Microsoft Endpoint Platform Lead

Essnova Solutions, Inc.
Bethesda, MD, United States
2 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$87,100.0 - $157,450.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Apple Mac Systems Application Packaging Microsoft Azure Cloud Engineering Configuration Management Cyber Security System Center Configuration Manager Azure Active Directory Systems Integration Scripting Microsoft InTune
+4 more
Information Technology Casper Suite CIS Benchmarks Unified Endpoint Management

Job description

Essnova Solutions, Inc. is seeking an experienced Microsoft Endpoint Platform Lead to lead enterprise endpoint-management delivery supporting a large-scale Microsoft endpoint management and cybersecurity modernization program for the National Institutes of Health (NIH). This position is contingent upon Essnova receiving contract award. The Microsoft Endpoint Platform Lead will lead technical delivery and governance across Microsoft Intune, Microsoft Endpoint Configuration Manager (MECM/SCCM), MECM/Intune co-management, Azure Arc alignment, and JAMF/macOS support across an enterprise environment of approximately 55,000 endpoints and 15,000+ servers. What You’ll Do

  • Lead enterprise endpoint-management governance across Windows, macOS, and other approved endpoint populations.
  • Lead Microsoft Intune and MECM/SCCM co-management, cloud-native Intune configuration, migration, onboarding, and centralized endpoint-management activities.
  • Implement, maintain, troubleshoot, and document approved configuration baselines, security baselines, compliance settings, operational standards, and exceptions.
  • Support enterprise Intune enrollment, device compliance, policy configuration, migrations, and endpoint-management reporting.
  • Coordinate JAMF/macOS governance, centralization planning, baseline documentation, onboarding evidence, and authorization support.
  • Support integration and dependencies involving Azure Arc, Microsoft Entra, Conditional Access, and device signals.
  • Provide systems integration, application-packaging standardization, automation, scripting, and technical troubleshooting.
  • Develop and maintain endpoint governance artifacts, technical baselines, SOPs, operational documentation, dashboards, reports, implementation evidence, and knowledge-transfer materials.
  • Monitor and report endpoint enrollment, compliance, migrations, baselines, exceptions, risks, dependencies, and operational trends.
  • Support ATO, ATU, SSP, security assessments, audits, and compliance evidence for endpoint-management capabilities.
  • Support applicable federal security and compliance requirements, including NIST control evidence and Section 508-compliant deliverables.
  • Support transition of NIH endpoint-management capabilities from modernization and migration activities into steady-state enterprise operations., Selected personnel must be willing and able to satisfy applicable post-award security, privacy, background investigation, training, rules-of-behavior, NDA, and Government system/access requirements. A signed Letter of Commitment will be required for proposed Key Personnel. Contingency Notice This position is contingent upon Essnova Solutions, Inc. receiving contract award and Government approval of proposed Key Personnel. Anticipated contract performance is expected to begin following award. Equal Employment Opportunity Essnova Solutions, Inc. is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, protected veteran status, or any other status protected by applicable law.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, Engineering, or a related technical discipline.
  • 8+ years of enterprise endpoint-management experience.
  • 5+ years of hands-on experience with Microsoft Intune and MECM/SCCM.
  • Demonstrated hands-on experience with:

  • Microsoft Intune
  • Microsoft Endpoint Configuration Manager (MECM/SCCM)
  • MECM/Intune co-management
  • Intune enrollment and device onboarding
  • Device compliance and policy configuration
  • Configuration and security baselines
  • Endpoint migrations
  • Exception management
  • Enterprise endpoint governance and reporting
  • Experience supporting large-scale enterprise device populations and complex, multi-organization operating environments.
  • Demonstrated experience creating technical baselines, operating procedures, implementation evidence, reports, dashboards, and knowledge-transfer materials.
  • Experience supporting enterprise endpoint migrations, centralized management initiatives, and transition into steady-state operations.

Preferred Qualifications

  • Experience supporting NIH, HHS, or another civilian federal health/science agency.
  • Experience with Azure Arc, Microsoft Entra, Conditional Access, and device signals.
  • Experience with JAMF and macOS endpoint management/governance.
  • Experience with automation, scripting, systems integration, and application packaging.
  • Experience supporting federal authorization/ATO processes, NIST control evidence, security assessments, audits, and compliance requirements.
  • Experience producing Section 508-compliant deliverables.
  • Microsoft 365 Certified: Endpoint Administrator Associate or a current equivalent Microsoft certification.
  • Demonstrated experience achieving measurable improvements in endpoint enrollment, device compliance, migration completion, baseline implementation, exception reduction, or operational transition.

About the company

  • $87,100-157,450 per year

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

1:06 min

Developer experience and project variety at scale

Alexandra Petri · World Congress 2023

Videos

See all

Related articles

See all