Intune / Endpoint Security Specialist

ITFS Sp. z o.o.nofluffjobspublished 09/11/2026
Must-have:SecuritySenior
Machine translation — original language: Polish.Show original

POSITION: Intune / Endpoint Security Specialist

Work location: 100% remote

Start: ASAP

Cooperation form: B2B with ITFS

Rate: 160-200 PLN/h + VAT

Recruitment process: Short phone call with an ITFS recruiter -> Technical interview -> Interview with the Client -> Decision

Daily tasks

  • Mapping requirements and CIS Benchmarks controls to Microsoft Intune configurations and policies,
  • Reviewing and assessing Windows 11 and Microsoft Intune architecture,
  • Designing security configurations and policies for endpoints,
  • Preparing deployment strategies, including deployment and rollback plans,
  • Technical verification and assurance of configurations and built Microsoft Intune policies,
  • Implementing security policies and configurations on endpoints,
  • Troubleshooting, validation, and analysis of issues related to deployments,
  • Planning and executing deployments in a ring-based deployment model,
  • Managing rollouts and monitoring deployment progress,
  • Monitoring device compliance and preparing reports,
  • Conducting validation activities regarding Microsoft Intune and Tanium,
  • Preparing documentation and evidence confirming the fulfillment of security requirements,
  • Tracking security remediation activities and their implementation status,
  • Collaborating with Security, Endpoint Management, Infrastructure, and Compliance teams.

Requirements

Professional experience at Senior or strong Mid level,

Practical, commercial experience with Microsoft Intune,

Very good knowledge of endpoint management in a Windows 11 environment,

Experience in designing and implementing endpoint security baselines,

Knowledge of CIS Benchmarks and the ability to translate security requirements into endpoint configurations,

Experience in the field of endpoint security architecture,

Knowledge of device compliance, monitoring, and reporting mechanisms,

Experience with large-scale, mass endpoint deployments,

Experience in implementing security remediation programs,

Ability to design, implement, and validate security policies in Microsoft Intune,

Experience in managing phased deployments, including ring-based deployments,

Ability to analyze problems, troubleshoot, and validate configurations after deployment,

Experience working with documentation and evidence in security and compliance processes,

English language proficiency at a minimum of C1 level.

Nice to have:

Knowledge of Tanium and experience in using it for endpoint management or validation,

Experience in the field of Microsoft 365 Endpoint Management,

Experience working in large enterprise environments,

Knowledge of additional standards and security frameworks,

Experience in collaborating with Security, Compliance, and Infrastructure teams.

Must have: Microsoft Intune, Windows Server, CIS Benchmarks

Nice to have: Tanium, Microsoft 365 Endpoint Management