Overview
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Endpoint Engineer / DHS Desktop Support Services b
Full job description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Endpoint Engineer / DHS Desktop Support Services based in United States. This role leads enterprise endpoint engineering in a large-scale desktop support environment, with a focus on Microsoft Intune, SCCM/MECM, and Azure. You will oversee device provisioning, application deployment, patching, compliance, and hybrid identity across on-premises and cloud environments. The position combines endpoint administration with automation, Windows infrastructure support, networking, and security operations. You will help maintain reliable, secure, and compliant endpoint services while improving operational efficiency through PowerShell automation. The role also includes mentoring junior engineers and collaborating across technical teams. This is a full-time direct-hire opportunity for an experienced engineer based in the DMV area, with primarily remote work and occasional in-person meetings.
Lead enterprise endpoint engineering activities across Microsoft Intune, SCCM/MECM, and Azure. Manage device provisioning, application deployment, patching, enrollment, policy configuration, and endpoint compliance. Administer hybrid identity environments spanning on-premises and cloud infrastructure. Automate endpoint management and operational processes using PowerShell. Support Windows client and server infrastructure across supported operating environments. Implement, maintain, and improve endpoint security controls and related compliance processes. Manage endpoint imaging and operating system deployment activities, including WIM capture and deployment. Support IAVA processes, including CYBERCOM release, testing, approval, and deployment activities. Provide support for networking, VPN, certificate authentication, and related endpoint connectivity requirements. Mentor junior engineers and contribute technical guidance across the endpoint engineering team. Requirements: Bachelor’s degree with approximately 13 years of relevant professional experience. 5+ years of experience with SCCM software packaging and patching. 5+ years of experience administering Intune Autopilot. Advanced knowledge of Intune and SCCM device enrollment, policy management, and compliance. Strong experience with MDT/SCCM imaging, including WIM capture and Operating System Deployment (OSD). Strong PowerShell scripting and automation capabilities. Experience supporting Windows Server 2016, 2019, and 2022, as well as Windows 11. Strong knowledge of Active Directory, DNS, and Group Policy (GPO) management. Functional knowledge of VMware vCenter and SQL Server. Experience with IAVA processes, including release, testing, approval, and deployment workflows. Strong understanding of networking, VPN technologies, and certificate-based authentication. Microsoft Certified: Endpoint Administrator Associate certification. SCCM certification meeting the applicable client requirements. Ability to work effectively in a primarily remote environment while attending required in-person meetings in the DMV area. Benefits: Salary range of $135,000–$150,000 per year. Full-time, direct-hire employment. Primarily remote work arrangement. Hybrid flexibility with in-person meetings in the Washington, DC/Maryland/Virginia area as required. Opportunity to lead enterprise endpoint engineering across modern Microsoft endpoint and cloud technologies. Opportunity to mentor junior engineers and contribute to large-scale desktop support services.
Tips for this job
Practical JobOpportunity guidance. These tips do not replace official rules or create new eligibility requirements.
- Tailor the CV and application to the responsibilities and required skills stated on the official employer page.
- Use concrete evidence of relevant work, projects and measurable results rather than generic claims.
- Confirm location, work authorization, remote restrictions and sponsorship terms before applying.
- Apply through the original employer or official recruitment destination shown on this page.
Verification notes
laptop-ats-crawler v3
JobOpportunity is the discovery and verification layer. Confirm eligibility, dates, salary/funding and application instructions on the original source before submitting anything.
Apply through JobOpportunity →Browse current JobOpportunity listings from jobgether (lever) →