Job Summary
We are looking for an experienced Device Management Engineer with strong hands-on expertise in Microsoft Intune (Endpoint Manager) and Azure Virtual Desktop (AVD). The candidate will be responsible for designing, deploying, and managing modern workplace solutions, including device lifecycle management, application deployment, security compliance, and virtual desktop infrastructure on Azure.
Key ResponsibilitiesDevice Management (Microsoft Intune / MEM)
- Manage end-to-end device lifecycle (enrollment, configuration, compliance, retirement) for Windows, iOS, Android, and macOS devices using Microsoft Intune.
- Design and deploy configuration profiles, compliance policies, and conditional access policies in collaboration with the security team.
- Implement and manage Windows Autopilot for zero-touch device provisioning.
- Package, deploy, and update applications (Win32, MSI, LOB, Microsoft Store apps) via Intune.
- Manage Windows Update for Business rings, feature/quality update deployments, and patch compliance reporting.
- Implement endpoint security policies including BitLocker, Microsoft Defender for Endpoint integration, ASR rules, and device encryption.
- Handle mobile device management (MDM) and mobile application management (MAM/APP) policies for BYOD and corporate devices.
- Migrate devices from legacy management (SCCM/ConfigMgr, GPO) to modern cloud management, including co-management setups.
Azure Virtual Desktop (AVD)
- Design, deploy, and manage AVD host pools, application groups, and workspaces.
- Create and maintain golden images using Azure Image Builder / custom images; manage image versioning via Azure Compute Gallery.
- Configure and manage FSLogix profile containers, including storage (Azure Files / Azure NetApp Files) and permissions.
- Implement autoscaling plans to optimize session host capacity and Azure consumption costs.
- Publish RemoteApps and full desktop sessions based on business requirements.
- Monitor AVD environment health, session performance, and user experience using Azure Monitor, Log Analytics, and AVD Insights.
- Troubleshoot session connectivity, profile load issues, latency, and host performance problems.
General / Cross-Functional
- Administer Microsoft Entra ID (Azure AD) — device registration, hybrid join, group management, and conditional access.
- Automate routine tasks using PowerShell and Microsoft Graph API.
- Maintain documentation — SOPs, architecture diagrams, runbooks, and knowledge base articles.
- Provide L2/L3 support for escalated endpoint and AVD incidents; work within ITIL-based incident/change management processes.
- Collaborate with security, network, and infrastructure teams on compliance audits and hardening initiatives.
- Stay current with Microsoft roadmap changes and recommend improvements to the modern workplace environment.
- 4–5 years of experience in IT infrastructure/endpoint management, with at least 2–3 years of hands-on experience in Microsoft Intune and Azure Virtual Desktop.
- Strong knowledge of Microsoft Entra ID (Azure AD), conditional access, and identity-driven security.
- Proven experience with Windows Autopilot, application packaging, and compliance/configuration policy design.
- Hands-on experience with FSLogix, host pool management, image management, and AVD scaling.
- Solid PowerShell scripting skills; exposure to Microsoft Graph API is a plus.
- Understanding of networking fundamentals (DNS, DHCP, VPN, proxy) as they relate to endpoint and AVD connectivity.
- Familiarity with Microsoft Defender for Endpoint and endpoint security baselines.
- Experience with SCCM/ConfigMgr and co-management scenarios preferred.
- Strong troubleshooting, documentation, and communication skills.
- MD-102: Microsoft 365 Certified – Endpoint Administrator Associate
- AZ-140: Configuring and Operating Microsoft Azure Virtual Desktop
- AZ-104: Microsoft Azure Administrator (nice to have)
- SC-300 or MS-102 (added advantage)
Skills Required
- 4-5 years of experience in IT infrastructure/endpoint management
- 2-3 years hands-on experience with Microsoft Intune (Endpoint Manager)
- 2-3 years hands-on experience with Azure Virtual Desktop (AVD)
- Strong knowledge of Microsoft Entra ID (Azure AD) and conditional access
- Experience with Windows Autopilot, application packaging, and compliance/configuration policy design
- Hands-on experience with FSLogix, host pool management, image management, and AVD scaling
- PowerShell scripting skills
- Understanding of networking fundamentals (DNS, DHCP, VPN, proxy) relevant to endpoint and AVD connectivity
- Familiarity with Microsoft Defender for Endpoint and endpoint security baselines
- Experience migrating from SCCM/ConfigMgr and co-management scenarios
- Exposure to Microsoft Graph API
- Strong troubleshooting, documentation, and communication skills
What We Do
We understand that the world is already overpopulated with IT consultancies, each offering the same types of services. This is why Uvation takes the role of ‘consultant’ one step further. We don’t just want to provide clients with advice about software and hardware, but rather serve as your comprehensive and strategic IT and security partner. Modern companies are requiring distinctive IT and security solutions within their niches. We know that meeting these unique needs, through trusted consultation and fully integrated solutions specifically tailored to your budget, is critical for businesses to scale effectively and navigate safely within an ever-transformative digital landscape. With a physical presence across North America, the EU and the Asia Pacific, we aim to be an end-to-end company that provides transformative services to address the most pressing technology challenges through each department of our business, which we call our focus areas. To meet today’s wide scope of IT and security needs, we’ve created devoted teams and resources to focus on specific sectors like aerospace and defense, the public sector, healthcare and the nonprofit field. Get Rewarded With Us By partnering with Uvation, you now get more out of every purchase with Uvation Rewards. Yes, our primary focus is on the success of our clients and their communities by delivering tangible results, not vague promises. In equal measure, we want our clients to get rewarded for investing in the future of their companies and the communities in which they thrive. Every time you invest in your company with Uvation, you now earn back cloud credits, gift cards and loyalty points that can even be converted into cash donations to support the missions of some of the world’s best charities. Contact us today for a free 30-minute consultation to see how we can provide your company with the full-stack services, innovative products, and pioneering technologies you deserve







