• The Microsoft Subject Matter Expert (SME) supports the endpoint engineering team with specialized expertise in Windows workstation baselines, Intune, Windows Autopilot, endpoint compliance, authentication, patch orchestration, and telemetry engineering.
• Engineer and maintain secure Windows workstation images supporting on-site, remote, and virtual desktop infrastructure (VDI) access.
• Support Microsoft Intune registration, compliance policies, and configuration profiles.
• Support Windows Autopilot for provisioning, registration, and lifecycle management.
• Engineer patch management and deployment workflows using Intune, Group Policy, Ivanti, and related tooling where applicable.
• Implement endpoint telemetry, log forwarding, and operational monitoring for Windows environments.
• Support passwordless and hardware-backed authentication methods where approved.
• Develop operational documentation, runbooks, and validation procedures.