M365 & Endpoint Engineer

48forty Solutions

$115K — $130K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4–6 years of Microsoft 365 administration experience in a production enterprise environment.
  • 2–3 years of hands-on experience with Microsoft Intune / MEM at scale.
  • Strong administration skills in Exchange Online, SharePoint Online, and Teams.
  • Proficient in Entra ID and Conditional Access functionality.
  • Experience with PowerShell and Microsoft Graph for scripting and automation tasks.
  • Knowledge in Windows endpoint management and Autopilot implementations.
  • Certification in MD-102 (Endpoint Administrator) is required; MS-102 (Microsoft 365 Administrator) is preferred.

Responsibilities

  • Own the management of the Microsoft Intune platform including compliance and configuration policies.
  • Engineer application packaging and deployment, manage updates, and oversee driver and firmware management.
  • Build and maintain integrations between device compliance policies and Conditional Access.
  • Manage endpoint security baselines and policies through Intune.
  • Lead the enablement of BYOD policies with app protection strategies.
  • Automate device workflows using PowerShell and Microsoft Graph.
  • Oversee Exchange Online management, including transport rules and anti-spam policy.

Benefits

  • Competitive pay and daily pay access to earned wages before payday.
  • Referral bonuses for bringing in new talent.
  • Opportunities for long-term career advancement.
  • Paid time off for vacations and personal days
  • Comprehensive medical, dental, and vision insurance, plus life and disability coverage.
  • 401(k) retirement plan with company contributions.
  • Supportive team environment fostering collaboration.
  • Access to a free onsite gym for all employees.
Full Job Description
Overview

As a M365 & Endpoint Engineer, you’ll get to own the day-to-day engineering and administration of the Microsoft 365 (M365) platform and endpoint estate, with deep specialization in Microsoft Intune. You’ll serve the dedicated technical owner for modern-workplace services (device management, M365 workloads, and endpoint security and compliance), freeing Azure infrastructure engineering to stay focused on the cloud platform. The selected candidate will operate independently within a lean team; expected to execute, document, and improve, not simply maintain, so this role is vital to our success!

What You'll Do
  • Own the Microsoft Intune platform (formerly Microsoft Endpoint Manager, or MEM): compliance policies, configuration profiles, Autopilot provisioning, enrollment, and app-protection (MAM) policies.
  • Engineer application packaging and deployment (Win32 / LOB / store apps), update rings, and driver and firmware management.
  • Build and maintain the integration between device-compliance policies and Conditional Access.
  • Manage endpoint security baselines and Defender for Endpoint policy via Intune.
  • Lead BYOD enablement through app-protection policies, directly supporting the BYOD policy currently in development.
  • Automate device workflows through PowerShell and Microsoft Graph.
  • Exchange Online: mail flow, transport rules, connectors, mailbox / distribution-list / shared-mailbox lifecycle, and anti-phishing / anti-spam policy.
  • SharePoint Online: platform administration, site architecture, external-sharing controls, storage, and retention, including support for the SharePoint PII and DLP remediation effort.
  • Teams: messaging, meeting, and app policy configuration.
  • M365 licensing administration and optimization.
  • M365 service-health monitoring and advisory triage (owns the 365 Service Alerts queue).
  • Exchange Online: mail flow, transport rules, connectors, mailbox / distribution-list / shared-mailbox lifecycle, and anti-phishing / anti-spam policy.
  • SharePoint Online: platform administration, site architecture, external-sharing controls, storage, and retention, including support for the SharePoint PII and DLP remediation effort.
  • Teams: messaging, meeting, and app policy configuration.
  • M365 licensing administration and optimization.
  • M365 service-health monitoring and advisory triage (owns the 365 Service Alerts queue).
What You'll Need
  • 4–6 years of Microsoft 365 administration in a production enterprise tenant.
  • 2–3 years of hands-on Intune / MEM at scale,
  • Strong Exchange Online, SharePoint Online, and Teams administration.
  • Working knowledge of Entra ID and Conditional Access.
  • PowerShell and Microsoft Graph scripting and automation.
  • Windows endpoint management and Autopilot.
  • Certification (or demonstrated experience): MD-102 (Endpoint Administrator) required; MS-102 (Microsoft 365 Administrator) preferred.
What We Offer
  • Competitive Pay, Holiday Pay, and Daily Pay – Access to your earned wages before payday! 
  • Referral Bonuses 
  • Long-Term Career Advancement
  • Paid Time Off 
  • Medical, Dental, Vision, Basic Life, AD&D, and Short-Term & Long-Term Disability insurance for Eligible Full Time Employees 
  • 401(k) Retirement Plan 
  • Great Team Environment 
  • Free Onsite Gym!

 

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential job functions. 

 

  • The employee will be working at the corporate office and will be required to sit for long periods of time at a desk working on a laptop 
  • The noise level in the work environment is usually moderate

 

Pay RangeUSD $115,000.00 - USD $130,000.00 /Yr.

Similar Jobs

More Jobs at 48forty Solutions

More Information Technology Jobs

Find similar M365 & Endpoint Engineer jobs: