Post Job Free
Sign in

System Engineer

Company:
BMH
Location:
Southfield, MI, 48076
Posted:
April 24, 2025
Apply

Description:

We are seeking a highly skilled Endpoint System Engineer to manage and support our organization's endpoint infrastructure with a focus on Microsoft 365, Entra ID, Intune, and Autopilot. The ideal candidate will have extensive experience configuring and managing Multi-Factor Authentication (MFA), Conditional Access policies, OneDrive/Office deployment, and iPadOS/iOS/macOS device management through Jamf or Mosyle. This role is critical in ensuring seamless endpoint provisioning, security, and compliance across the enterprise.

Key Responsibilities:

Manage all Windows and Apple endpoints across a large geographic area (currently 10 states).

Travel to new corporate locations to perform discovery of existing hardware environment and plan/deploy new endpoints.

Administer and manage Microsoft Intune and Autopilot for automated device provisioning and lifecycle management.

Configure and enforce Conditional Access policies and Multi-Factor Authentication (MFA) to enhance security.

Support and optimize Microsoft 365 applications deployment, including OneDrive and Office suite.

Manage identity and access policies using Entra ID (formerly Azure AD) to ensure proper user authentication and authorization.

Oversee the deployment, management, and security of iPadOS, iOS, and macOS devices via Jamf or Mosyle.

Develop and maintain device compliance policies, ensuring security best practices are enforced.

Troubleshoot and resolve endpoint-related issues for Windows, macOS, and mobile devices.

Provide documentation, training, and end-user support for endpoint-related processes.

Monitor and analyze endpoint performance, security incidents, and compliance violations.

Required Qualifications:

5+ years of experience in IT system administration, with a focus on endpoint management.

Proficiency in Microsoft Intune, Autopilot, Entra ID (Azure AD), and Conditional Access policies.

Experience with MFA implementation and enforcement.

Experience with configuration and administration of networking protocols and services including: TCP/IP, DNS, DHCP, VPN, 802.1x

Hands-on experience with Office 365 deployment, OneDrive administration, and security configurations.

Strong background in Apple device management using Jamf or Mosyle.

Knowledge of macOS, iOS, and iPadOS enterprise deployment and security best practices.

Experience troubleshooting endpoint-related issues across Windows and macOS environments.

Strong scripting skills (PowerShell, Bash, or Python) for automation and policy enforcement.

Ability to work independently and collaboratively in a fast-paced IT environment.

Preferred Qualifications:

Microsoft Certifications such as MD-102 (Endpoint Administrator Associate).

Jamf or Mosyle experience.

Experience with Zero Trust security models and modern device management frameworks.

Apply