Microsoft SME

Aveshka IncWashington, DC

About The Position

Softtek Government Solutions is seeking highly cleared, experienced IT engineering professionals to support the Congressional Budget Office (CBO) Service Desk Engineering task order. This initiative focuses on fundamentally hardening the CBO’s enterprise environment to reduce the risk of unauthorized lateral movement, credential misuse, and persistence techniques. This is an advanced engineering scope focused on resolving complex escalations, implementing security architecture, and developing automated workflows. It does not involve routine Tier 1 end-user help desk support. The engineering team will be responsible for designing, deploying, and maintaining the technical controls necessary to secure endpoint, identity, and device lifecycle operations.

Requirements

  • Must be a US Citizen
  • Minimum 8 years of experience in IT, Endpoint Engineering, or Cybersecurity, with at least 6 years in engineering (not help desk) roles in enterprise environments.
  • Expert-level knowledge of Microsoft Intune, Windows Autopilot, and Group Policy (GPO) management.
  • Experience building and automating Windows images integrated with VDI, EDR, authentication, and logging agents.
  • Strong understanding of Windows Active Directory/Entra ID interactions, Windows Event Forwarding, and Windows security hardening baselines.
  • Experience working under formal change control, audit, and security governance processes.
  • Active Top Secret (TS) security clearance.

Responsibilities

  • Designing and maintaining secure, standardized workstation images for macOS and Windows that support both on-site and remote VDI access.
  • Implementing endpoint configuration baselines, robust patching workflows, and version control using enterprise tools (e.g., Ivanti, KACE, Intune, GPO) to mitigate configuration drift.
  • Strengthening device registration, enrollment processes (Autopilot, JAMF), and asset inventory accuracy. This includes enforcing conditional access and hardware-backed, passwordless authentication methods.
  • Enhancing endpoint logging, telemetry forwarding, and monitoring capabilities to support the CBO’s incident response and forensic investigation functions.
  • Producing user-facing runbooks, remediation plans, and clear escalation paths to ensure solutions are operationally sustainable by Tier 1 Service Desk and Incident Response teams.

Benefits

  • Extensive training programs
  • Gym membership reimbursement
  • Education reimbursement
  • Technology benefits
  • Commuter benefits
  • Generous paid time off
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service