Intune & M365 Administrator
Job Description:
The Intune & M365 Administrator is responsible for the implementation, administration, and
ongoing management of MS Intune and related M365 security policies across ProMach’s 60+
global subsidiaries. This role will collaborate with the Corp IT team to ensure the M365 tenant is
in alignment with security best practices. In addition, this position is a key contributor in
departmental projects and provides second tier support and training for all technology related
issues and inquiries, coordinating with appropriate support departments as necessary.
This position reports to the Sr. Director of Corporate IT Operations and will be based in
Covington, Kentucky.
Job Functions:
• Microsoft Intune Ownership
o Implementation & Ongoing Administration
o Conditional Access Administration
o Endpoint Security Baseline Policies
o Windows OS Security Patching
o Application Deployments
• Microsoft Defender Administration Support, (policies, tagging, etc.)
• M365 Tenant Security Configuration, (Best Practices, Microsoft Secure Score, etc.)
• Azure / M365 Security Monitoring / Incident Response
• Microsoft Purview Data Loss Prevention, (participates in initial planning and
implementation)
• Develops and maintains Metrics for M365 & Intune
• Assists with acquisition onboarding process, (email migrations, tool deployments, etc.)
• Tracks IT Security Incidents in ITSM tool, (ServiceNow)
• Assists with maintenance of IT security policies and related procedures.
• Assists with general Windows Server, Active Directory, Azure, & O365 support and
administration.
• Participates in routine server maintenance and assists with recurring Disaster Recovery
tests.
• Participates in internal and external IT audits and assessments
• Performs second level support for incidents escalated by team members.
• Fosters and maintains key vendor / 3rd party service and support relationships.
• Performs other duties as assigned.
Qualification Requirements
• Bachelor’s Degree in Information Systems or similar area of technical study; or equivalent
combination of education and experience
• 5+ years of experience in the Information Technology field
• Advanced proficiency with Microsoft Intune administration, (enrollment, compliance,
conditional access, config profiles, software deployments, update rings, etc.)
• Experience assessing and configuring M365 security to recognized best-practice
baselines (Microsoft Secure Score, etc.)
• Experience with endpoint hardening, encryption (BitLocker), Active Directory, NTFS
security, and Group Policy.
• Experience with application packaging and deployment.
• Experience with PowerShell and the Microsoft Graph API for automation and reporting.
• Experience with MS Defender for Endpoint policy administration
• Experience with MS Purview or similar DLP solution is desirable.
• Experience with MFA solutions, (Duo or similar)
• Familiarity with Azure Arc for server onboarding and management.
• Familiarity with enterprise SIEM solutions, (MS Sentinel or similar)
• Familiarity with one or more IT security frameworks, (NIST, ISO, COBIT, MITRE, etc.)
• Ability to communicate with associates at all levels of the organization
• Strong written communications skills with experience writing technical documentation
• Motivated, committed and energetic self-starter dedicated to providing high quality and
responsive IT service
• Availability to work evenings and weekends, sometimes with little notice.
• Willingness to travel if needed < 5%
To apply for this job email your details to ben.hearn@promachbuilt.com
