Summary:
The Intune Consultant is responsible for designing, implementing, and optimizing Microsoft Intune and related Modern Endpoint Management solutions across customer organizations. This role partners with IT leadership, security teams, and enduser computing teams to drive secure, scalable, and automated device management aligned with Zero Trust principles. The consultant will lead assessments, architecture, deployment, migration, and operational readiness activities
Key Responsibilities:
Strategy & Architecture
· Develop enterprisegrade Intune architectures covering Windows, macOS, iOS/iPadOS, and Android.
· Assess current endpoint management maturity and define modernization roadmaps.
· Design policies aligned with Zero Trust, least privilege, and compliance frameworks.
· Integrate Intune with Microsoft 365 security stack (Entra ID, Defender, Purview, Autopatch, Autopilot).
Implementation & Configuration
· Configure Intune device enrollment, compliance policies, configuration profiles, and application deployment.
· Lead Autopilot deployment strategy, including hardware hash import, ESP configuration, and whiteglove workflows.
· Implement Conditional Access policies and device compliance integrations.
· Package and deploy Win32, LOB, and Store apps using modern deployment techniques.
· Configure and optimize Windows Update for Business and Autopatch.
Migration & Modernization
· Lead migrations from legacy tools (SCCM/ConfigMgr, JAMF, Workspace ONE, etc.) to Intune.
· Develop comanagement or tenantattach strategies where applicable.
· Build automation using PowerShell, Graph API, and proactive remediation scripts.
· Security & Compliance
· Implement device compliance, endpoint hardening, and security baselines.
· Integrate Defender for Endpoint and ensure secure posture across all device platforms.
· Support audit, reporting, and regulatory compliance requirements.
Operations & Enablement
· Create operational runbooks, governance models, and bestpractice documentation.
· Train IT teams on Intune administration, troubleshooting, and lifecycle management.
· Provide Tier 3 escalation support for complex endpoint issues.
Requirements or Required Skills/Abilities:
· Deep expertise with Microsoft Intune, Entra ID, Autopilot, Conditional Access, and Defender for Endpoint.
· Strong understanding of Windows 10/11, macOS, iOS/iPadOS, and Android management.
· Experience with PowerShell, Graph API, and automation frameworks.
· Background in endpoint security, identity management, and Zero Trust architecture.
· Experience migrating from SCCM or other MDM/UEM platforms.
· Strong consulting skills: requirements gathering, documentation, stakeholder communication.
Preferred Qualifications:
· Microsoft certifications such as:
· MD-102 (Endpoint Administrator)
· SC-300 (Identity & Access Administrator)
· AZ-104 (Azure Administrator)
· MS-102 (Microsoft 365 Administrator)
· Experience in enterprise environments (5,000+ endpoints).
· Familiarity with compliance frameworks (NIST, CIS, ISO 27001).
Success Indicators:
· Reduction in manual endpoint management tasks through automation.
· Improved device compliance and security posture.
· Successful rollout of Autopilot and modern provisioning workflows.
· Clear operational documentation and knowledge transfer to internal teams.
· High enduser satisfaction with device onboarding and performance.
Education and/or Certifications:
Bachelor of Science preferred