About The Position

The Microsoft Endpoint Configuration Manager (MECM/SCCM) Administrator is responsible for administering, maintaining, securing, and optimizing enterprise endpoint management services. The role focuses on Windows endpoint management, software deployment, operating system deployment, patch management, compliance, automation, endpoint security, and Microsoft Intune in classified and unclassified environments.

Requirements

  • U.S. Citizen.
  • Active DoD Secret Clearance or ability to obtain and maintain one.
  • DoD 8570/8140 IAT Level II certification or higher, such as Security+, CySA+, or equivalent.
  • 4+ years of experience administering MECM/SCCM in a large enterprise environment.
  • Experience with Operating System Deployment (OSD), software packaging, application deployment, and patch management.
  • Experience managing Windows 10/11 enterprise endpoints.
  • Experience with Active Directory, Group Policy, DNS, DHCP, and enterprise Windows infrastructure.
  • Experience creating and maintaining PowerShell automation scripts.
  • Knowledge of DISA STIG compliance requirements and DoD cybersecurity regulations.
  • Experience with vulnerability management tools such as ACAS and Nessus.
  • Baseline certification required within six months of hire if not already obtained.

Responsibilities

  • Administer, configure, maintain, and troubleshoot MECM/SCCM infrastructure and endpoint management services.
  • Manage software deployment, application packaging, distribution points, collections, task sequences, and compliance baselines.
  • Administer Operating System Deployment (OSD), imaging, driver management, and Windows lifecycle management.
  • Deploy Windows security updates and third-party application patches.
  • Perform vulnerability remediation using MECM.
  • Monitor MECM site health, client health, content distribution, and platform performance.
  • Create and maintain collections, deployment packages, ADRs, and software update groups.
  • Implement endpoint compliance requirements based on DoD, DISA STIG, and cybersecurity standards.
  • Develop PowerShell automation for endpoint management, reporting, software deployment, and operational tasks.
  • Generate compliance, patching, inventory, and asset management reports using MECM and SQL-based reporting tools.
  • Support Microsoft Intune, co-management, and cloud-based endpoint management technologies.
  • Collaborate with cybersecurity teams to remediate vulnerabilities identified through ACAS, Nessus, and other assessment tools.
  • Maintain endpoint security configurations using Group Policy, configuration baselines, and security policies.
  • Develop and maintain technical documentation, SOPs, implementation guides, and procedures.
  • Provide Tier III support for endpoint management issues.
  • Serve as a technical escalation point for desktop engineering and systems support teams.
  • Participate in infrastructure modernization, endpoint transformation, and cloud migration projects.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service