We are seeking an Endpoint Management Engineer to design, automate, and operate the enterprise device management platform supporting our global workforce, laboratories, manufacturing sites, and commercial field organization. This role owns hands-on engineering and operations across Microsoft Intune and Microsoft Configuration Manager (SCCM/MECM) in a co-management architecture, with Hybrid Entra ID (Azure AD) joined, Active Directory domain-bound Windows endpoints and a multi-platform Intune estate spanning Windows, macOS, iOS/iPadOS, and Android — including Android-based teleconferencing and conference room systems. Automation is central to this role. The successful candidate writes production-quality PowerShell, Bash, and .NET code, builds Intune remediation and detection scripts, and uses the Microsoft Graph API to manage the estate programmatically rather than soley through the console. We also expect fluency with modern AI-assisted engineering tools — including Claude or CoPilot — to accelerate script development, log analysis, documentation, and reporting. Equally important is the discipline required in a regulated pharmaceutical environment. You will advance modern management objectives — Zero Trust, Conditional Access, cloud-first policy delivery, and progressive workload migration from Configuration Manager to Intune — while respecting the reliability requirements of standard corporate devices and the constraints of non-standard, purpose-built systems such as laboratory instrument controllers, manufacturing workstations, kiosks, and validated GxP endpoints. The role partners closely with Information Security, Identity, Networking, Infrastructure, Site IT, and Site Service Support teams.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level