Microsoft Configuration Management Engineer (SCCM/MECM and Intune)

Akima, LLC

• $145K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Active Top Secret security clearance required.
  • Bachelor's degree in IT, computer science, cybersecurity, or related field.
  • 5+ years of experience with SCCM/MECM, Intune, or similar endpoints.
  • IAT Level II Certification or equivalent required.
  • Microsoft 365 Certified: Endpoint Administrator Associate (must obtain within 6 months).

Responsibilities

  • Administer and support SCCM/MECM and Intune for application deployment and updates.
  • Package, test, deploy, and troubleshoot Windows applications across endpoints.
  • Plan and execute enterprise patching and software update activities.
  • Support Windows OS deployment, task sequences, and imaging processes.
  • Develop and maintain device collections and configuration compliance baselines.
  • Troubleshoot issues using logs, monitoring data, and administrative tools.
  • Coordinate with cybersecurity teams for endpoint remediation and compliance.

Benefits

  • Comprehensive medical, dental, and vision insurance.
  • Life insurance coverage included.
  • 401(k) retirement plan offered.
  • Paid Time Off (PTO) for both full-time and part-time employees.
  • Range of voluntary benefits available.
Full Job Description

The Microsoft Configuration Management Engineer is responsible for engineering, administering, maintaining, and improving enterprise endpoint management services using Microsoft Configuration Manager (SCCM/MECM) and Microsoft Intune. The engineer supports the full lifecycle of Windows endpoint management, including application packaging and deployment, operating system deployment, software patching, configuration management, compliance monitoring, vulnerability remediation, and endpoint troubleshooting across on-premises, hybrid, and cloud-managed environments.  To join our team of outstanding professionals, apply today!

 

This position maintains and optimizes Configuration Manager and Intune capabilities, including device collections, task sequences, configuration items and baselines, software update deployments, application packages, compliance policies, configuration profiles, security baselines, and Windows update policies. The engineer works closely with enterprise architects, cloud engineers, cybersecurity teams, service desk personnel, and system owners to sustain existing services and support the transition of appropriate endpoint-management capabilities to Microsoft Intune and Azure-based services.

 

The engineer plans, schedules, executes, monitors, and validates endpoint deployments and remediation activities using enterprise reporting, endpoint telemetry, client diagnostics, and management tools. The position also supports endpoint-management infrastructure and develops the technical documentation necessary to ensure operational continuity, configuration control, auditability, security compliance, and effective lifecycle management.

Responsibilities
  • Administer and support Microsoft Configuration Manager (SCCM/MECM) and Microsoft Intune, including application deployment, software updates, device collections, configuration profiles, compliance policies, security baselines, reporting, and client troubleshooting.

  • Package, test, deploy, maintain, and troubleshoot Windows applications across SCCM/MECM- and Intune-managed endpoints.

  • Plan and execute enterprise patching and update-management activities, including software update groups, automatic deployment rules, maintenance windows, phased deployments, update rings, feature updates, quality updates, and compliance reporting.

  • Support Windows operating system deployment and provisioning, including task sequences, PXE and boot media, driver management, imaging, Windows Autopilot, and deployment troubleshooting.

  • Develop and maintain device collections, configuration items, and compliance baselines to identify configuration drift, support targeted deployments, measure compliance, and automate remediation.

  • Troubleshoot endpoint-management issues using Configuration Manager logs, Intune monitoring data, Event Viewer, CMPivot, client diagnostics, PowerShell, and related administrative tools.

  • Support endpoint identity and security integration with Active Directory, Microsoft Entra ID, Group Policy, Conditional Access dependencies, Microsoft Defender for Endpoint, and enterprise security baselines.

  • Coordinate with cybersecurity and vulnerability-management teams to validate findings, identify affected endpoints, implement remediation actions, and track compliance through closure.

  • Develop PowerShell scripts and use Microsoft Graph, Graph PowerShell, REST APIs, and related automation capabilities to improve endpoint administration, reporting, remediation, and operational efficiency.

  • Support SCCM/MECM infrastructure, co-management, and migration to modern cloud-based endpoint management while following established change, configuration, release, documentation, and operational-readiness processes.

Qualifications
  • Active Top Secret security clearance.
  • Bachelor’s degree in information technology, computer science, cybersecurity, information systems, or a related field. Significant additional relevant endpoint-management or systems-administration experience may be considered as a substitute for a B.S. degree. 
  • Minimum of five (5) years of experience administering enterprise Windows endpoint-management services, including SCCM/MECM, Intune, or comparable endpoint-management platforms. 
  • IAT Level II Certification or equivalent.
  • Microsoft 365 Certified: Endpoint Administrator Associate, or the ability to obtain the certification within 6 months of employment. This certification ensures our lead engineer has the enterprise endpoint deployment, application management, policy administration, update management, monitoring, reporting, Intune, Entra ID, PowerShell, and related endpoint operations.  

Preferred Certifications:

  • Microsoft Certified: Identity and Access Administrator Associate.
  • Microsoft 365 Certified: Administrator Expert, or a relevant cybersecurity, IT service management, or systems-administration certification.
Benefits InformationRegular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees. Pay Range$145,000 - $150,000 Job ID2026-26021 Work TypeHybrid

Similar Jobs

More Jobs at Akima, LLC

More Information Technology Jobs

Find similar Microsoft Configuration Management Engineer (SCCM/MECM and Intune) jobs: