Senior Endpoint Management Engineer (Temporary)
Vir Biotechnology, Inc. · San Francisco, CA · Yesterday
EngineeringTemporary
What You'll Do
- Microsoft Intune administration, including configuration profiles, compliance policies, app deployments, enrollment, reporting, and troubleshooting.
- Windows Autopilot provisioning, device enrollment, endpoint standards, rebuilds, refreshes, and lifecycle processes.
- Automox patch management, including patch policy design, compliance tracking, failed patch remediation, Worklets, reporting, and exception handling.
- Endpoint security controls, including security baselines, Vir security tools, Conditional Access dependencies, local admin controls, and secure configuration standards.
- Microsoft 365 and Entra ID tasks tied to endpoint operations, including device identity, groups, licensing, access, and user/device lifecycle administration.
- PowerShell and Microsoft Graph automation to reduce manual effort, improve visibility, and fix recurring endpoint issues at scale.
- Operational documentation, runbooks, support guides, reporting, and repeatable processes for IT Operations and Service Desk teams.
- Own Microsoft Intune as the primary endpoint management platform for Windows and macOS endpoints.
- Design, implement, troubleshoot, and continuously improve device enrollment, Windows Autopilot, configuration profiles, compliance policies, security baselines, application deployments, update rings, device restrictions, and endpoint lifecycle workflows.
- Serve as the escalation point for complex Intune, Autopilot, enrollment, policy, application deployment, compliance, and device configuration issues.
- Create a clean, scalable endpoint architecture that minimizes drift, reduces one-off exceptions, and supports consistent configuration across the fleet.
- Create and maintain device standards for provisioning, rebuilds, refreshes, remote support, decommissioning, and secure disposal.
- Use reporting, dashboards, and operational review cycles to identify compliance gaps, failed deployments, device health issues, and recurring endpoint problems.
- Translate business needs into endpoint management policies that are secure, supportable, and user-conscious.
Who You Are And What You Bring
- 5+ years of experience in endpoint management, modern workplace engineering, systems administration, infrastructure operations, or a related role.
- Strong hands-on experience with Microsoft Intune and Windows endpoint management.
- Experience with Windows Autopilot, device enrollment, application deployment, compliance policies, and endpoint troubleshooting.
- Experience with Automox or another enterprise patch management platform.
- Working knowledge of Microsoft 365, Entra ID, endpoint security, device identity, access controls, and user/device lifecycle processes.
- Ability to script and automate with PowerShell; Microsoft Graph experience is a strong plus.
- Strong troubleshooting, documentation, communication, and ownership skills.