- Location
- Sydney, International House, 3 Sussex St, Australia · Brisbane, 10 Eagle Street · Canberra, 65 Canberra Avenue Bldg · Melbourne, 161 Collins Street, Level 5 · Perth, Exchange Tower
- Workplace
- Remote, Hybrid
- Type
- Full-time
- Department
- Engineering
- Seniority
- Senior
- Experience
- 5+ years
- Source
- Workday
Description
Summary
Avanade is seeking a senior Modern Workplace engineer and architect to help clients modernise, secure and transform endpoint and virtual desktop environments using Microsoft technologies. The role spans hands-on delivery, solution architecture, presales support, customer presentations and large-scale workplace transformation across enterprise, government and regulated industry clients.
The role requires strong experience across Microsoft Intune, Microsoft Configuration Manager / SCCM, Windows 11, Windows Autopilot, Azure Virtual Desktop, Windows 365, Microsoft Entra ID, endpoint security, application deployment and supporting identity, network and security services.
What you will do
Solution architecture and presales: Support solution shaping, discovery, estimation, proposal inputs, architecture narratives and customer presentations for endpoint management, virtual desktop and workplace transformation opportunities.
Endpoint management delivery: Design, implement and optimise Microsoft Intune, Configuration Manager / SCCM, Windows Autopilot, Windows 11 SOE, update management, compliance and endpoint security configurations.
Virtual desktop and Cloud PC: Design and support Azure Virtual Desktop and Windows 365 solutions, including image strategy, provisioning, user assignment, application delivery and operational considerations.
Transformation programs: Lead or support endpoint workstreams for large workplace programs, including mergers, acquisitions, divestments, tenant or domain change, device migration, coexistence and cutover planning.
Hybrid and cloud-only environments: Support clients moving from legacy, domain-joined, hybrid and co-managed environments to modern, cloud-managed and Microsoft Entra joined operating models.
Security and compliance: Implement endpoint security controls using Microsoft Defender for Endpoint, Intune endpoint security, Conditional Access, security baselines, BitLocker, application control and compliance policies.
Dependency management: Work across identity, network, cyber security, application, service desk and operations teams to understand and manage dependencies such as certificates, DNS, proxy, VPN / ZTNA, firewall rules and logging.
Documentation and handover: Produce architecture, build, migration, test, runbook and support documentation, and transition solutions into customer operations or managed services.
.
Skills and experience
Strong hands-on experience with Microsoft Intune, Microsoft Configuration Manager / SCCM, Windows Autopilot, Windows 11 SOE, endpoint compliance, patching and device lifecycle management.
Experience with Azure Virtual Desktop and/or Windows 365, including image, provisioning, profile, application delivery and operational support patterns.
Strong understanding of Microsoft Entra ID, device identity states, Conditional Access, hybrid join, Microsoft Entra join, identity governance and access integration with endpoint security.
Experience with Microsoft Defender for Endpoint, endpoint security baselines, compliance policies, BitLocker, attack surface reduction, application control and endpoint monitoring.
Experience delivering workplace modernisation, Windows 11 rollout, VDI transition, endpoint migration, application deployment or cloud management adoption programs.
Ability to engage directly with customers, facilitate workshops, present recommendations and explain technical trade-offs to business, technical, security and executive stakeholders.
Ability to produce clear technical documentation, solution designs, migration plans, deployment playbooks, operational runbooks and transition artefacts.
Practical PowerShell and automation experience is highly desirable.
Preferred qualifications and experience
Minimum 5+ years’ experience delivering modern endpoint management, Windows engineering, Intune, SCCM / MECM, virtual desktop, Windows 365, AVD, application packaging or endpoint security solutions.
Consulting or professional services experience with enterprise, government or regulated industry clients.
Exposure to managed services, operational support models and transition-to-run activities.
Microsoft Modern Workplace, Endpoint Administrator, Azure or Security certifications are desirable.
Australian Citizenship required due to client and project requirements; existing security clearance is highly regarded.
About you
You are comfortable moving between architecture, hands-on engineering, presales and customer-facing consulting.
You can simplify complex endpoint, identity, network and security dependencies for mixed stakeholder groups.
You bring strong troubleshooting, documentation, delivery discipline and a pragmatic approach to customer outcomes.
You stay current with Microsoft Modern Workplace, endpoint management, AVD, Windows 365, Windows 11, identity and security roadmap capabilities.
.