1

Intune Engineer Jobs in California (NOW HIRING)

EUC Engineer Location: Bay Area, CA (Onsite - X days/week) Job Type: Contract Duration: X Months ... Manage Intune, SCCM, Azure AD / Entra ID, and Microsoft 365 environments * Use PowerShell for ...

Be Seen First

... Entra ID, Intune, and Microsoft Defender) - VMware vSphere - Hyper-V - Azure VMs - Networking ... Level 1 engineers - Communicate effectively with clients, vendors, and internal teams

New

The Endpoint Engineer is responsible for the design, implementation, and ongoing management of the ... Microsoft Intune / Endpoint Manager Virtual Desktop: Amazon WorkSpaces (AWS) Scripting: PowerShell ...

Cloud Systems Engineer

Martinez, CA · On-site

$60 - $70/hr

The ideal Systems Engineer candidate brings strong technical depth across Azure, Intune, Entra ID, and the Power Platform, along with the ability to resolve complex issues and guide broader IT ...

W2 Acceptable Endpoint Engineer Duration: 6 Months, Contract Location: Palo Alto, CA 94304 (Hybrid ... Microsoft Intune / Endpoint Manager * Virtual Desktop: Amazon WorkSpaces (AWS) * Scripting:

Senior End User Computing EUC Engineer

Sunnyvale, CA · On-site

$124K - $170K/yr

Job Title: Senior End User Computing (EUC) Engineer Location: Sunnyvale, CA (4 days onsite) Job ... Microsoft Intune, SCCM, and Jamf/macOS management * Establish standards for OS builds, patch ...

Integrate telemetry from Intune, Jamf, and other endpoint platforms with Splunk to deliver real-time monitoring, alerting, compliance dashboards, and support for security investigations * Implement ...

Integrate telemetry from Intune, Jamf, and other endpoint platforms with Splunk to deliver real-time monitoring, alerting, compliance dashboards, and support for security investigations * Implement ...

next page

Showing results 1-20

Intune Engineer information

What are the key skills and qualifications needed to thrive in the Intune Engineer position, and why are they important?

To thrive as an Intune Engineer, you need a solid understanding of Microsoft Intune, device management, Windows operating systems, and network security, often supported by a degree in IT or a related field. Familiarity with Microsoft Endpoint Manager, Azure Active Directory, PowerShell scripting, and certifications like Microsoft Certified: Security, Compliance, and Identity Fundamentals are commonly expected. Strong problem-solving skills, attention to detail, and effective communication are essential soft skills for this role. These qualifications enable Intune Engineers to securely manage devices, ensure compliance, and work collaboratively to support organizational IT strategies.

What are the typical daily tasks and responsibilities of an Intune Engineer?

As an Intune Engineer, your day-to-day responsibilities include deploying and managing devices through Microsoft Intune, configuring security policies, troubleshooting user issues, and maintaining compliance standards across endpoints. You may also work closely with security teams, IT support staff, and end users to ensure seamless integration and performance of managed devices. Regular tasks involve updating or creating device configurations, monitoring security alerts, and providing technical guidance to the broader IT team. The role requires staying up to date with the latest Microsoft updates and best practices to proactively address potential threats and improve system efficiency.

What is an Intune Engineer job?

An Intune Engineer is responsible for managing and maintaining Microsoft Intune, a cloud-based endpoint management solution. They configure and implement policies for device compliance, application deployment, and security to ensure seamless IT operations. Intune Engineers work closely with IT teams to support mobile device management (MDM) and mobile application management (MAM) across various platforms. They also troubleshoot issues, optimize configurations, and ensure adherence to organizational security policies.

What are the most commonly searched types of Intune Engineer jobs in California? The most popular types of Intune Engineer jobs in California are:
What are popular job titles related to Intune Engineer jobs in California? For Intune Engineer jobs in California, the most frequently searched job titles are:
What job categories do people searching Intune Engineer jobs in California look for? The top searched job categories for Intune Engineer jobs in California are:
Infographic showing various Intune Engineer job openings in California as of July 2026, with employment types broken down into 93% Full Time, 4% Part Time, and 3% Contract. Highlights an 89% Physical, 4% Hybrid, and 7% Remote job distribution.

Senior Windows Engineer, Endpoint Engineering

Ares Operations LLC

Los Angeles, CA

Full-time

Medical, Dental, Vision, Life, Retirement

Posted 4 days ago


Job description

Over the last 20 years, Ares' success has been driven by our people and our culture. Today, our team is guided by our core values - Collaborative, Responsible, Entrepreneurial, Self-Aware, Trustworthy - and our purpose to be a catalyst for shared prosperity and a better future. Through our recruitment, career development and employee-focused programming, we are committed to fostering a welcoming and inclusive work environment where high-performance talent of diverse backgrounds, experiences, and perspectives can build careers within this exciting and growing industry.

Job Description

The Senior Windows/SCCM/Intune Engineer is responsible for the architecture, engineering, automation, security, and lifecycle management of the firm's global Windows endpoint environment. This role serves as a senior technical leader within End User Engineering, driving enterprise device management strategies across Microsoft Configuration Manager (SCCM/MECM), Microsoft Intune, Microsoft Entra ID, and Windows 11 platforms.

The engineer will design and maintain modern endpoint management solutions, software deployment frameworks, operating system lifecycle processes, compliance enforcement, and endpoint security configurations. This individual will collaborate closely with Information Security, Infrastructure, Service Desk, Unified Communications, and Application teams to deliver a secure, scalable, and highly automated digital workplace experience for employees worldwide.

Reporting relationships

Reports to: Senior Manager, Digital Workplace

Primary functions & responsibilities

1. Endpoint Engineering & Management

  • Design, implement, and support enterprise Windows endpoint management solutions.
  • Manage and optimize Microsoft Configuration Manager (SCCM/MECM) infrastructure.
  • Lead migration initiatives from traditional SCCM management toward cloud-native management using Microsoft Intune.
  • Engineer and maintain Microsoft Intune policies for device compliance, configuration, security baselines, endpoint protection, and application deployment.
  • Develop and maintain device provisioning strategies utilizing:
    • Windows Autopilot
    • Microsoft Intune
    • Hybrid Azure AD Join
    • Entra ID Join
  • Establish endpoint configuration standards across global environments.
  • Drive hardware refresh and operating system modernization initiatives.
  • Maintain endpoint inventory, reporting, and lifecycle management processes.

2. Operating System Engineering

  • Lead Windows 11 deployment, maintenance, and upgrade programs.
  • Develop and maintain enterprise OS deployment task sequences and Autopilot provisioning packages.
  • Engineer standardized endpoint configuration profiles and provisioning methodologies.
  • Manage feature updates, quality updates, and servicing channels.
  • Perform application compatibility testing and remediation.
  • Develop rollback and contingency plans for large-scale deployment initiatives.

3. Application Packaging & Deployment

  • Package, test, deploy, and maintain enterprise software solutions.
  • Develop deployment methodologies utilizing:
    • Intune Win32 Applications
    • SCCM Applications
    • PowerShell
    • Winget
  • Troubleshoot complex installation and application-related issues.
  • Create detection methods, superseding strategies, and deployment automation workflows.
  • Manage application lifecycle processes from onboarding through retirement.

4. Automation & Scripting

  • Develop automation solutions using:
    • PowerShell
    • PowerShell App Deployment Toolkit (PSADT)
    • Graph API
    • Azure Automation
    • Azure Functions
  • Automate administrative tasks and operational processes.
  • Create self-healing and proactive remediation scripts.
  • Develop reporting, monitoring, and compliance automation solutions.
  • Reduce operational overhead through infrastructure-as-code methodologies.

5. Endpoint Security & Compliance

  • Partner with Information Security teams to implement endpoint security controls.
  • Engineer and maintain:
    • Intune Patch Management / Autopatch
    • SCCM/WSUS software updates
    • Attack Surface Reduction Rules
    • Device Control Policies
    • BitLocker Encryption
    • Security Baselines
    • Group Policy Management
    • Conditional Access integrations
  • Ensure compliance with regulatory and corporate security requirements.
  • Evaluate vulnerabilities and coordinate remediation activities.
  • Support audit readiness and security reviews.

6. Microsoft Cloud Technologies

  • Support and integrate:
    • Microsoft Intune
    • Microsoft Entra ID
    • Microsoft Defender
    • Microsoft 365 Apps
    • Windows Update for Business
    • Microsoft Graph
  • Develop modern management strategies aligned with Microsoft's cloud-first approach.
  • Manage co-management capabilities between SCCM and Intune.
  • Optimize device management through cloud-based services and automation.

7. Digital Employee Experience (DEX)

  • Utilize Digital Experience Monitoring tools such as:
    • Nexthink
    • Microsoft Endpoint Analytics
    • Lakeside SysTrack
    • ControlUp
  • Analyze endpoint health and performance trends.
  • Develop initiatives to improve:
    • Device performance
    • Boot times
    • Reliability
    • Application experience
    • Employee productivity
  • Create executive-level reporting and operational dashboards.

8. Documentation & Operational Excellence

  • Create and maintain:
    • Technical documentation
    • Standard operating procedures
    • Engineering standards
    • Runbooks
    • Knowledge articles
  • Develop operational dashboards and reporting metrics.
  • Maintain architecture diagrams and platform documentation.
  • Drive continuous process improvement initiatives.
  • Serve as Tier 3/Level 4 escalation support for complex endpoint issues.
  • Perform root cause analysis for recurring incidents and service disruptions.
  • Participate in maintenance windows and critical incident response activities.
  • Establish monitoring and alerting strategies for endpoint services.
  • Maintain service reliability and performance targets.
Qualifications

Education:

Bachelor's degree in Computer Science, Information Systems, Engineering, or related technical field.
Advanced degree strongly preferred.

Experience Required:

Required

  • 7+ years of enterprise endpoint engineering experience.
  • 5+ years managing Microsoft Configuration Manager (SCCM/MECM).
  • 3+ years managing Microsoft Intune in a large enterprise environment.
  • Experience supporting environments with 5,000+ endpoints preferred.
  • Experience in financial services, healthcare, legal, or highly regulated industries preferred.

Preferred Certifications

  • Microsoft Certified: Endpoint Administrator Associate
  • Microsoft Certified: Azure Administrator Associate
  • Microsoft Certified: Enterprise Administrator Expert
  • Microsoft Certified: Security Operations Analyst Associate
  • ITIL Foundations
  • MCM, MCSE, or equivalent legacy Microsoft certifications

Technical Skills

  • Expert Knowledge
    • Windows 11 administration
    • Microsoft Configuration Manager (SCCM/MECM)
    • Microsoft Intune
    • Windows Autopilot
    • PowerShell scripting
    • Microsoft Entra ID
    • Group Policy Management
    • Endpoint security technologies
    • Software packaging and deployment
  • Advanced Knowledge
    • Co-Management
    • Windows Update for Business
    • Microsoft Defender for Endpoint
    • BitLocker
    • Conditional Access
    • Azure Automation
    • Microsoft Graph API
    • Active Directory
    • DNS/DHCP fundamentals
    • PKI/Certificate Services
  • Preferred Skills
    • Microsoft 365
    • Defender XDR
    • Nexthink
    • ServiceNow
    • Azure Virtual Desktop
    • Windows 365
    • Azure Infrastructure
    • Enterprise mobility management
    • Zero Trust architectures

General Requirements:

  • Strong written and verbal communication skills
  • Ability to manage multiple projects and priorities simultaneously
  • Experience working in global enterprise environments, preferably in financial services or other highly regulated environments
  • Willingness to travel (approximately 10-25%)

Reporting Relationships

Senior Manager, Digital Workplace

Compensation

The anticipated rate for this position is listed below. Total compensation may also include a discretionary performance-based bonus.

$125,000 - $140,000

The firm also offers robust Benefits offerings. Ares U.S. Core Benefits include Comprehensive Medical/Rx, Dental and Vision plans; 401(k) program with company match; Flexible Savings Accounts (FSA); Healthcare Savings Accounts (HSA) with company contribution; Basic and Voluntary Life Insurance; Long-Term Disability (LTD) and Short-Term Disability (STD) insurance; Employee Assistance Program (EAP), and Commuter Benefits plan for parking and transit.

Ares offers a number of additional benefits including access to a world-class medical advisory team, a mental health app that includes coaching, therapy and psychiatry, a mindfulness and wellbeing app, financial wellness benefit that includes access to a financial advisor, new parent leave, reproductive and adoption assistance, emergency backup care, matching gift program, education sponsorship program, and much more.

There is no set deadline to apply for this job opportunity. Applications will be accepted on an ongoing basis until the search is no longer active.