Cloud Endpoint Solutions Architect
3 giorni fa
Provincia di Bergamo Lombardia, Italia
Netrix Global
Tempo pieno
Gratuito con email o Google
Salva questo lavoro e mantieni la tua ricerca organizzata
Crea un account gratuito per salvare lavori, creare avvisi e tornare a questa inserzione dalla tua dashboard.
Gratuito con email o Google
About The Opportunity:
How You Will Make An Impact:
- Architecture & Strategy
- Design target-state cloud endpoint architectures centered on Intune, Windows 365, and AVD
- Develop modern management roadmaps (cloud-native, co-management, or hybrid transition strategies)
- Define governance models for device lifecycle management, configuration standards, and security controls
- Microsoft Intune Modern Management
- Design and implement device enrollment and provisioning (Windows Autopilot, Entra ID join/hybrid join)
- Build configuration baselines using configuration profiles, settings catalog, security baselines, and administrative templates
- Implement compliance policies, Conditional Access integration, and Zero Trust endpoint posture strategies
- Establish update strategies (Windows Update for Business, feature update rings, quality update policies, driver management approaches)
- Operationalize monitoring and remediation (Endpoint analytics, reporting, proactive remediations / scripting, troubleshooting workflows)
- Windows 365 Cloud PC
- Architect Windows 365 solutions (Business/Enterprise/Frontline as applicable) aligned to personas and performance requirements
- Define provisioning policies, image strategy, security controls, and network connectivity patterns
- Design operational processes for Cloud PC lifecycle (assignment, resizing, reprovisioning, troubleshooting, support model)
- Azure Virtual Desktop (AVD)
- Architect AVD host pools and workload designs (pooled vs personal, multi-session vs single-session)
- Design FSLogix profile solutions, image management strategy, scaling/automation approach, and resiliency patterns
- Align AVD identity, access controls, and network/security requirements with enterprise standards
- Provide guidance on operational excellence (monitoring, capacity planning, cost optimization, performance tuning)
- Security & Compliance
- Implement endpoint security controls in collaboration with security teams (Defender integration, attack surface reduction, device compliance posture)
- Ensure architectures align to regulatory and organizational requirements (data protection, logging, access control, segmentation)
- Delivery Leadership
- Lead discovery workshops, assessments, and solution envisioning sessions
- Create high-quality deliverables: architecture diagrams, implementation plans, migration runbooks, test plans, and support handoffs
- Mentor engineers and contribute to technical standards, reusable templates, and automation patterns
- Coordinate with stakeholders across identity, networking, security, and service management teams What You Will Bring To The Table:
- 5+ years in endpoint management, EUC, or cloud infrastructure roles with increasing architecture responsibility
- Strong hands-on experience with Microsoft Intune in enterprise environments:
- Enrollment and provisioning (Autopilot, Entra ID join / hybrid join)
- Proven architecture and/or implementation experience with Windows 365 and/or Azure Virtual Desktop
- Strong understanding of Microsoft Entra ID, device identity concepts, and Conditional Access patterns
- Solid working knowledge of Windows enterprise management:
- Experience producing professional technical documentation (HLD/LLD), diagrams, and operational runbooks
- Ability to lead technical workshops and communicate complex topics clearly to both technical and non-technical audiences Preferred
- Experience with FSLogix, profile/container strategies, and AVD performance optimization
- Familiarity with Microsoft Defender for Endpoint, security baselines, and endpoint hardening best practices
- Experience migrating from SCCM/MECM, GPO-heavy environments, or legacy VDI (Citrix/VMware) to modern management or AVD/Windows 365
- Scripting/automation skills (PowerShell strongly preferred; Azure Automation/Functions a plus)
- Experience with monitoring/operations tooling (Log Analytics, Azure Monitor, AVD Insights, endpoint analytics)
- Understanding of networking concepts relevant to AVD/Windows 365 (name resolution, routing, VPN/ExpressRoute, segmentation, identity-aware access)
- Microsoft certifications (nice-to-have, not mandatory):
- MD-102, MS-102, AZ-104, AZ-140, SC-300 (or equivalent real-world experience) Soft Skills
- Strong consultative mindset; able to translate business requirements into technical outcomes
- Excellent stakeholder management and cross-team collaboration skills
- Analytical problem-solving and structured troubleshooting approach
- Comfortable operating in ambiguity and driving decisions with clear rationale and trade-offs
About Us
: At Netrix Global our values are the philosophies and principles that we live by. They support our vision, help us achieve our goals and commit us to a common purpose. We Own Outcomes, Win Together, Make An Impact, Enjoy The Journey, and Respect All Netrix Global is a mission-driven organization with the goal of providing the people, processes, and technology needed to run a
- Architecture & Strategy
- Design target-state cloud endpoint architectures centered on Intune, Windows 365, and AVD
- Develop modern management roadmaps (cloud-native, co-management, or hybrid transition strategies)
- Define governance models for device lifecycle management, configuration standards, and security controls
- Microsoft Intune Modern Management
- Design and implement device enrollment and provisioning (Windows Autopilot, Entra ID join/hybrid join)
- Build configuration baselines using configuration profiles, settings catalog, security baselines, and administrative templates
- Implement compliance policies, Conditional Access integration, and Zero Trust endpoint posture strategies
- Establish update strategies (Windows Update for Business, feature update rings, quality update policies, driver management approaches)
- Operationalize monitoring and remediation (Endpoint analytics, reporting, proactive remediations / scripting, troubleshooting workflows)
- Windows 365 Cloud PC
- Architect Windows 365 solutions (Business/Enterprise/Frontline as applicable) aligned to personas and performance requirements
- Define provisioning policies, image strategy, security controls, and network connectivity patterns
- Design operational processes for Cloud PC lifecycle (assignment, resizing, reprovisioning, troubleshooting, support model)
- Azure Virtual Desktop (AVD)
- Architect AVD host pools and workload designs (pooled vs personal, multi-session vs single-session)
- Design FSLogix profile solutions, image management strategy, scaling/automation approach, and resiliency patterns
- Align AVD identity, access controls, and network/security requirements with enterprise standards
- Provide guidance on operational excellence (monitoring, capacity planning, cost optimization, performance tuning)
- Security & Compliance
- Implement endpoint security controls in collaboration with security teams (Defender integration, attack surface reduction, device compliance posture)
- Ensure architectures align to regulatory and organizational requirements (data protection, logging, access control, segmentation)
- Delivery Leadership
- Lead discovery workshops, assessments, and solution envisioning sessions
- Create high-quality deliverables: architecture diagrams, implementation plans, migration runbooks, test plans, and support handoffs
- Mentor engineers and contribute to technical standards, reusable templates, and automation patterns
- Coordinate with stakeholders across identity, networking, security, and service management teams What You Will Bring To The Table:
- 5+ years in endpoint management, EUC, or cloud infrastructure roles with increasing architecture responsibility
- Strong hands-on experience with Microsoft Intune in enterprise environments:
- Enrollment and provisioning (Autopilot, Entra ID join / hybrid join)
- Proven architecture and/or implementation experience with Windows 365 and/or Azure Virtual Desktop
- Strong understanding of Microsoft Entra ID, device identity concepts, and Conditional Access patterns
- Solid working knowledge of Windows enterprise management:
- Experience producing professional technical documentation (HLD/LLD), diagrams, and operational runbooks
- Ability to lead technical workshops and communicate complex topics clearly to both technical and non-technical audiences Preferred
- Experience with FSLogix, profile/container strategies, and AVD performance optimization
- Familiarity with Microsoft Defender for Endpoint, security baselines, and endpoint hardening best practices
- Experience migrating from SCCM/MECM, GPO-heavy environments, or legacy VDI (Citrix/VMware) to modern management or AVD/Windows 365
- Scripting/automation skills (PowerShell strongly preferred; Azure Automation/Functions a plus)
- Experience with monitoring/operations tooling (Log Analytics, Azure Monitor, AVD Insights, endpoint analytics)
- Understanding of networking concepts relevant to AVD/Windows 365 (name resolution, routing, VPN/ExpressRoute, segmentation, identity-aware access)
- Microsoft certifications (nice-to-have, not mandatory):
- MD-102, MS-102, AZ-104, AZ-140, SC-300 (or equivalent real-world experience) Soft Skills
- Strong consultative mindset; able to translate business requirements into technical outcomes
- Excellent stakeholder management and cross-team collaboration skills
- Analytical problem-solving and structured troubleshooting approach
- Comfortable operating in ambiguity and driving decisions with clear rationale and trade-offs
About Us
: At Netrix Global our values are the philosophies and principles that we live by. They support our vision, help us achieve our goals and commit us to a common purpose. We Own Outcomes, Win Together, Make An Impact, Enjoy The Journey, and Respect All Netrix Global is a mission-driven organization with the goal of providing the people, processes, and technology needed to run a