- Serve as senior technical owner and escalation point for Trilon’s workplace endpoint ecosystem across Windows, Apple devices, Microsoft Teams Rooms, and copier/plotter fleets.
- Lead endpoint platform architecture, modernization, design review, technical direction, standards, documentation, change control, testing, rollback, and roadmap development.
- Define and maintain Windows endpoint configuration profiles, security baselines, compliance policies, assignment groups, role-based access, and policy exceptions.
- Own Microsoft Intune and Windows Autopilot architecture, enrollment, deployment, pre-provisioning, reset, redeployment, and zero-touch workflows.
- Design Microsoft Entra join, hybrid join, automatic MDM enrollment, and legacy-device transition patterns.
- Own Mac, iPhone, and iPad management through Microsoft Intune and Apple Business Manager.
- Manage application packaging and delivery through Intune, including Win32 packages, PSADT, detection rules, dependencies, supersedence, testing, assignments, remediation, and retirement.
- Manage Patch My PC, Windows Autopatch, update rings, PowerShell, Microsoft Graph, proactive remediation, APIs, and governed AI-assisted automation.
- Develop delivery patterns for large AEC applications such as Autodesk AutoCAD and Bentley products.
- Partner with Cybersecurity on Defender for Endpoint, BitLocker, Windows LAPS, Conditional Access, endpoint security, and vulnerability remediation.
- Build dashboards and reports covering enrollment, compliance, encryption, patch posture, deployment success, device health, exceptions, and remediation.
- Maintain endpoint inventory across identity, device-management, service-management, procurement, remote-support, and vendor systems.
- Govern endpoint lifecycle, hardware standards, warranties, leasing, refresh, recovery, reuse, retirement, and secure disposition.
- Own architecture, standards, lifecycle, monitoring, documentation, and vendor coordination for Microsoft Teams Rooms.
- Govern Trilon’s copier and plotter fleet, including standards, contracts, secure configuration, firmware, inventory, metrics, and replacement strategy.
- Lead endpoint discovery, assessment, planning, and migration for newly acquired firms.
- Partner with Service Delivery and Field Support on onboarding, offboarding, office openings, relocations, refresh events, and complex escalations.
- Communicate technical risks, decisions, progress, and exceptions to IT leadership and business stakeholders.
Requirements
- 7 or more years of endpoint management, systems engineering, or modern workplace experience, including hands‑on responsibility for managing thousands of endpoints through Microsoft Intune and Windows Autopilot in a distributed enterprise environment.
- Demonstrated technical leadership, sound judgment, and ability to influence technical peers, establish standards, coordinate across teams, and communicate clearly without formal reporting authority.
- Expert‑level hands‑on experience with Microsoft Intune, Windows Autopilot, Microsoft Entra ID device management, Windows 11, and endpoint policy architecture.
- Strong experience with enterprise software packaging and delivery, including Win32 applications, detection logic, dependencies, deployment rings, and troubleshooting failed installations; PSADT experience strongly preferred.
- Experience with Windows Autopatch or equivalent update‑ring governance and third‑party application and patch automation; Patch My PC experience strongly preferred.
- Advanced PowerShell skills and practical experience using Microsoft Graph or other APIs.
- Strong understanding of Microsoft Defender for Endpoint, BitLocker, Windows LAPS, Conditional Access, compliance, least privilege, and vulnerability remediation.
- Experience supporting complex distributed environments and endpoint operations during mergers, acquisitions, or tenant/domain transitions.
- Ability to reconcile data across device‑management, identity, asset, remote‑support, and service‑management systems; experience with hardware lifecycle, leasing, vendor coordination, asset governance, and secure retirement.
- Strong hands‑on experience managing Mac, iPhone, and iPad through Microsoft Intune and Apple Business Manager.
- Experience engineering or governing Microsoft Teams Rooms strongly preferred.
- Experience governing an enterprise copier, printer, or plotter fleet preferred.
- Experience with endpoint equipment warehousing and depot operations preferred.
- Experience packaging and deploying complex AEC applications, particularly Autodesk AutoCAD and Bentley products, preferred.
Core Competencies
Demonstrates expert‑level proficiency in Microsoft Intune, Windows Autopilot, and endpoint policy architecture, with a strong focus on managing and securing a diverse endpoint ecosystem. Capable of leading technical direction, governance, and lifecycle management for workplace technology, while effectively communicating with stakeholders.
Highest‑signal resume keywords
- Microsoft Intune Management
- Windows Autopilot Deployment
- Endpoint Policy Architecture
- PowerShell Scripting
- Enterprise Software Packaging
ATS Optimization Keywords
Hard Skills
- Endpoint Management
- Systems Engineering
- Windows 11 Configuration
- Microsoft Entra ID Device Management
- Application Packaging
- Patch My PC
- Microsoft Graph API
- Vulnerability Remediation
- Mac Management
- AEC Application Deployment
Soft Skills
- Technical Leadership
- Clear Communication
- Influencing Peers
- Judgment
- Collaboration
Industry Keywords
- Endpoint Ecosystem
- Device Management
- Lifecycle Management
- Distributed Enterprise Environment
- Copier Fleet Management
Tools & Technologies
- Microsoft Teams Rooms
- Apple Business Manager
- BitLocker
- Windows LAPS
- Conditional Access
Senior Endpoint Engineer in hartford at Unknown Company
This position is listed as contract and able to be worked remotely.