Key Responsibilities:
Deployment Engineering (OSD): Architect and govern zero-touch Operating System Deployment (OSD) task sequences. Manage the lifecycle of boot images and driver packages to support a diverse hardware environment.
Automated Patching (ADRs): Design and maintain Automatic Deployment Rules (ADRs) within SCCM/MECM to ensure a consistent, phased roll-out of Windows updates and security patches across all environments.
Third-Party Patch Management: Manage and automate the deployment of third-party application updates (e.g., Chrome, Adobe, etc.) using enterprise-level patching tools to ensure a closed-loop remediation process.
Security Analysis & Reporting: Regularly review and analyze vulnerability reports and security compliance data. Identify trends in endpoint health and develop actionable plans to address gaps in the security posture.
Modern Management Integration: Support the transition to modern provisioning workflows using Microsoft Intune and Windows Autopilot, ensuring co-management stability.
Vulnerability Remediation: Interpret findings from security scanning platforms to build and deploy targeted remediation scripts (PowerShell) and configuration changes.
Endpoint Health & Automation: Utilize PowerShell and WQL to automate collection management and build custom reports that track deployment success and security compliance.