Technical Architect - Endpoint Management (Pune)

Technical Architect - Endpoint Management (Pune)

09 Oct
|
Microland
|
Pune

09 Oct

Microland

Pune

Role : Technical Architect - Endpoint Management

Location : Bangalore, Pune

Mode : Work from Office - Hybrid

Job description

Responsible for the design, implementation, administration, migration, and Level 3 support of Microsoft Endpoint Management and Identity platforms including SCCM (MECM), Active Directory, Microsoft Entra ID (Azure AD), Intune, and Hybrid Identity environments. Provides technical leadership for enterprise workplace transformation, endpoint management, security, and cloud modernization initiatives.

I. SCCM (MECM) Administration & Architecture

1. Architect, design, implement and optimize SCCM/MECM infrastructure for enterprise environments.
2. Perform health assessment, capacity planning and infrastructure analysis of SCCM environments.
3. Install, configure and manage SCCM Site Servers, Primary Sites, Secondary Sites, Distribution Points, Management Points and Software Update Points.
4. Install and configure SQL Server databases, SQL Server Reporting Services (SSRS) and reporting solutions.
5. Configure and manage Operating System Deployment (OSD), Task Sequences and Windows imaging solutions.
6. Implement Software Distribution, Application Deployment, Patch Management, Hardware Inventory, Software Inventory, Asset Intelligence and Compliance Settings.
7. Configure Cloud Attach, Tenant Attach and SCCM-Intune Co-Management workloads.
8. Deploy and troubleshoot SCCM client agents across domain-joined, workgroup and non-Microsoft devices.
9. Perform SCCM upgrades, migrations and infrastructure modernization activities.
10. Analyze SCCM logs and perform advanced troubleshooting for client, server and deployment issues.
11. Develop custom reports using SQL queries and SCCM reporting capabilities.

II. Active Directory Services (On-Premises)

1. Design, implement and support Active Directory Domain Services (AD DS) infrastructure including Forests, Domains, Organizational Units, Sites and Services.
2. Manage and troubleshoot Domain Controllers, Global Catalogs, DNS, DHCP integration and Active Directory replication.
3. Configure and maintain Group Policies (GPOs) for security hardening,



workstation/server management, software deployment and administrative controls.
4. Manage FSMO roles, AD Sites, Subnets and Active Directory health monitoring.
5. Design and support Forest Trusts, External Trusts, Selective Authentication and Cross-Forest resource access.
6. Implement and support Active Directory Certificate Services (ADCS) and certificate-based authentication solutions.
7. Perform Active Directory disaster recovery, backup validation and recovery planning.

III. Active Directory Migration & Transformation

1. Lead Active Directory domain consolidation, forest migration and modernization projects.
2. Execute user, group, computer and server migrations using tools such as Quest ODM, ADMT and native Microsoft migration utilities.
3. Plan and implement SID History migration, trust relationships and coexistence strategies.
4. Perform Active Directory restructuring, OU redesign and Group Policy migration activities.
5. Support Windows Server migrations, Domain Controller upgrades and Active Directory transformations.
6. Conduct application dependency assessments and remediation activities during migration projects.

IV. Microsoft Entra ID (Azure AD)

1. Administer Microsoft Entra ID tenant services including users, groups, administrative roles and RBAC controls.
2. Configure and manage Entra Connect Sync, Hybrid Identity, Password Hash Synchronization (PHS), Pass-Through Authentication (PTA) and Seamless SSO.
3. Design and implement Hybrid Azure AD Joined and Entra Joined device strategies.
4. Configure Conditional Access Policies, Multi-Factor Authentication (MFA), Identity Protection and Authentication Methods.
5. Implement Self-Service Password Reset (SSPR), Password Writeback and hybrid identity integrations.
6.



Support B2B Collaboration, Cross-Tenant Access, External Identity and Identity Governance solutions.
7. Troubleshoot synchronization, authentication, federation and identity-related incidents.

V. Microsoft Intune & Contemporary Endpoint Management

1. Design and implement Microsoft Intune for enterprise endpoint management.
2. Configure device enrollment methods for Windows, iOS, Android and macOS devices.
3. Create and manage Compliance Policies, Configuration Profiles, Administrative Templates and Security Baselines.
4. Implement Windows Autopilot for zero-touch device provisioning and deployment.
5. Deploy and manage Win32 applications, Microsoft Store applications, Line-of-Business applications and application protection policies.
6. Configure Windows Update for Business, Feature Updates, Quality Updates and Driver Updates.
7. Implement and manage Microsoft LAPS, BitLocker encryption, Endpoint Security Policies and Endpoint Privilege Management.
8. Integrate and manage Microsoft Defender for Endpoint with Intune.
9. Troubleshoot enrollment failures, policy deployment issues, application installation failures and Autopilot provisioning issues.
10. Manage Co-Management workloads between SCCM and Intune and drive cloud-native endpoint management initiatives.

VI. Automation, Security & Operations

1. Develop PowerShell automation scripts for SCCM, Active Directory, Entra ID and Intune administration.
2. Design and implement Role-Based Access Control (RBAC) and delegated administration models.
3. Perform security assessments, configuration reviews and compliance audits.
4. Generate operational, compliance and executive reports using SCCM, Intune, Entra ID and Power BI.
5. Provide Level 3 support, root cause analysis and technical leadership for complex incidents and enterprise projects.
6. Create solution architecture documents, operational runbooks, migration plans and technical design documentation.
7. Collaborate with Infrastructure, Security, Cloud and Application teams to deliver enterprise workplace transformation initiatives.

📌 Technical Architect - Endpoint Management (Pune)
🏢 Microland
📍 Pune

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: technical architect - endpoint management (pune) / pune

Subscribe to this job alert:

Get the latest job offers by email for: technical architect - endpoint management (pune) / pune