Overview
Endpoint, Policy & Certificate Engineer Jobs in Melbourne, Victoria, Australia at eJAmerica
Title: Endpoint, Policy & Certificate Engineer
Company: eJAmerica
Location: Melbourne, Victoria, Australia
Job Title: Endpoint, Policy & Certificate Engineer
Locations: Melbourne | Perth | Brisbane
Position Overview
We are seeking a highly skilled Endpoint, Policy & Certificate Engineer with deep expertise in modern endpoint management, policy enforcement, and enterprise-grade certificate services. The role focuses on designing, implementing, and optimizing secure endpoint environments using Microsoft Intune, Group Policy Objects (GPO), and Public Key Infrastructure (PKI).
This role requires strong hands-on experience in endpoint security, identity integration, and policy lifecycle management within hybrid and cloud-first environments.
Key Responsibilities
Endpoint Management (Intune)
- Design, deploy, and manage endpoint configurations using Microsoft Intune
- Implement device compliance, configuration profiles, and conditional access policies
- Manage Windows, macOS, iOS, and Android device enrollment and lifecycle
- Troubleshoot device configuration, application deployment, and compliance issues
- Optimize endpoint performance, patching, and update management strategies
Policy Management (GPO & MDM Policies)
- Design and manage Group Policy Objects for enterprise environments
- Translate traditional GPO settings into modern MDM-based policies (Intune)
- Maintain policy baselines aligned with security standards (CIS, Microsoft Security Baselines)
- Perform policy audits, conflict resolution, and optimization
- Ensure policy enforcement across hybrid environments (on-prem AD + Azure AD/Entra ID)
Certificate & Security Infrastructure (PKI)
- Administer and maintain Public Key Infrastructure environments
- Manage certificate lifecycle (issuance, renewal, revocation, expiration)
- Deploy certificate-based authentication for devices, users, and applications
- Integrate PKI with Intune for SCEP/PKCS certificate deployment
- Troubleshoot certificate trust issues and authentication failures
Security & Compliance
- Implement endpoint security controls including encryption, antivirus, and firewall policies
- Support Zero Trust architecture initiatives
- Ensure compliance with enterprise security frameworks and audit requirements
- Collaborate with security teams for vulnerability management and remediation
Automation & Optimization
- Develop scripts (PowerShell) for automation of endpoint and policy management
- Monitor endpoint health and generate reports using Intune and other tools
- Continuously improve deployment and configuration processes
Collaboration & Stakeholder Management
- Work closely with infrastructure, security, and cloud teams
- Provide L3/L4 support and act as SME for endpoint and certificate services
- Document configurations, SOPs, and knowledge base articles
Required Skills & Experience
- 5 years of experience in endpoint management and enterprise IT environments
- Strong hands-on expertise in:
- Microsoft Intune
- Group Policy Objects
- Public Key Infrastructure
- Experience with Azure AD / Entra ID integration
- Solid understanding of Windows OS internals and security architecture
- Experience with certificate services (AD CS, SCEP, PKCS)
- Strong troubleshooting and analytical skills
Preferred Qualifications
- Microsoft certifications (e.g., Endpoint Administrator, Security, Identity)
- Experience with Conditional Access and Zero Trust models
- Knowledge of scripting (PowerShell, Bash)
- Exposure to enterprise mobility and security tools
Soft Skills
- Strong communication and documentation skills
- Ability to work in cross-functional teams
- Problem-solving mindset with attention to detail