Excellent Opportunity to explore immediately MNC Client
We are seeking a highly motivated Intune Architect to design, implement, and govern modern endpoint, application, and access security across Microsoft Intune, Entra ID, and Microsoft 365.
This role is responsible for architecting app protection, device compliance, Conditional Access, and secure access controls, ensuring that only trusted users, apps, and managed devices can access corporate dataacross physical, virtual, and cloud desktops.
Key Responsibilities :
Intune Architecture & Endpoint Security :
- Act as Architect and SME for Microsoft Intune across device and application management.
- Design and implement application protection policies (MAM/MAM-WE) for enterprise workloads.
- Design device compliance and health checks for Office 365 access.
- Implement and manage all endpoint and app-related policies in Intune and Microsoft 365.
Application, Browser & Data Protection :
- Roll out browser and application protection policies (Edge, mobile apps, managed apps) to applicable user groups.
- Enforce secure access to corporate data using app-level controls and device-based trust.
- Close security control gaps across :
- App Virtualization solutions
- Virtual Desktop / AVD / VDI environments
Identity & Access Integration (with Entra ID) :
- Design Conditional Access policies tightly integrated with Intune device state and app protection.
- Implement Entra IDbased controls to restrict privileged access and sensitive data to managed and compliant devices.
- Build and enforce controls using Entra ID and Defender for Cloud Apps.
- Enable phishing-resistant MFA and Continuous Access Evaluation (CAE) for internal and external users.
Cloud & Virtual Desktop Security :
- Evaluate Windows 365 (W365) fitment from an endpoint, identity, and security perspective.
- Ensure secure device and app access in hybrid, cloud-only, and virtual desktop scenarios.
Governance & Best Practices :
- Support Entra Application Registration governance from a device and access control perspective.
- Drive adoption of overall Entra ID and Office 365 security best practices.
- Continuously review and enhance endpoint and access security posture.
Required Skills & Expertise :
Core Technical Skills :
- Strong hands-on experience as an Intune Architect / Senior Intune SME.
- Expertise in :
a. Intune App Protection Policies (MAM)
b. Device Compliance & Configuration Profiles
c. Conditional Access integrated with Intune
- Solid experience with Entra ID security management and identity-device integration.
- Hands-on knowledge of Defender for Cloud Apps controls.
- Strong understanding of endpoint security, Zero Trust, and least-privilege access principles.
Soft Skills :
- Highly motivated, proactive, and self-driven.
- Strong communication skills to work with security, infrastructure, and business stakeholders.
- Ability to design and implement solutions end-to-end with minimal supervision.