Senior Endpoint Analyst (Intune)

Posted 9 Days Ago
Be an Early Applicant
Markham, ON, CAN
In-Office
80K-120K Annually
Senior level
Professional Services • Utilities • Industrial • Manufacturing
The Role
Lead endpoint engineering and security for ~5,000 devices with expert Microsoft Intune focus. Own architecture, baselines, compliance, patching, vulnerability remediation, automation, and incident escalation. Partner with security, infrastructure, risk, and audit to maintain audit readiness, enforce conditional access and app control, and mentor support teams to improve endpoint reliability and security.
Summary Generated by Built In

We are seeking a Senior Endpoint Analyst (Intune) to own the technical direction, operational health, and security posture of our endpoint environment across approximately 5,000 managed devices. This role serves as the senior technical authority for endpoint engineering, operations, and security, ensuring consistent design, execution, and control ownership in an enterprise environment. The key focus for this role will revolve around expert level Microsoft Intune experience.
The Endpoint analyst will be accountable for endpoint compliance, vulnerability remediation, configuration standards, and high risk technical recommendations. This role partners closely with Security, Infrastructure, Risk, and Audit teams to reduce operational risk, maintain audit readiness, and deliver a stable, secure end user computing platform.

Responsibilities
Endpoint Engineering & Platform Ownership:

  • Serve as the technical lead for endpoint engineering, operations, and security across ~5k devices, ensuring standardized design, implementation, and enforcement.
  • Own the endpoint management stack, including Intune, Trend Micro, Microsoft Defender, Entra ID, and related tooling.
  • Define and maintain endpoint architecture, configuration baselines, and OS lifecycle standards in alignment with security and regulatory requirements.

Security, Risk & Compliance:

  • Own endpoint health and compliance, including patching, OS upgrades, configuration baselines, device posture, and conditional access enforcement.
  • Own application control capabilities to enforce secure execution policies and reduce endpoint risk.
  • Provide recommendations authority for high risk endpoint changes (patching, policy updates, security remediations), minimizing the risk of misconfiguration or large scale impact.
  • Ensure timely remediation of vulnerabilities and adherence to firm defined SLAs, reducing exposure windows and maintaining audit readiness.
  • Enforce secure baseline configurations and compliance controls across all managed endpoints.

Operations & Vulnerability Management:

  • Partner with Security and Vulnerability Management teams to prioritize, plan, and execute endpoint remediation activities.
  • Ensure endpoint controls and processes are measurable, defensible, and auditable.
  • Act as the escalation point for complex or high impact endpoint incidents, driving root cause analysis and long term corrective actions.
  • Automation & Continuous Improvement:
  • Drive operational efficiency through automation, standardization, and reduction of manual processes.
    Improve consistency, reliability, and scale of endpoint operations through policy driven management and modern endpoint practices.
    Identify opportunities to modernize endpoint engineering practices and tooling while maintaining regulatory compliance.

Leadership & Collaboration:

  • Provide technical mentorship within the endpoint and service desk teams.
  • Collaborate with L1/L2 support, infrastructure, identity, security, and audit partners to ensure clear ownership and smooth execution.
  • Translate technical risk and trade offs into clear, actionable recommendations for leadership.

Qualifications
Required:

  • Education: Bachelor’s degree in computer science, information technology, or a related field.

Experience:

  • 3-5 years of experience in endpoint management, with a focus on Microsoft Intune.
  • Proven experience in deploying and managing devices using Intune.

Technical Skills:

  • Expertise in Microsoft Intune, including policy creation, device enrollment, and compliance management.
  • Experience with scripting (PowerShell, VBScript) is required.
  • Ability to create and manage profiles, manage apps and create compliance rules.
  • Experience administering in an Active Directory, Azure Active Directory, and Office 365 environments.
  • Vulnerability Management skills for desktop OS class is required.
  • Solid networking knowledge (TCP/IP, DNS, and Radius)
  • Experience working within a structured process methodology (i.e., ITIL)
  • Familiarity with other endpoint management tools, Autopilot, Rapid7, and Manage Engine Endpoint Central, Patch my PC
  • Knowledge of Windows, iOS, and Android operating systems.
  • Strong understanding of Zero Trust principles, device posture, and conditional access.
  • Excellent troubleshooting and root cause analysis skills for complex endpoint issues.
  • Azure/Intune certifications would be an asset

What This Role Is

  • A true accountability owner for endpoint health, compliance, and security.
  • A senior technical authority trusted to make risk based recommendations.
  • A bridge between infrastructure, operations, and security.

What This Role Is Not

  • A ticket driven desktop support role.
  • A purely strategic role without hands on ownership.
  • A delegated or advisory only position.

The expected salary range for this role is between $80,000 - $120,000 per year. The starting salary will be determined based on several factors such as the successful candidate’s qualifications, including but not limited to education and experience. Base pay is one component of Black & McDonald’s total rewards package. Total rewards vary by position and may include additional offerings such as group insurance benefits, pension plan, annual discretionary bonus, career development programs, and other HR programs.
Black & McDonald welcomes and encourages applications from persons with disabilities.  Accommodations are available upon request for candidates taking part in all aspects of the recruitment and selection process.

#LI-RM1

Skills Required

  • Bachelor's degree in computer science, information technology, or related field
  • 3-5 years of experience in endpoint management with focus on Microsoft Intune
  • Proven experience deploying and managing devices using Intune
  • Expertise in Microsoft Intune (policy creation, device enrollment, compliance management)
  • Experience with Trend Micro and Microsoft Defender endpoint products
  • Experience administering Entra ID, Active Directory, Azure Active Directory, and Office 365 environments
  • Scripting experience (PowerShell, VBScript)
  • Vulnerability management skills for desktop OS class
  • Solid networking knowledge (TCP/IP, DNS, RADIUS)
  • Experience working within a structured process methodology (ITIL)
  • Knowledge of Windows, iOS, and Android operating systems
  • Strong understanding of Zero Trust principles, device posture, and conditional access
  • Excellent troubleshooting and root cause analysis skills for complex endpoint issues
  • Familiarity with Autopilot, Rapid7, ManageEngine Endpoint Central, Patch My PC
  • Azure/Intune certifications
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
6,800 Employees
Year Founded: 1921

Similar Jobs

Ericsson Logo Ericsson

Physical Layer SW Design manager

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office
Ottawa, ON, CAN
88000 Employees
136K-179K Annually

Ericsson Logo Ericsson

Sales Operations Co-op

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office
2 Locations
88000 Employees
26K-35K Annually

Morningstar Logo Morningstar

Senior Site Reliability Engineer

Artificial Intelligence • Big Data • Enterprise Web • Fintech • Software • Financial Services
Hybrid
Toronto, ON, CAN
11500 Employees
90K-133K Annually

Square Logo Square

Account Executive

eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Remote or Hybrid
8 Locations
12000 Employees
123K-223K Annually

Similar Companies Hiring

Turion Space Thumbnail
Aerospace • Artificial Intelligence • Hardware • Information Technology • Software • Defense • Manufacturing
Irvine, CA
150 Employees
Fortune Brands Innovations Thumbnail
Manufacturing
Deerfield, IL
2450 Employees
Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account