Job Description
We are seeking an experienced Microsoft Intune and Enterprise Mobility SME to join our team supporting a large-scale federal modernization program. This role owns the design, integration, and security of enterprise mobility and device management capabilities, spanning Microsoft Intune architecture, mobile device management, identity integration, and endpoint security, across a complex, multi-partner technical environment.
This is a hands-on architecture and engineering role. You'll be expected to build real configurations, policies, and integrations, not just set direction from a distance.
This is a hybrid role based out of Washington, DC. Candidates must be U.S. citizens.
Key Responsibilities
1. Mobility & Device Management Architecture
- Design and implement secure enterprise mobility, endpoint, and device management capabilities.
- Develop architecture diagrams, configurations, policies, enrollment flows, application-delivery patterns, and compliance rules.
- Define target-state mobility architecture, including enrollment/management patterns, identity, security, and application delivery.
2. Microsoft Intune & Platform Integration
- Design and manage Microsoft Intune/Endpoint Manager tenant configuration, enrollment, compliance policies, and application deployment.
- Integrate Intune and related Microsoft services with identity, security, network, and service-management environments.
- Build automation and reporting to support scale and operational efficiency.
3. Partner & System Integration
- Support integration of mobility solutions with external partner systems and device management platforms.
- Coordinate device enrollment, release/configuration management, and identity and access management across organizational boundaries.
- Support integration testing, validate authentication and authorization mechanisms, and resolve cross-system interface issues.
4. Endpoint Security & Compliance
- Coordinate security and privacy requirements, including least privilege, device trust, endpoint protection, and logging.
- Support vulnerability management and remediation across managed devices.
- Ensure designs meet applicable cybersecurity, privacy, and enterprise architecture requirements.
5. Delivery & Operations
- Support backlog refinement, technical working groups, architecture/design reviews, and scrum ceremonies.
- Support testing, release readiness, deployment, and stabilization.
- Troubleshoot enrollment, policy, application, certificate, identity, connectivity, and device-lifecycle issues.
6. Documentation & Knowledge Management
- Maintain decisions, configurations, risks, dependencies, defects, changes, and operational documentation.
- Support the design of methods for receiving security, device, and performance logs for audit, monitoring, and alerting purposes.
Requirements
- 12+ years of experience in enterprise endpoint, mobility, or identity engineering, including technical leadership on a large integration or modernization effort.
- Hands-on experience with Microsoft Intune/Endpoint Manager or a directly comparable enterprise MDM/UEM platform.
- Experience with enrollment, configuration/compliance policies, application deployment, certificates, identity/access integration, reporting, automation, and device lifecycle management.
- Experience integrating mobility/endpoint platforms across organizational or partner boundaries.
- Ability to work in a multidisciplinary scrum/engineering environment and produce implementation-ready technical documentation.
- U.S. citizenship required.
Nice to Have
- Direct federal or large regulated-enterprise endpoint/mobility experience.
- Experience integrating with government or public-sector partner systems.
- Microsoft 365, Intune, Entra ID, endpoint security, identity, or automation/PowerShell credentials.
- Experience with Android Enterprise, Apple Business Manager, Windows management, enterprise app distribution, certificate infrastructure, and Conditional Access.
- Experience integrating mobility/endpoint services with ServiceNow, monitoring, SIEM, network access, PKI, or identity platforms.
Benefits
- 401(k)
- 401(k) matching
- Dental insurance
- Flexible spending account
- Health insurance
- Life insurance
- Paid time off
- Professional development assistance
- Referral program
- Tuition reimbursement
- Vision insurance