SCCM Administrator
SME – Endpoint Management
Location: Birmingham, UK – 3 days per week onsite
Employment Type: Full Time
Security Clearance: BPSS active or SC eligible
Work Arrangement: Office-based / Hybrid
Role Overview
We are looking for an experienced SME – Endpoint Management professional with strong expertise in Microsoft Intune and enterprise endpoint management. The successful candidate will be responsible for designing, implementing, securing, and managing large-scale endpoint environments across Windows, macOS, iOS, and Android platforms.
Required Skills & Experience
- 5+ years of enterprise Endpoint Management experience using Microsoft Intune / Microsoft Endpoint Manager in large-scale environments.
- Strong hands-on expertise in:
- Microsoft Intune administration and architecture.
- Windows Autopilot, Apple Business Manager (ABM/DEP), and Android Enterprise.
- Configuration Profiles, Compliance Policies, Security Baselines, and Proactive Remediations.
- Endpoint Security, Conditional Access, Microsoft Defender for Endpoint, and Zero Trust principles.
- Win32 application packaging, IntuneWin, macOS package management, Apple VPP, and Managed Google Play.
- Windows Update for Business, Autopatch, Feature Update Management, and Quality Update Governance.
- Device encryption including BitLocker and FileVault.
- SCEP/PKCS certificates, Wi-Fi and VPN profiles.
- Microsoft Entra ID Device Management, Dynamic Groups, Device Filters, and RBAC.
- Advanced PowerShell scripting and automation skills; Microsoft Graph API experience preferred.
- Strong understanding of Endpoint Security, PKI, Identity Management, Networking, and Cloud Technologies.
- Experience designing and implementing enterprise-scale endpoint management solutions.
- Strong knowledge of ITIL processes, including Incident, Change, Problem, Release, and Service Management.
- Eligible for UK Security Clearance.
Preferred Skills
- Endpoint architecture and migration experience from Configuration Manager (SCCM/MECM) to Intune.
- Experience with Microsoft Autopatch, Defender for Endpoint, and Microsoft Security ecosystem integrations.
- Advanced KQL, Log Analytics, Workbooks, and endpoint reporting experience.
- Experience developing custom remediation, automation, and self-healing solutions.
- ServiceNow integration, CMDB management, and endpoint asset governance experience.
- Exposure to Microsoft Copilot for Security and AI-driven endpoint operations.
Key Candidate Profile
The ideal candidate will be a senior hands-on Intune/Endpoint Management SME or Architect who has worked in large enterprise environments and can combine endpoint engineering, security, automation, architecture, and ITIL service management expertise.