Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
A.C.Coy Company

Windows Client Engineer

A.C.Coy Company

. Manage and modernize the Windows endpoint estate through Microsoft Intune and SCCM/Configuration Manager .

Posted 9/29/2026full-timePittsburgh • Pennsylvania • United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in managing and modernizing Windows endpoint environments using Microsoft Intune and SCCM, with strong capabilities in PowerShell scripting for automation and remediation. Proficient in vulnerability management, patch compliance, and security hardening aligned with industry standards.

Highest-signal resume keywords
Microsoft Intune AdministrationSCCM/Configuration Manager ManagementPowerShell ScriptingVulnerability ManagementWindows Patch Management

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Windows Endpoint ManagementApplication PackagingRemediation Package DeploymentConfiguration ManagementSecurity HardeningCIS/DISA STIG ComplianceWindows OS InternalsActive DirectoryGroup PolicyTenable Nessus
Soft Skills
Attention to DetailProblem-SolvingCollaboration
Tools & Technologies
Windows Update for BusinessWSUSPatchMyPCMicrosoft Defender for EndpointQualysRapid7
Certifications & Qualifications
Microsoft MD-102SC-200CompTIA Security+
Industry Keywords
Vulnerability RiskCompliance ReportingEndpoint RemediationCVE UnderstandingCVSS Scoring

Tech Stack

Tools & technologies
Azure

About the role

Key responsibilities & impact
  • Manage and modernize the Windows endpoint estate through Microsoft Intune and SCCM/Configuration Manager
  • Drive down vulnerability risk across the Windows client fleet
  • Review vulnerabilities identified by Tenable Nessus/Tenable Security Center and own endpoint-side remediation from finding to closure
  • Build, test, and deploy remediation packages and solutions using Intune and SCCM, including application updates, patches, registry and configuration changes, and scripted fixes
  • Author and maintain PowerShell remediation scripts, including detection and remediation logic for Intune proactive remediations and SCCM configuration items
  • Package and deploy third-party application updates using Win32 apps in Intune, application deployments in SCCM, or tools such as PatchMyPC
  • Manage Windows Update policy through Windows Update for Business, WSUS, and SCCM software update groups
  • Ensure patch compliance reporting is accurate
  • Partner with security and vulnerability management teams to triage findings, validate fixes, and provide feedback on false positives
  • Track remediation progress and report on compliance, patch coverage, and outstanding risk against SLAs
  • Maintain configuration baselines and security hardening, including CIS/DISA STIG alignment
  • Support co-management, device onboarding, compliance policies, and conditional access in the Intune/SCCM environment
  • Document remediation procedures and contribute to repeatable, well-tested deployment processes

Requirements

What you’ll need
  • Bachelor's degree required
  • 3–5 years of experience engineering and administering Microsoft Windows endpoints in an enterprise environment
  • Hands-on experience with both Microsoft Intune and SCCM/Configuration Manager, including application packaging and deployment
  • Strong PowerShell scripting skills for automation, detection, and remediation
  • Experience with Windows patch management using Windows Update for Business, WSUS, or SCCM software updates
  • Familiarity with vulnerability management concepts and tooling; Tenable experience strongly preferred, with Qualys or Rapid7 also relevant
  • Understanding of CVEs, CVSS scoring, and mapping vulnerability findings to remediation actions
  • Solid grasp of Windows OS internals, Active Directory, Group Policy, and Entra ID (Azure AD)
  • Ability to test changes carefully and roll out fixes without disrupting end users
  • Microsoft MD-102, SC-200, or CompTIA Security+ certifications preferred
  • Experience with application packaging tools such as PSADT and PatchMyPC, and MSI/MSIX preferred
  • Exposure to Microsoft Defender for Endpoint and its vulnerability management (TVM) integration preferred
  • Knowledge of security hardening frameworks such as CIS Benchmarks and DISA STIGs preferred
  • No work authorization sponsorship

Benefits

Comp & perks
  • Hybrid work arrangement: 3 days onsite and 2 days remote
  • Full-time contract position