Bilingual Senior Specialist, Endpoint & Device Management
Canada Mortgage and Housing Corporation
- Montreal, QC
- $104,180-130,225 per year
- Permanent
- Full-time
- Annual Paid vacation.
- Annual individual performance incentive.
- Defined benefit pension plan.
- Comprehensive group insurance plan to support your well-being from day one.
- Support towards your personal and professional growth with training, mentorship and more.
- An inclusive workplace culture and environment.
- While positions at CMHC require some in-office presence, alternative work arrangements may be considered for Indigenous candidates.
- Own and govern the Microsoft Intune MDM (Mobile Device Management) platform, including their architecture, standards, configuration, lifecycle strategy, and roadmap.
- Design and manage the end to end device lifecycle for Windows, iOS, Android, and hybrid devices from onboarding and their policy enforcement to secure decommissioning.
- Define and implement device configurations, compliance policies, security baselines, and endpoint hardening aligned with Zero Trust and regulatory requirements.
- Package, deploy, and maintain enterprise and line of business applications, ensuring reliable, automated, and auditable delivery and patching.
- Lead automation and zero touch provisioning initiatives using Intune capabilities and scripting (e.g., PowerShell) to improve scalability and efficiency.
- Collaborate closely with Cyber Security and Infrastructure teams to translate security and architectural requirements into enforceable technical controls.
- Operate the MDM platform in line with ITSM (Information Technology Service Management) best practices, proactively addressing technical debt, operational risk, and continuous improvement opportunities.
- Develop and maintain technical documentation, standards, and operating procedures, supporting audit readiness and knowledge transfer across teams.
- A bachelor's degree in Computer Science, Information Systems, or a related field. An equivalent combination of education and experience.
- A minimum 7 years of experience in endpoint engineering, Modern Workplace, or Mobile Device Management (MDM), with ownership of enterprise scale device platforms.
- Expertise in Microsoft Intune, including architecture design, compliance and configuration strategies, security baselines, conditional access, and lifecycle management for Windows, iOS, and Android.
- Proven experience acting as a technical authority or platform owner, setting standards, making design decisions, and defining endpoint management direction.
- Strong background in endpoint security and compliance, including patching, vulnerability remediation, and device/application lifecycle management in regulated environments.
- Advanced skills in automation and scripting (e.g., PowerShell), with a strong ability to partner with Cyber Security and Infrastructure teams and support audits, risk remediation, and continuous improvement.
- Bilinguism (French and English) oral and written.
- Microsoft Intune & Endpoint Management: Windows, iOS, and Android device configuration, compliance, and lifecycle management.
- Endpoint Security: Security baselines, Conditional Access, patching, and vulnerability remediation.
- Automation & Deployment: PowerShell scripting, zero touch provisioning, and application deployment via Intune.
- Microsoft certifications (e.g., Endpoint Administrator - MD 102, MS 900).
- ITIL Foundation or equivalent ITSM training.
- Experience implementing zero-touch provisioning and automation for endpoints.