> Markdown version of [/jobs/ext/3567285-windows-desktop-engineer](https://www.wearedevelopers.com/jobs/ext/3567285-windows-desktop-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Windows Desktop Engineer - **Company:** Apptad Inc. - **Location:** Denver, CO, United States - **Experience:** Expert - **Salary:** $114,400.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Microsoft Azure, Configuration Management, System Center Configuration Manager, Virtual Desktops, Windows PowerShell, Azure Active Directory, Zero Trust Network Access, Software Vulnerability Management, Windows Desktop, Microsoft InTune, Windows Security, CIS Benchmarks - **Published:** October 3, 2026 - **Apply:** https://www.careerjet.com/jobad/us10d1789c755692ab166bcb8b96a07a81 ## About the Role * Windows 10/11 Enterprise Administration * Group Policy (GPO) Design and Management * Microsoft Intune * Microsoft Endpoint Configuration Manager (MECM/SCCM) * Active Directory * PowerShell Scripting * Windows Security Baselines * Endpoint Hardening and Compliance Frameworks * Microsoft Defender Suite Preferred Skills * CIS Benchmark Implementation * Azure AD / Entra ID * Zero Trust Security Models * Automation and Configuration Management * Vulnerability Management Tools Soft Skills * Strategic thinking * Process improvement mindset * Documentation and governance * Strong stakeholder management ## Description The Windows Desktop Engineer is responsible for designing, implementing, and maintaining secure Windows endpoint configurations across the enterprise. The role focuses on endpoint hardening, Group Policy management, security compliance, configuration governance, and automation of recurring remediation activities. The engineer collaborates closely with infrastructure and cybersecurity teams to reduce vulnerability recurrence and strengthen security controls., * Develop and maintain enterprise desktop configuration standards. * Design and implement Group Policy controls and security baselines. * Manage endpoint hardening initiatives. * Identify and remediate configuration drift issues. * Implement policy-based security controls and automated remediation. * Partner with security teams on compliance and audit initiatives. * Support enterprise Windows operating system lifecycle management. * Drive automation to reduce operational support effort., Designs, engineers, and supports enterprise endpoint computing solutions across Microsoft Intune, Azure Virtual Desktop (AVD), Windows endpoints, and endpoint security platforms. E… + 1 month ago