Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.
As an I&O Engineering Consultant or Senior I O Engineering Consultant, you will deliver reliable and secure device management services in a Dual UEM environment built on Microsoft Endpoint Configuration Manager (MECM/SCCM) and Microsoft Intune. You will own day-to-day endpoint engineering and operational outcomes such as OS and patch compliance, client health, vulnerability remediation, and endpoint configuration. The role is execution-focused with solid troubleshooting depth and disciplined ITSM practices utilizing both on-premise server infrastructure as well as cloud services through Microsoft Entra. As necessary, you will routinely participate in major incident bridges/war rooms, ensuring service restoration within agreed SLAs and contributing to measurable MTTR reduction. You will also contribute to AI adoption by proposing and piloting practical ideations (e.g., ticket triage assist, automated log parsing, runbook generation) to improve reliability, speed, and user experience, while adhering to organizational security, privacy, and data handling standards.
Primary Responsibilities:
- Patching, Vulnerability Remediation & Compliance
- Operate software update and patching operations via SCCM (ADRs, maintenance windows, deployment schedules, compliance reporting) and coordinate exception handling
- Track and improve patch compliance posture across the endpoint estate; identify and remediate non-compliant devices; support compliance dashboards and executive reporting
- Drive client health compliance. Monitor and remediate endpoint SCCM/Intune client health, enrollment success, policy/app deployment success, and content distribution health
- Platform Engineering & Operations, Application Support
- Administer SCCM components (collections, boundaries, deployments, content distribution, client health monitoring, reporting)
- Administer Intune capabilities (enrollment, configuration profiles, compliance policies, app assignments, RBAC) and support coexistence with SCCM
- Monitor platform health and availability: enrollment success, policy/app success rates, client health, content distribution health, and remediation backlogs
- Drive device inventory accuracy and operational hygiene; perform routine health checks and standard validations
- Application Lifecycle, OS Servicing & Operations
- Support SCCM OS deployment and servicing (OSD, Task Sequences, feature updates, in-place upgrades), driver/BIOS packaging coordination, and rollback plans
- Execute post-deployment validation and remediation for failed installs, policy conflicts, and provisioning issues
- Troubleshooting, ITSM & War Rooms
- Troubleshoot endpoint deployment and client issues using logs and diagnostics (e.g., AppEnforce/AppDiscovery, WUAHandler, CAS, CCMExec)
- Work within ITSM processes (Incident/Problem/Change) including change documentation, risk assessment, and post-change validation
- Participate in major incident war rooms/bridges; provide technical inputs, implement mitigations, and document restoration actions
- Track and drive SLA adherence; contribute to MTTR reduction via faster triage, known error documentation, and repeat-incident prevention
- Automation & AI Adoption / Ideation
- Create and maintain PowerShell-based operational automations (health checks, compliance reporting, remediation scripts)
- Propose AI-assisted improvements (e.g., Copilot-assisted draft runbooks, KB articles, ticket summarization, and log pattern identification)
- Pilot small-scale AI/automation ideations with measurable success criteria (time saved, reduced rework, improved compliance)
- Ensure AI usage adheres to organizational security, privacy, and data handling policies (no sensitive data leakage)
- Comply with the terms and conditions of the employment contract, company policies and procedures, and any and all directives (such as, but not limited to, transfer and/or re-assignment to different work locations, change in teams and/or work shifts, policies in regards to flexibility of work benefits and/or work environment, alternative work arrangements, and other decisions that may arise due to the changing business environment). The Company may adopt, vary or rescind these policies and directives in its absolute discretion and without any limitation (implied or otherwise) on its ability to do so
Required Qualifications:
- 6+ years of hands-on administrative experience using SCCM
- 3+ years of hands-on administrative experience using Intune
- Operations, Health and Availability experience
- Health monitoring and remediation: client health, enrollment success, policy/app deployment success, content distribution health
- Service reliability ownership: stability, availability, and operational hygiene
- Patching and Vulnerability Operations experience
- MECM patching operations: ADRs, deployment rings, maintenance windows, compliance reporting
- Vulnerability remediation support: execute remediation plans and validate compliance within required timelines
- Automation and Scripting experience
- PowerShell scripting for automation and remediation; familiarity with scheduled tasks and basic safe rollout practices
- Ability to create repeatable runbooks and operational checklists
- ITSM and Operational Excellence
- Experience working in war rooms and providing concise technical updates for rapid restoration
- Working knowledge of Incident/Problem/Change management; ability to write clear change plans and validation steps
- Ownership mindset for SLA adherence and MTTR reduction
- Proven Core Technical Skills (Primary)
- Omnissa Workspace ONE UEM: 1+ years; administrative depth (profiles, Smart Groups, app distribution, compliance policies, device troubleshooting)
- MECM/SCCM: application model, collections, deployments, boundaries, content distribution, client health, reporting
- Microsoft Intune: enrollment methods, configuration/compliance policies, Win32 app deployment, troubleshooting, RBAC
- Dual UEM operations: support coexistence, minimize policy conflicts, and ensure consistent end-user experience
- Proven AI Adoption and Continuous Improvement
- Comfort using approved AI tools to accelerate documentation, analysis, and knowledge management
- Ability to identify repetitive tasks suitable for automation or AI assistance and propose improvements
- Solid understanding of packaging and deployment of applications (MSI/EXE/MSIX/Win32) using SCCM/Intune using detection methods, dependencies, supersedence, and phased ring deployments
Preferred Qualifications:
- Bachelor's degree in Engineering/Computer Science or equivalent experience
- ITIL Foundation, Microsoft endpoint-related certifications, Workspace ONE training/certification
- 2+ years of hands-on administrative experience with Omnissa Workspace ONE UEM (formerly AirWatch)
Success Measures:
- Endpoint platform health and availability maintained with sustained reduction in unhealthy clients/devices
- Patch compliance and vulnerability remediation achieved within agreed windows; improved deployment success rates
- Reduced repeat incidents through better RCA documentation, known error articles, and proactive remediation
Join the Enterprise Technology Infrastructure Platform Services (ETIPS) team, driving innovation and reliability across core systems.
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
#NIC
Skills Required
- 6+ years hands-on administrative experience using SCCM/MECM
- 3+ years hands-on administrative experience using Microsoft Intune
- Experience with endpoint health monitoring and remediation (client health, enrollment, policy/app deployment, content distribution)
- MECM patching operations experience (ADRs, deployment rings, maintenance windows, compliance reporting)
- Vulnerability remediation support and validation within timelines
- PowerShell scripting for automation and remediation, scheduled tasks, and safe rollout practices
- Experience with ITSM processes (Incident/Problem/Change) and war-room participation
- Administrative experience with Omnissa Workspace ONE UEM (profiles, Smart Groups, app distribution, compliance policies, troubleshooting) — 1+ years
- MECM/SCCM skills: application model, collections, deployments, boundaries, content distribution, client health, reporting
- Microsoft Intune skills: enrollment methods, configuration/compliance policies, Win32 app deployment, RBAC, troubleshooting
- Dual UEM operations experience: support coexistence and minimize policy conflicts
- Familiarity with application packaging and deployment (MSI/EXE/MSIX/Win32), detection methods, dependencies, supersedence, phased deployments
- Comfort using approved AI tools (e.g., Copilot) for documentation, analysis, and knowledge management
- Ability to create repeatable runbooks, operational checklists, and measurable automation/AI pilots
- Ability to operate on-premise server infrastructure and cloud services (Microsoft Entra) for endpoint management
- Experience executing SCCM OS deployment and servicing (OSD, Task Sequences, feature updates, in-place upgrades) and coordinating driver/BIOS packaging
- Ownership mindset for SLA adherence, MTTR reduction, and operational hygiene
- Ability to troubleshoot using endpoint logs and diagnostics (AppEnforce, AppDiscovery, WUAHandler, CAS, CCMExec)
- Ability to write clear change plans, risk assessments, and post-change validation steps
- Proven continuous improvement mindset to identify automation opportunities and reduce repeat incidents
- Bachelor's degree in Engineering/Computer Science or equivalent experience
- ITIL Foundation, Microsoft endpoint-related certifications, Workspace ONE training/certification
- 2+ years hands-on administrative experience with Omnissa Workspace ONE UEM (preferred)
Optum Compensation & Benefits Highlights
-
Leave & Time Off Breadth — PTO accrues each pay period with eight paid U.S. holidays plus a floating holiday, and generous time away is consistently emphasized. This breadth supports planned and unplanned time off beyond standard vacation days.
-
Parental & Family Support — Six weeks of paid parental leave, up to two weeks of paid caregiver leave, Bright Horizons back‑up care, and adoption assistance signal strong family-oriented support. EAP access with counseling sessions further extends help to employees and their households.
-
Wellbeing & Lifestyle Benefits — Company‑paid short‑ and long‑term disability, Calm app membership, tuition reimbursement, commuter and FSA accounts, and broad employee discounts expand everyday wellbeing resources. Free or low‑cost virtual visits complement these lifestyle supports.
Optum Insights
What We Do
Optum, part of the UnitedHealth Group family of businesses, is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together. At Optum, we support your well-being with an understanding team, extensive benefits and rewarding opportunities. By joining us, you’ll have the resources to drive system transformation while we help you take care of your future. We recognize the power of connection to drive change, improve efficiency and make a difference in health care. Join a team where your skills and ideas can make an impact and where collaboration is key to creating technology that produces healthier outcomes.
Gallery
Optum Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.
Optum has three workplace models that balance the needs of the business and the responsibilities of each role. These models, core on‑site (5 days/week), hybrid (4 days/week) and telecommute or fully remote, vary by country, role and location.