Senior Desktop Engineer Blue Bell Pennsylvania positions focus on delivering results in their domain. This page aggregates open Senior Desktop Engineer Blue Bell Pennsylvania roles and what employers typically expect.
At Slipstream we work to streamline IT Support and provide managed solutions with a strategic consulting and global leadership management approach. Our solutions are designed exclusively for emerging pharma and biotech organizations. Slipstream�s industry-leading solutions free clients from the demands of internal IT and allow them to rapidly advance their mission. Led by a leadership team that has been together for over 10 years, you will join a proven team, culture, and strategy to drive innovation within the IT outsourcing industry while developing your skillset with the opportunities for internal growth. Responsibilities Design, configure, and continuously refine the Microsoft Intune environment to meet organizational security, compliance, and productivity requirements. Own Intune tenant settings, conditional access policies, and compliance baselines across Windows, macOS, iOS, and Android endpoints. Review and optimize existing configurations on an ongoing basis, identifying gaps, redundancies, and drift from defined standards. Maintain and document configuration profiles, endpoint security policies, and compliance posture in alignment with CIS benchmarks or internal security frameworks. Deploy and manage applications across the estate via Intune, including Win32, MSIX, Line-of-Business, and Microsoft Store app types. Define and enforce app protection policies (APP/MAM) for both managed and unmanaged devices, ensuring data loss prevention controls are consistently applied. Configure and manage app configuration policies for managed apps, including Microsoft 365 and third-party applications. Own the end-to-end application patching process - packaging, testing, staged rollout, and validation - ensuring timely remediation of vulnerabilities. Monitor deployment success rates and proactively resolve failed assignments or conflicting policies. Design and maintain Azure AD dynamic groups to support accurate, automated policy and application targeting across users and devices. Develop and refine dynamic membership rules using device and user attributes (OS version, department, location, compliance state) to reduce manual overhead. Audit group membership and assignment logic regularly, eliminating over-broad targeting or conflicting inclusions and exclusions. Collaborate with IAM and security teams to align group structures with role-based access control (RBAC) and zero-trust principles. Write, test, and deploy PowerShell scripts via Intune for device configuration, remediation, and reporting tasks that fall outside native policy capabilities. Build and maintain Proactive Remediations to detect and self-heal common endpoint issues at scale. Leverage Microsoft Graph API and PowerShell modules (Microsoft.Graph, Az) to automate administrative tasks, reporting, and bulk operations within the Intune and Entra ID environment. Maintain a version-controlled script library (Git), ensuring scripts are documented, peer-reviewed, and tested in a non-production environment before deployment. Evaluate and implement automation opportunities to reduce manual toil across endpoint lifecycle processes - provisioning, patching, decommission. Maintain endpoint compliance policies and act as the subject-matter expert for Intune-based security controls within the wider security team. Integrate Intune with Microsoft Defender for Endpoint, ensuring MDE onboarding, sensor health, and policy enforcement are maintained across all managed devices. Support audit and compliance activities by producing accurate device compliance reports and responding to findings in a timely manner. Act as the escalation point for complex Intune, endpoint, and application delivery issues, driving root-cause analysis and resolution. Mentor junior engineers, conducting script and configuration reviews and sharing knowledge of modern management best practices. Contribute to and maintain internal runbooks, SOPs, and technical documentation for all areas of the Intune environment. S…