Got the Government Contractor Blues? Looking for a company that cares and goes beyond just filling another contract billet? Well, look no further! Experience this family-oriented company that takes pride in you and will help you grow where your passions lie. Holding many Defense & Federal government contracts around the globe, with Systems Plus, you have the opportunity to take on new and evolving challenges, aim beyond what you think you are capable of, and work in collaborative, dynamic, and high-tempo environments.
Our employees are our most valued asset, and we invest in our people because we are in it for the long term. We are committed to your success and well-being and offer competitive benefits packages, salaries, bonus/award programs, and a high potential for professional growth and job opportunities worldwide.
Systems Plus is the company for you! Experience the difference, and let’s talk about your future at Systems Plus today.
|
Position Title
|
Microsoft Subject Matter Expert
|
|
Position Type
|
Full-Time, Hybrid
|
|
Position Location
|
Washington, D.C.
|
|
Tracking Code
|
01166
|
|
Daily Responsibilities
|
- Lead engineering, administration, and continuous improvement of Microsoft endpoint management capabilities, including Microsoft Intune, Windows Autopilot, Group Policy Objects, device compliance, configuration profiles, security policies, and conditional access requirements.
- Design, maintain, and secure Windows workstation images, endpoint baselines, patching processes, and device lifecycle workflows supporting both on-site and remote/VDI users.
- Engineer and maintain operating system and application patching, version control, and lifecycle management using approved mechanisms such as Microsoft Intune, Group Policy Objects, Ivanti, KACE, or a company application store.
- Support Microsoft Intune registration and Windows Autopilot for desktops, laptops, and Agency-issued mobile devices, including passwordless authentication and hardware-backed credentials for privileged and sensitive accounts.
- Engineer and maintain endpoint logging, telemetry, auditing, and monitoring capabilities, including Windows Event Logs and forwarding to SIEM/EDR platforms according to documented schemas.
- Support escalated Service Desk engineering issues involving Windows imaging, baseline remediation, enrollment, patching, authentication, endpoint compliance, telemetry engineering, and VDI/remote access.
- Develop technical documentation, operational playbooks, user-facing runbooks, knowledge-transfer materials, and versioned knowledge-base content supporting Service Desk and IRM operations.
- Coordinate technical implementations with the COR, Cybersecurity leadership, Service Desk leads, IAM, SOC, and IRM teams in accordance with Agency change-control and approval processes.
|
|
Years of Experience
|
- Eight (8) years of experience in Information Technology, Endpoint Engineering, or Cybersecurity.
- Six (6) years of experience performing engineering (not help desk) functions in enterprise environments.
|
|
Degree and Certifications:
|
Bachelor’s degree in Information Technology, Cybersecurity, or a related field (or equivalent experience). Formal education requirements may be waived based on relevant professional experience
|
|
Requirements:
|
- Experience working under formal change control, audit, and security governance processes.
- Experience building and maintaining Windows and macOS workstation images.
- Experience with image automation, validation, rollback, and version control.
- Experience integrating images with VDI, EDR, authentication, and logging agents.
- Hands-on experience using Ivanti and/or KACE for operating system and application patching.
- Experience managing configuration drift, remediation workflows, and reporting.
- Experience validating patches post-deployment and supporting rollback.
- Experience with Microsoft Intune and Windows Autopilot for provisioning and compliance enforcement.
- Experience implementing passwordless authentication and hardware-backed credentials, including YubiKey, CAC, or software keys.
- Experience configuring endpoint logging, including Windows Event Logs and macOS Unified Logs.
- Experience forwarding and validating logs into SIEM/EDR platforms such as MS Sentinel, not limited to MS Sentinel.
- Experience supporting forensic collection and audit readiness.
|
|
Required: Clearance
|
Top Secret (TS) security clearance
|