Microsoft Intune / Windows Endpoint Management Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
We are seeking an experienced Microsoft Intune and Windows Endpoint Management contractor to support a large-scale migration of a complex Windows environment from traditional Active Directory domain-joined devices to Microsoft Entra ID-joined devices managed by Microsoft Intune. This engagement is focused on modernizing endpoint management without implementing Hybrid Entra ID Join. The environment includes multiple Active Directory domains, numerous Group Policy Objects (GPOs), shared-device scenarios, and a diverse application portfolio. The contractor will be responsible for migration planning, technical implementation, automation, and documentation while minimizing user disruption and deployment risk., Current-State Assessment Assess Active Directory environments across multiple domains Review Organizational Units (OUs), Group Policy Objects (GPOs), login scripts, scheduled tasks, and local administrative configurations Identify policies and configurations that should be migrated, modernized, or retired Evaluate existing endpoint management processes and operational dependencies
Intune & Entra ID Migration Design and support Microsoft Entra ID Join implementation Design Microsoft Intune device management Configure Windows Autopilot Develop compliance, configuration, and endpoint security policies Support application deployment and lifecycle management Design migration waves and deployment strategies Establish enrollment and provisioning standards
User Profile Migration Develop strategies for preserving user profiles during migration from Active Directory identities to Entra ID identities Minimize user disruption caused by profile and SID changes Evaluate profile migration tools and methodologies Validate preservation of user data, desktop settings, browser profiles, application settings, and certificates where applicable
Automation & Deployment Develop PowerShell automation for: Device assessment Readiness validation Enrollment workflows Autopilot registration Device migration Reporting and monitoring Build repeatable deployment processes Create post-migration validation procedures
Risk Management Identify technical and operational migration risks Develop rollback and recovery procedures Create re-enrollment and break-glass processes Support pilot deployments and production rollout planning
Windows Endpoint Administration Administer and troubleshoot Windows 10 and Windows 11 devices Configure: Compliance Policies Configuration Profiles Endpoint Security Policies Windows Update for Business Application deployment Security baselines Support Windows Autopilot reset and reprovisioning
Documentation & Knowledge Transfer Produce technical documentation and operational runbooks Document migration procedures and support processes Deliver knowledge transfer to internal IT teams Document long-term operational support requirements
Strongly Preferred Experience User profile migration during Active Directory to Entra ID transitions Shared-device and multi-user device management Conditional Access Dynamic Groups Windows Update for Business Microsoft Defender for Endpoint Windows LAPS Consulting or contractor experience in enterprise environments Strong documentation and communication skills
Deliverables Current-state assessment and gap analysis GPO-to-Intune mapping matrix Client-state Intune and Entra ID architecture User profile migration strategy PowerShell automation framework Windows Autopilot deployment design Pilot migration plan and results Rollback and recovery procedures Device re-enrollment and reprovisioning runbooks Final technical documentation and knowledge transfer
Requirements
Enterprise Microsoft Intune administration Microsoft Entra ID Join experience Active Directory and Group Policy administration Experience translating GPOs into Intune policies Windows 10 and Windows 11 endpoint administration Advanced PowerShell scripting and automation Windows Autopilot deployment and provisioning Enterprise endpoint migration experience Microsoft Graph integration for automation or administration, The ideal candidate has successfully delivered one or more enterprise migrations from traditional Active Directory-managed Windows devices to Microsoft Entra ID and Microsoft Intune. They should be comfortable designing migration strategies, building automation, translating complex Group Policy environments into modern Intune management, and executing enterprise endpoint modernization with minimal business disruption.
TECHNICAL SKILLS
Nice To Have Graph API Microsoft Defender
Benefits & conditions
3.83.8 out of 5 stars Remote $17 - $22 an hour - Full-time
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 183: End of Win10, a Bus Factor of 0, "Call" Explained
Fully Remote Software Engineer Jobs
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
Should Tech Managers Be Developers First? Pros and Cons