Technical Lead, Colleague Implementation & Support - MDM

Loblaw Companies LimitedBrampton, ON
$100,000 - $132,000Onsite

About The Position

Loblaw Companies Limited is one of Canada's largest employers, committed to positively impacting the lives of all Canadians. Loblaw Technology powers game-changing retail solutions, enabling customers to Live Life Well®. The company values diverse ideas, fosters inclusion, and develops talent internally. The Technical Team Lead, Colleague Implementation and Support MDM, based in Brampton, ON, will lead a highly skilled technical team responsible for the administration, configuration, and ongoing management of Microsoft Intune and Omnissa Workspace ONE across the organization. This role involves overseeing modern endpoint management platforms, ensuring devices are securely provisioned, compliant, and effectively managed throughout their lifecycle. The lead will drive operational excellence in both Intune and Workspace ONE environments, optimizing policies, application deployments, device compliance, and patching strategies, while ensuring seamless support for colleagues by maintaining a stable, secure, and well-governed endpoint ecosystem.

Requirements

  • 5+ years of hands-on experience with enterprise endpoint management platforms, including Microsoft Intune and/or Omnissa Workspace ONE (UEM)
  • Strong expertise in device enrollment methods and provisioning (Windows Autopilot, Apple Business Manager/DEP, Android Enterprise – Fully Managed, Work Profile, COPE)
  • Deep knowledge of mobile device management (MDM) and mobile application management (MAM) concepts, policies, and security controls
  • Experience configuring and managing compliance policies, configuration profiles, and Conditional Access policies integrated with Microsoft Entra ID (Azure AD)
  • Proficiency in application packaging and deployment, including Win32 app packaging (IntuneWin), MSI, scripting installs, and Workspace ONE application distribution
  • Strong understanding of endpoint security principles including encryption (BitLocker, FileVault), Defender for Endpoint integration, certificate-based authentication, and Zero Trust architecture
  • Experience with scripting and automation using PowerShell (required)
  • Hands-on experience with patch management and update rings (Windows Update for Business), as well as OS update policies for Apple and Android devices
  • Strong troubleshooting skills across Windows, macOS, iOS, and Android platforms, including log analysis and root cause identification
  • Knowledge of identity and access management, including SSO, SAML, OAuth, and integration with enterprise applications
  • Experience working within ITIL frameworks, including Incident, Problem, and Change Management processes
  • Familiarity with endpoint analytics and reporting tools (Endpoint Analytics, Workspace ONE Intelligence, Log Analytics, SIEM integrations)
  • Strong communication and leadership skills, with experience mentoring junior engineers and collaborating across cross-functional teams

Nice To Haves

  • Experience in Bash or Python scripting

Responsibilities

  • Manage the design, configuration, and administration of endpoint management platforms including Microsoft Intune and Omnissa Workspace ONE (UEM), ensuring secure, scalable, and compliant device management
  • Architect and maintain device enrollment strategies (Autopilot, DEP/ABM, Android Enterprise) across Windows, iOS, macOS, and Android platforms
  • Develop and manage configuration profiles, compliance policies, conditional access integrations, and security baselines aligned with organizational and cybersecurity standards
  • Package, deploy, and manage applications using Intune (Win32 apps, Microsoft Store apps, LOB apps) and Workspace ONE (App Volumes, Workspace ONE Apps), including versioning and lifecycle management
  • Implement and maintain patch management and update strategies (Windows Update for Business, macOS/iOS updates, Android patching) to ensure device health and compliance
  • Integrate endpoint management platforms with identity providers such as Azure AD (Entra ID), including Conditional Access, MFA, and Zero Trust security models
  • Monitor platform performance and device compliance using reporting tools, dashboards, and logs (Endpoint Analytics, Workspace ONE Intelligence) and take proactive remediation actions
  • Automate routine administrative tasks using scripting (PowerShell, Bash) and leverage APIs/Graph API for Intune and Workspace ONE automation and reporting
  • Lead incident response and troubleshooting efforts for endpoint-related issues, including device enrollment failures, application deployment issues, policy conflicts, and connectivity problems
  • Collaborate with security, network, and infrastructure teams to ensure endpoint configurations align with enterprise architecture and security frameworks
  • Establish and maintain documentation, runbooks, and standard operating procedures for endpoint management and support processes
  • Provide technical leadership and mentorship to team members, guiding best practices in endpoint engineering, troubleshooting, and service delivery

Benefits

  • Work Perks Program
  • On-site gym (no charge!)
  • Basketball & Volleyball courts
  • Ice Rink
  • Dry Cleaning services (1PCC Office)
  • Tuition Reimbursement & Online Learning
  • Pension & Benefits
  • Paid Vacation
  • Progressive careers
  • Comprehensive training
  • Flexibility
  • Other competitive benefits

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Manager

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service