The lead is responsible for the design, deployment, and management of the Microsoft Intune endpoint platform and mobile security program. This includes ensuring compliance with healthcare regulations like HIPAA and managing diverse endpoints across multiple facilities.
Position Summary
The Intune and Mobile Security Lead is responsible for the design, deployment, and ongoing management of the organization's Microsoft Intune-based endpoint management platform and mobile device security program. This role serves as the subject matter expert for all managed endpoints - including Windows workstations, iOS/Android mobile devices, and shared clinical devices - ensuring compliance with healthcare regulatory requirements (HIPAA, HITECH) and alignment with the organization's security framework. The ideal candidate bridges technical depth with a security-first mindset and operates effectively across a complex, multi-facility healthcare environment.
Responsibilities
- Endpoint & Mobile Device Management: Architect, deploy, and maintain Microsoft Intune (MEM) policies for Windows, iOS, Android, and macOS devices across all facilities
- Security & Compliance: Develop and maintain mobile security baselines aligned with CIS Benchmarks, NIST 800-124, and HIPAA Security Rule requirements
- Identity & Access Integration: Partner with the Identity & Access Management team to align device compliance with Entra ID-based access controls and MFA policy enforcement
- Clinical & Shared Device Support: Design and maintain enrollment and management strategies for shared clinical devices (kiosks, workstations-on-wheels, nurse call tablets)
- Governance & Operations: Maintain the Intune environment health, including policy conflict resolution, update ring management, and feature update deferrals
Required Qualifications
- 2+ years of hands-on Microsoft Intune / Microsoft Endpoint Manager administration in an enterprise environment
- Bachelor degree in Information Technology, Computer Science, Cybersecurity, or equivalent practical experience
- Certifications (Required or Expected Within 12 Months):
- Microsoft 365 Certified: Endpoint Administrator Associate (MD-102)
Technical Skills:
- Strong proficiency with Microsoft Intune, Entra ID, Conditional Access, and Defender for Endpoint
- Hands-on experience with Windows Autopilot, Apple Business Manager, and Android Enterprise
- Working knowledge of PowerShell scripting and Microsoft Graph API for Intune automation
- Familiarity with co-management (Intune + MECM) architectures
- Understanding of PKI, certificate deployment via SCEP/PKCS, and VPN/Wi-Fi profile management
Pay Rate: Min - $145,000 l Max - $145,000
Job Listing ID:1791300