Overview

Endpoint, Policy & Certificate Engineer Jobs in Melbourne, Victoria, Australia at eJAmerica

Title: Endpoint, Policy & Certificate Engineer

Company: eJAmerica

Location: Melbourne, Victoria, Australia

Job Title: Endpoint, Policy & Certificate Engineer

Locations: Melbourne | Perth | Brisbane

Position Overview

We are seeking a highly skilled Endpoint, Policy & Certificate Engineer with deep expertise in modern endpoint management, policy enforcement, and enterprise-grade certificate services. The role focuses on designing, implementing, and optimizing secure endpoint environments using Microsoft Intune, Group Policy Objects (GPO), and Public Key Infrastructure (PKI).

This role requires strong hands-on experience in endpoint security, identity integration, and policy lifecycle management within hybrid and cloud-first environments.

Key Responsibilities

Endpoint Management (Intune)

  • Design, deploy, and manage endpoint configurations using Microsoft Intune
  • Implement device compliance, configuration profiles, and conditional access policies
  • Manage Windows, macOS, iOS, and Android device enrollment and lifecycle
  • Troubleshoot device configuration, application deployment, and compliance issues
  • Optimize endpoint performance, patching, and update management strategies

Policy Management (GPO & MDM Policies)

  • Design and manage Group Policy Objects for enterprise environments
  • Translate traditional GPO settings into modern MDM-based policies (Intune)
  • Maintain policy baselines aligned with security standards (CIS, Microsoft Security Baselines)
  • Perform policy audits, conflict resolution, and optimization
  • Ensure policy enforcement across hybrid environments (on-prem AD + Azure AD/Entra ID)

Certificate & Security Infrastructure (PKI)

  • Administer and maintain Public Key Infrastructure environments
  • Manage certificate lifecycle (issuance, renewal, revocation, expiration)
  • Deploy certificate-based authentication for devices, users, and applications
  • Integrate PKI with Intune for SCEP/PKCS certificate deployment
  • Troubleshoot certificate trust issues and authentication failures

Security & Compliance

  • Implement endpoint security controls including encryption, antivirus, and firewall policies
  • Support Zero Trust architecture initiatives
  • Ensure compliance with enterprise security frameworks and audit requirements
  • Collaborate with security teams for vulnerability management and remediation

Automation & Optimization

  • Develop scripts (PowerShell) for automation of endpoint and policy management
  • Monitor endpoint health and generate reports using Intune and other tools
  • Continuously improve deployment and configuration processes

Collaboration & Stakeholder Management

  • Work closely with infrastructure, security, and cloud teams
  • Provide L3/L4 support and act as SME for endpoint and certificate services
  • Document configurations, SOPs, and knowledge base articles

Required Skills & Experience

  • 5 years of experience in endpoint management and enterprise IT environments
  • Strong hands-on expertise in:
  • Microsoft Intune
  • Group Policy Objects
  • Public Key Infrastructure
  • Experience with Azure AD / Entra ID integration
  • Solid understanding of Windows OS internals and security architecture
  • Experience with certificate services (AD CS, SCEP, PKCS)
  • Strong troubleshooting and analytical skills

Preferred Qualifications

  • Microsoft certifications (e.g., Endpoint Administrator, Security, Identity)
  • Experience with Conditional Access and Zero Trust models
  • Knowledge of scripting (PowerShell, Bash)
  • Exposure to enterprise mobility and security tools

Soft Skills

  • Strong communication and documentation skills
  • Ability to work in cross-functional teams
  • Problem-solving mindset with attention to detail
Upload your CV/resume or any other relevant file. Max. file size: 800 MB.