Job Title: SCCM/ Intune/ Windows Administrator (L3)
Job Location: Hybrid- Des Moines, IA, USA.
** Please note, this role is not able to offer visa transfer or sponsorship now or in the future**
We are seeking an experienced SCCM / Intune / Windows Administrator (L3) to support enterprise endpoint management, modern workplace initiatives, endpoint security, and Windows platform administration. The ideal candidate will possess strong expertise in Microsoft Endpoint Configuration Manager (SCCM/MECM), Microsoft Intune, Windows 10/11 administration, endpoint security technologies, and PowerShell automation.
This role will be responsible for maintaining endpoint health, software deployment services, device lifecycle management, compliance enforcement, vulnerability remediation, and advanced troubleshooting within a large-scale enterprise environment.
In this role, you will
Endpoint Management & Modern Device Administration
- Administer, maintain, and optimize Microsoft Intune and SCCM/MECM environments for enterprise endpoint management.
- Manage device enrollment, provisioning, imaging, deployment, and lifecycle activities across Windows endpoints.
- Implement and support Windows Autopilot and modern device management solutions.
- Configure compliance policies, configuration profiles, device restrictions, and endpoint governance standards.
- Manage co-management environments integrating SCCM and Intune.
- Monitor endpoint posture and ensure adherence to organizational technology standards.
Software Distribution & Patch Management
- Package, test, deploy, and support enterprise applications using SCCM and Intune.
- Manage deployment of operating system patches, cumulative updates, feature updates, and third-party software patches.
- Monitor software distribution performance and deployment success metrics.
- Perform patch compliance reporting and remediation activities.
- Ensure endpoint systems remain compliant with security and operational standards.
- Coordinate patching schedules and maintenance windows with business and infrastructure teams.
Windows Administration
- Support and administer Windows 10 and Windows 11 enterprise environments.
- Manage OS migrations, feature upgrades, image maintenance, and deployment strategies.
- Troubleshoot Windows operating system issues related to performance, reliability, and user experience.
- Administer Active Directory integration and Group Policy configurations.
- Maintain Windows security baselines and hardening standards.
- Support endpoint performance optimization initiatives and system lifecycle planning.
Endpoint Security & Compliance
- Implement and maintain endpoint security controls aligned with enterprise security policies.
- Support Microsoft Defender for Endpoint, BitLocker encryption, and endpoint protection technologies.
- Conduct vulnerability assessments and coordinate remediation activities.
- Partner with cybersecurity teams to address security findings and policy compliance gaps.
- Ensure regulatory, audit, and organizational compliance requirements are met.
- Support Zero Trust and endpoint security initiatives.
Infrastructure Support & Advanced Troubleshooting
- Diagnose and resolve complex SCCM client, Intune enrollment, software deployment, and endpoint configuration issues.
- Support enterprise endpoint infrastructure including management points, distribution points, software update points, and related services.
- Perform root cause analysis (RCA) for recurring incidents and service disruptions.
- Act as an L3 escalation point for critical endpoint management issues.
- Collaborate with server, network, cloud, and security teams to ensure seamless endpoint operations.
- Maintain system stability and improve endpoint service availability.
Automation & Operational Excellence
- Develop, maintain, and enhance PowerShell scripts for automation and operational efficiency.
- Automate routine administration, health checks, reporting, and remediation activities.
- Build operational dashboards and executive reporting metrics.
- Monitor endpoint health, deployment performance, compliance status, and service quality metrics.
- Identify opportunities to reduce manual effort through process automation and standardization.
Documentation, Governance & ITSM
- Maintain runbooks, standard operating procedures (SOPs), and technical documentation.
- Support audit activities and compliance reviews.
- Participate in Incident, Change, Problem, Release, and Configuration Management processes.
- Ensure all activities comply with ITIL and organizational governance standards.
- Maintain accurate records for system configurations, deployments, and operational changes.
Required Technical Skills
Endpoint Management
- Microsoft Endpoint Configuration Manager (SCCM/MECM)
- Microsoft Intune
- Microsoft Endpoint Manager
- Windows Autopilot
- Co-Management Architecture
- Device Enrollment & Lifecycle Management
Windows Administration
- Windows 10 Administration
- Windows 11 Administration
- Active Directory
- Group Policy Administration
- Windows Security Hardening
- Endpoint Configuration Management
Security & Compliance
- Microsoft Defender for Endpoint
- BitLocker Administration
- Endpoint Protection Policies
- Vulnerability Management
- Security Baselines
- Compliance Reporting
Scripting & Automation
- PowerShell Scripting
- Windows Automation Frameworks
- Task Automation
- Operational Reporting Automation
ITSM & Operations
- ServiceNow or other Enterprise ITSM Platforms
- Incident Management
- Change Management
- Problem Management
- Release Management
- Root Cause Analysis (RCA)
- SLA Management
What you’ll need to succeed (required skills)
- 8+ years of experience supporting enterprise Windows environments.
- Strong hands-on expertise in SCCM/MECM administration and Microsoft Intune.
- Experience managing enterprise endpoint deployments, patching, and compliance programs.
- Experience supporting large-scale Windows migration and modernization projects.
- Knowledge of ITIL Service Management practices.
- Experience working within managed services and SLA-driven environments.
- Proven experience supporting enterprise endpoint security initiatives.
Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:
Medical/Dental/Vision/Life Insurance
Paid holidays plus Paid Time Off
401(k) plan and contributions
Long-term/Short-term Disability
Paid Parental Leave
Employee Stock Purchase Plan
Work model:
At Cognizant, we strive to provide flexibility wherever possible, and we are here to support a healthy work-life balance though our various wellbeing programs. Based on this role’s business requirements, this is a hybrid role requiring 3 days a week at client site in Des Moines, IA, USA.
The working arrangements for this role are accurate as of the date of posting. This may change based on the project you’re engaged in, as well as business and client requirements. Rest assured; we will always be clear about role expectations.
We're excited to meet people who share our mission and can make an impact in a variety of ways. Don't hesitate to apply, even if you only meet the minimum requirements listed. Think about your transferable experiences and unique skills that make you stand out as someone who can bring new and exciting things to this role.
Disclaimer: The salary, other compensation, and benefits information is accurate as of the date of this posting. Cognizant reserves the right to modify this information at any time, subject to applicable law.
“Cognizant is an equal opportunity employer. Your application and candidacy will not be considered based on race, color, sex, religion, creed, sexual orientation, gender identity, national origin, disability, genetic information, pregnancy, veteran status or any other characteristic protected by federal, state or local laws.
À propos de Cognizant
Cognizant (NASDAQ : CTSH) est un AI Builder et une entreprise de services numériques (ESN) élaborant des solutions complètes d’IA maximisant les investissements pour des résultats concrets. Sa profonde expertise des métiers, des processus et des technologies lui permet d’intégrer dans les systèmes technologiques le contexte unique de chaque organisation de l’ingénierie à la production à l’échelle. Son objectif : améliorer l’efficacité des équipes, créer de la valeur et permettre aux grandes entreprises de rester performantes dans un monde qui évolue rapidement. Pour en savoir plus : cognizant.ai ou @cognizant.
Renseignments suppplémentaires sur l'emploi
Les informations relatives à la rémunération du poste à pourvoir dépendent de la date de publication de l’offre de poste. Cognizant se réserve le droit de modifier ces informations à tout moment, sous réserve des lois applicables.
Cognizant est un employeur soucieux de l'égalité des chances entre candidats. Votre candidature sera étudiée indépendamment de votre race, couleur, sexe, religion, croyances, orientation sexuelle, identité de genre, origine, handicap, informations génétiques, grossesse, statut d'ancien militaire ou de toute autre critère jugé discriminant par les lois européennes ou françaises.
Vous êtes porteur d'un handicap, vous pouvez-nous contacter par courriel [email protected] si vous souhaitez préciser les aménagements nécessaires pour le poste ou les entretiens à venir.
Les candidats peuvent être invités à participer à des entretiens en face à face ou par vidéoconférence. En outre, les candidats peuvent être amenés à présenter une carte d'identité valide lors de chaque entretien.







