> Markdown version of [/jobs/ext/3677293-defender-for-cloud-engineer](https://www.wearedevelopers.com/jobs/ext/3677293-defender-for-cloud-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Defender for Cloud Engineer - **Company:** OpenKyber LLC - **Location:** Atlanta, GA, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Application Packaging, Microsoft Azure, Software as a Service, Cloud Engineering, Configuration Management, Collaborative Software, Data as a Services, Identity and Access Management, System Center Configuration Manager, Virtual Desktops, Citrix Systems, Windows PowerShell, Azure Active Directory, Zero Trust Network Access, VMware Horizon View, Microsoft InTune, Kubernetes, Deployment Automation, Patch Management, Casper Suite, Graphql - **Published:** October 10, 2026 - **Apply:** https://www.careerjet.com/jobad/us908f830ba8df8d5bfb6517710aafef60 ## About the Role * EUC Architecture & Roadmap Ownership * Microsoft Intune / Endpoint Manager, SCCM/Configuration Manager (co-management) * Jamf / macOS Management * Azure Virtual Desktop, Citrix, VMware Horizon (VDI/DaaS) * Windows Autopilot / Zero-Touch Provisioning * Zero Trust, Conditional Access, Defender, EDR/XDR * Azure AD / Entra ID, MFA, SSO, IAM * PowerShell, Graph API, Automation Frameworks * Application Packaging & Delivery (native, virtualized, SaaS) Preferred Skills: * Digital Employee Experience (DEX) analytics and telemetry * Service governance, KPI frameworks, and continuous improvement * Stakeholder engagement and executive communication ## Description * Define and own the enterprise EUC architecture roadmap spanning endpoint management, VDI/DaaS, mobility, and collaboration platforms. * Architect and govern endpoint platforms: Microsoft Intune/Endpoint Manager, SCCM, and Jamf. * Define OS build, patch management, application packaging, and device compliance standards. * Embed Zero Trust principles, Conditional Access, and endpoint security (Defender, EDR/XDR) in partnership with security and identity teams. * Drive IAM integration with Azure AD/Entra ID, MFA, and SSO. * Architect application delivery models including native, virtualized, and cloud-based SaaS delivery. * Establish EUC operating model, governance frameworks, and KPIs for device health, user experience, and patch compliance. * Enable automation through PowerShell, Graph API, and orchestration frameworks.