ASM Research-posted 10 days ago
Full-time • Mid Level
Oak Ridge, TN

The Intune / Mobile Device Management Administrator will provide Tier III IT operations support across the Office of Information Management (OIM) and SC mission systems, focusing on endpoint security, mobile device lifecycle management, and compliance. This role is responsible for operating and maintaining Microsoft Intune, Endpoint Manager, and related MDM infrastructure to ensure secure, reliable, and compliant device management in alignment with DOE directives and federal IT standards. The ideal candidate will have strong expertise in mobile device management, policy enforcement, and automation, while supporting hybrid environments and evolving enterprise service delivery models..

  • Administer and maintain Microsoft Intune / Endpoint Manager, including device enrollment, compliance policies, configuration profiles, and application deployment.
  • Manage Windows, macOS, iOS, and Android endpoints, ensuring secure baselines and compliance with organizational policies.
  • Implement and enforce conditional access, MFA, and mobile security policies through Azure AD and Intune.
  • Support BYOD and corporate-owned device programs, ensuring proper separation of personal and corporate data.
  • Provide Tier III support for endpoint troubleshooting, enrollment issues, and policy conflicts.
  • Oversee the provisioning, deployment, and retirement of mobile devices across the enterprise.
  • Maintain accurate records of device inventories, compliance status, and lifecycle tracking.
  • Support application packaging and deployment for mobile platforms.
  • Collaborate with cybersecurity teams to remediate vulnerabilities identified through mobile compliance gaps.
  • Continuously monitor endpoint health, compliance, and Intune infrastructure performance.
  • Generate and deliver compliance and audit reports to leadership and stakeholders.
  • Detect and resolve device compliance failures, policy conflicts, and outages in line with SLAs.
  • Track and report on license utilization, resource consumption, and Intune/Azure cost usage.
  • Maintain and update the Configuration Management Database (CMDB) with endpoint and Intune configuration items.
  • Submit all changes via the OIM-approved change management system in accordance with the Change Control Review (CCR) process.
  • Evaluate proposed changes for technical and cybersecurity risk, ensuring compliance with secure baselines.
  • Document and maintain Intune policies, SOPs, and configuration records, reviewed quarterly or after major changes.
  • Bachelor’s Degree in Information Technology, Computer Science or a related field or equivalent relevant experience; Master’s Degree preferred.
  • Demonstrated technical proficiency equivalent to industry-recognized certifications, such as: CompTIA Security+ or Network+
  • 5 + years of relevant work experience.
  • Vendor-specific certifications in mobile security or endpoint platforms.
  • Proficiency in PowerShell scripting, Azure CLI, and automation tools for Intune and endpoint management.
  • Strong knowledge of Intune, Azure AD, conditional access, and mobile device security frameworks.
  • Ability to support Windows, macOS, iOS, and Android endpoints.
  • Familiarity with federal IT compliance standards (e.g., FISMA, NIST SP 800-53).
  • Experience with hybrid endpoint management (Intune + SCCM).
  • Familiarity with mobile application management (MAM) and mobile threat defense integrations.
  • Strong troubleshooting skills for device enrollment, compliance failures, and policy conflicts.
  • Excellent documentation and communication skills for compliance reporting and operational transparency.
  • Knowledge of federal government IT best practices and standards.
  • Ability to work under federal IT security protocols and procedures.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service