EUC - Endpoint and MDM Engineer

1 day ago

Diwata, Metropolitan Manila, Philippines Talent500 INC Full-time

Position Summary:

The EUC - Endpoint and MDM Engineer is responsible for securing all tools and platforms managed by the End User Computing (EUC) team. This includes uplifting Mobile Device Management (MDM) across Android, iOS, and Windows devices, improving patching strategies, modernizing Group Policy management, and enhancing Microsoft Endpoint configurations. The role plays a key part in transitioning legacy systems to modern cloud-based solutions and ensuring compliance across production and corporate environments. Additionally, this role is responsible for the transition of any new process and enhancement to the business. This includes conducting impact assessments, driving user adoption, leading communication efforts, and providing education to ensure successful implementation and minimal disruption. These activities are crucial to maximizing the effectiveness of security initiatives and supporting organizational change.

Key challenges:

  • Managing Complex and Diverse IT Environments: Devices span multiple operating systems (Windows, macOS, Android, iOS) and ownership models (corporate, BYOD), making standardization and policy enforcement difficult.
  • Detecting and remediating non-compliant devices, enforcing app protection policies, and maintaining compliance across all platforms is an ongoing challenge.
  • Remote and hybrid work models mean many devices operate outside direct corporate network oversight, creating blind spots in monitoring and management.
  • Balancing security requirements with a seamless, productive user experience is critical but challenging.
  • Ensuring timely and consistent patching across all endpoints is complex, especially with devices in different locations and on varied schedules.
  • Employees using unauthorized applications or hardware increases risk and complicates management.

Experience and qualifications

Mandatory (critical for the role):

  • Proven 6+ experience with:
  • Active Directory and Group Policy management (on-prem and cloud).
  • Microsoft Intune (Microsoft Endpoint Manager), and SCCM.
  • Apples Automated Device Enrolment (ADE) and Samsung Knox Manage.
  • Windows LTSC, SOE lifecycle, and production device management.
  • Windows 11, SOE lifecycle, Asset & Lifecycle Management.
  • Application packaging and deployment via Intune and SCCM.
  • Strong understanding of zero-trust security models and compliance enforcement.
  • Experience with autopilot provisioning, patch automation, and compliance reporting.
  • Excellent communication and stakeholder engagement skills.
  • Demonstrated ability to lead change management initiatives and drive user adoption.
  • Demonstrates advanced expertise in endpoint security policies, compliance management solutions, and vulnerability mitigation practices.Desirable (preferable for the role)
  • Microsoft Certified: Endpoint Administrator Associate
  • Microsoft Certified: Security Operations Analyst Associate
  • Microsoft Certified: Windows Server Hybrid Administrator Associate
  • Microsoft Certified: Modern Desktop Administrator Associate
  • Desktop Virtualization: Experience with VDI solutions.
  • Experience with ITSM platforms (e.g., ServiceNow) and process improvement.

Desirable (preferable for the role):

  • Microsoft Certified: Endpoint Administrator Associate
  • Microsoft Certified: Security Operations Analyst Associate
  • Microsoft Certified: Windows Server Hybrid Administrator Associate
  • Microsoft Certified: Modern Desktop Administrator Associate
  • Desktop Virtualization: Experience with VDI solutions.
  • Experience with ITSM platforms (e.g., ServiceNow) and process improvement

Skills required:

  • Endpoint Management: Proficiency in Microsoft Intune, SCCM, Autopilot, JAMF, and other MDM/EMM platforms.
  • Scripting & Automation: Proficiency in PowerShell, Batch scripting, and automation frameworks.
  • Active Directory Administration: Managing on-premises and cloud AD environments.
  • Understanding of network protocols, VPNs, and device connectivity.
  • Strong customer-centric approach to support and solution delivery.
  • Operating System Troubleshooting: Deep knowledge of Windows, macOS, and mobile OS troubleshooting.
  • Endpoint Management: Proficiency in Microsoft Intune, SCCM, Autopilot, JAMF, and other MDM/EMM platforms.
  • Scripting & Automation: Proficiency in PowerShell, Batch scripting, and automation frameworks.
  • Active Directory Administration: Managing on-premises and cloud AD environments.
  • Understanding of network protocols, VPNs, and device connectivity.
  • Strong customer-centric ap