migration planning, technical implementation, automation, and documentation while minimizing user disruption and deployment risk.
Must-Have Qualifications
Enterprise Microsoft Intune administration
Microsoft Entra ID Join experience
Active Directory and Group Policy administration
Experience translating GPOs into Intune policies
Windows 10 and Windows 11 endpoint administration
Advanced PowerShell scripting and automation
Windows Autopilot deployment and provisioning
Enterprise endpoint migration experience
Microsoft Graph integration for automation or administration
Key Responsibilities
Current-State Assessment
Assess Active Directory environments across multiple domains
Review Organizational Units (OUs), Group Policy Objects (GPOs), login scripts, scheduled tasks, and local administrative configurations
Identify policies and configurations that should be migrated, modernized, or retired
Evaluate existing endpoint management processes and operational dependencies
Intune & Entra ID Migration
Design and support Microsoft Entra ID Join implementation
Design Microsoft Intune device management
Configure Windows Autopilot
Develop compliance, configuration, and endpoint security policies
Support application deployment and lifecycle management
Design migration waves and deployment strategies
Establish enrollment and provisioning standards
User Profile Migration
Develop strategies for preserving user profiles during migration from Active Directory identities to Entra ID identities
Minimize user disruption caused by profile and SID changes
Evaluate profile migration tools and methodologies
Validate preservation of user data, desktop settings, browser profiles, application settings, and certificates where applicable
Automation & Deployment
Develop PowerShell automation for:
Device assessment
Readiness validation
Enrollment workflows
Autopilot registration
Device migration
Reporting and monitoring
Build repeatable deployment processes
Create post-migration validation procedures
Risk Management
Identify technical and operational migration risks
Develop rollback and recovery procedures
Create re-enrollment and break-glass processes
Support pilot deployments and production rollout planning
Windows Endpoint Administration
Administer and troubleshoot Windows 10 and Windows 11 devices
Configure:
Compliance Policies
Configuration Profiles
Endpoint Security Policies
Windows Update for Business
Application deployment
Security baselines
Support Windows Autopilot reset and reprovisioning
Documentation & Knowledge Transfer
Produce technical documentation and operational runbooks
Document migration procedures and support processes
Deliver knowledge transfer to internal IT teams
Document long-term operational support requirements
Strongly Preferred Experience
User profile migration during Active Directory to Entra ID transitions
Shared-device and multi-user device management
Conditional Access
Dynamic Groups
Windows Update for Business
Microsoft Defender for Endpoint
Windows LAPS
Consulting or contractor experience in enterprise environments
Strong documentation and communication skills
Deliverables
Current-state assessment and gap analysis
GPO-to-Intune mapping matrix
Client-state Intune and Entra ID architecture
User profile migration strategy
PowerShell automation framework
Windows Autopilot deployment design
Pilot migration plan and results
Rollback and recovery procedures
Device re-enrollment and reprovisioning runbooks
Final technical documentation and knowledge transfer
Ideal Candidate
The ideal candidate has successfully delivered one or more enterprise migrations from traditional Active Directory-managed Windows devices to Microsoft Entra ID and Microsoft Intune. They should be comfortable designing migration strategies, building automation, translating complex Group Policy environments into modern Intune management, and executing enterprise endpoint modernization with minimal business disruption.
TECHNICAL SKILLS
Nice To Have
Graph API
Microsoft Defender
Notes:
Remote
VIVA is an equal opportunity employer. All qualified applicants have an equal opportunity for placement, and all employees have an equal opportunity to develop on the job. This means that VIVA will not discriminate against any employee or qualified applicant on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.