What are the responsibilities and job description for the Senior Endpoint Engineer (Applications) position at The AES Corporation?
You Are Perfect for This Position If You Have:
End-to-End Ownership Mentality – You think beyond “device management” and take ownership of the full digital workplace experience. Modern Endpoint Mindset – You understand how Intune, Conditional Access, app protection, and identity all work together. Engineering Operations Balance – You can handle escalations while also building scalable, long-term solutions. Curiosity & Initiative – You don’t just fix issues, you improve systems.
What You’ll Do
As a Senior System Engineer, you will play a key role in shaping and supporting our modern endpoint environment:
🔹 Endpoint & Intune Engineering
Administer and enhance our Microsoft Intune environment across Windows, iOS, and Android
Design and support
Device configuration and compliance policies
App Protection Policies (MAM)
Conditional Access integrations and enforcement
Support device enrollment strategies, including corporate and BYOD scenarios
Drive improvements in endpoint security posture aligned with data protection initiatives
🔹 Tier 3 Support & Troubleshooting
Act as a Tier 3 escalation point for complex endpoint, identity, and application issues
Troubleshoot across:
Device compliance and access issues
Intune policy conflicts and deployment failures
Authentication and Conditional Access challenges
Application behavior across managed devices and VDI
Perform root cause analysis and implement long-term fixes, not just workarounds
🔹 Application Packaging & Delivery
Package and deploy applications across:
Intune (Win32, MAM, mobile apps)
VMware App Volumes (VDI delivery)
Evaluate new software requests and align delivery methods with security and architecture standards
🔹 VDI (User Experience Focus)
Support the user-facing side of our VMware Horizon environment:
Optimize FSLogix profiles and App Volumes
Troubleshoot login performance, profile issues, and session experience
Partner with infrastructure teams who manage the backend platform
🔹 Automation & Optimization
Develop PowerShell scripts and automation for:
Endpoint management tasks
Reporting and remediation
Environment standardization
Identify trends and drive proactive improvements across the environment
🔹 Security & Compliance Alignment
Support initiatives around:
Data loss prevention (DLP)
Secure access and endpoint hardening
Integration with Microsoft security tools and policies
Ensure endpoints align with organizational security and compliance standards
What You’ll Need
5 years in Endpoint Engineering / EUC / Desktop Engineering
Strong hands-on experience with: Microsoft Intune – required; conditional Access and Endpoint security integration; Windows 11 management in enterprise environments
Experience with: application packaging (Intune Win32, SCCM, or similar); Tier 3 endpoint troubleshooting
VDI experience, including: VMware Horizon (user/session side); FSLogix (required); App Volumes (required); Scripting experience (PowerShell) for automation and remediation
Working knowledge of: Azure AD / Entra ID concepts; Microsoft 365 apps (especially in managed or VDI environments)
Nice to Have
Experience with:
Intune SCCM co-management
Mobile platform management (iOS/Android work profiles)
Endpoint analytics or advanced reporting
Exposure to:
Azure Virtual Desktop (AVD) or RDS
Microsoft security ecosystem (Defender, Purview, etc.)