Senior Windows Endpoint Engineer

Fannie MaeReston, VA
$123,000 - $161,000Hybrid

About The Position

As a valued colleague on our team, you will design and develop moderately complex solutions for information technology (IT) infrastructure environments, including coding, testing, and certifying technology platforms, software, and applications under limited supervision. The Senior Windows Endpoint Engineer role will offer you the flexibility to make each day your own, while working alongside people who care so that you can deliver on the following responsibilities: Endpoint Management Design, implement, and maintain enterprise endpoint management solutions using Microsoft Intune. Manage endpoint lifecycle processes including provisioning, deployment, configuration, maintenance, and retirement. Develop and maintain device configuration profiles, compliance policies, update rings, and security baselines. Support migration and coexistence strategies between Workspace ONE and Microsoft Intune. Windows Engineering Administer and support Windows 11 enterprise environments. Create and manage standardized endpoint configurations and operating system deployment strategies. Evaluate new Microsoft endpoint technologies and recommend improvements to the workplace computing environment. Provide advanced troubleshooting for complex Windows platform issues. Automation & Scripting Develop PowerShell automation solutions to improve operational efficiency. Create automated remediation, reporting, compliance validation, and deployment processes. Use Microsoft Graph APIs to automate endpoint administration, reporting, and device lifecycle activities. Endpoint Security & Compliance Implement endpoint security standards and compliance controls. Manage device compliance policies, encryption, security baselines, and conditional access requirements. Partner with cybersecurity teams to remediate vulnerabilities and maintain regulatory compliance. Monitor endpoint health, risk, and policy adherence across enterprise device fleets. Autopilot & Provisioning Design and support Windows Autopilot deployments. Troubleshoot enrollment, provisioning, and Enrollment Status Page issues. Implement zero-touch deployment and device onboarding strategies. Optimize user experience during provisioning and device refresh initiatives. Advanced Troubleshooting Lead root cause analysis of complex endpoint management and policy deployment issues. Troubleshoot Microsoft Intune, MDM, compliance, device registration, and identity integration issues. Support Tier 3 escalation activities for endpoint-related incidents and outages.

Requirements

  • 2 years of Windows endpoint engineering or endpoint management experience.
  • Microsoft Intune administration experience.
  • Windows 11 engineering and troubleshooting expertise.
  • Experience with Microsoft Graph API.
  • Hands-on experience with Windows Autopatch.
  • Advanced PowerShell scripting and automation skills.
  • Experience managing Configuration Profiles and Compliance Policies.
  • Knowledge of Microsoft Entra ID device management.
  • Strong understanding of endpoint security and compliance frameworks.
  • Experience supporting large enterprise endpoint environments.
  • Shows curiosity and adaptability in learning and responsibly applying new technologies, including artificial intelligence, to reimagine how we work.

Nice To Haves

  • Bachelor degree or equivalent
  • Workspace ONE administration experience.
  • SCCM/MECM experience.
  • Windows Autopilot deployment expertise.
  • Experience with Conditional Access and Zero Trust initiatives.
  • Endpoint analytics and reporting experience.
  • Microsoft certifications in Intune, Endpoint Administrator, or related technologies.
  • Experience supporting hybrid and cloud-native device management architectures.

Responsibilities

  • Design, implement, and maintain enterprise endpoint management solutions using Microsoft Intune.
  • Manage endpoint lifecycle processes including provisioning, deployment, configuration, maintenance, and retirement.
  • Develop and maintain device configuration profiles, compliance policies, update rings, and security baselines.
  • Support migration and coexistence strategies between Workspace ONE and Microsoft Intune.
  • Administer and support Windows 11 enterprise environments.
  • Create and manage standardized endpoint configurations and operating system deployment strategies.
  • Evaluate new Microsoft endpoint technologies and recommend improvements to the workplace computing environment.
  • Provide advanced troubleshooting for complex Windows platform issues.
  • Develop PowerShell automation solutions to improve operational efficiency.
  • Create automated remediation, reporting, compliance validation, and deployment processes.
  • Use Microsoft Graph APIs to automate endpoint administration, reporting, and device lifecycle activities.
  • Implement endpoint security standards and compliance controls.
  • Manage device compliance policies, encryption, security baselines, and conditional access requirements.
  • Partner with cybersecurity teams to remediate vulnerabilities and maintain regulatory compliance.
  • Monitor endpoint health, risk, and policy adherence across enterprise device fleets.
  • Design and support Windows Autopilot deployments.
  • Troubleshoot enrollment, provisioning, and Enrollment Status Page issues.
  • Implement zero-touch deployment and device onboarding strategies.
  • Optimize user experience during provisioning and device refresh initiatives.
  • Lead root cause analysis of complex endpoint management and policy deployment issues.
  • Troubleshoot Microsoft Intune, MDM, compliance, device registration, and identity integration issues.
  • Support Tier 3 escalation activities for endpoint-related incidents and outages.

Benefits

  • Health, Life, Voluntary Lifestyle, and other benefits and perks that enhance an employee's physical, mental, emotional, and financial well-being.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service