Intune, EUC & BYOD Security Engineer
iLaunch (Pty) Ltd · Johannesburg
Posted 29 July 2026
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Introduction
12 Month Contract | JHB - Hybrid | Intune, EUC & BYOD Security Engineer to secure and manage the organisation's endpoint environment across corporate and personal devices. The successful candidate will be responsible for Microsoft Intune, SCCM/MECM, Microsoft Defender for Endpoint, device compliance, endpoint hardening, and BYOD security to ensure a secure, compliant, and modern workplace aligned with Zero Trust principles.
Job Description
- Design, implement, and maintain Microsoft Intune policies for Windows, macOS, iOS, Android, and tablet devices.
- Configure and manage compliance policies, configuration profiles, endpoint security policies, and App Protection Policies (MAM).
- Administer SCCM/MECM for software deployment, patch management, configuration management, and co-management with Intune.
- Lead the migration of traditional endpoint management to modern cloud-based Intune management where appropriate.
- Implement and maintain BYOD security controls, including Conditional Access, device registration, App Protection Policies, and MAM/MDM strategies.
- Configure and optimise Microsoft Defender for Endpoint, including EDR, antivirus, Attack Surface Reduction (ASR), firewall, BitLocker encryption, and endpoint hardening.
- Monitor endpoint compliance, patch status, and security posture across corporate and BYOD devices, ensuring timely remediation of non-compliant endpoints.
- Support cyber security incident response by performing endpoint isolation, forensic evidence collection, and remediation activities.
- Produce regular reporting on endpoint compliance, patch levels, security posture, and BYOD adoption for management, audit, and governance teams.
- Collaborate with Identity and Access Management teams to align device compliance with Conditional Access and Zero Trust security controls.
- Work closely with EUC, Service Desk, Infrastructure, and Security Operations teams to continuously improve endpoint security and reduce organisational risk.
- Ensure endpoint security configurations comply with organisational policies, Microsoft best practices, CIS Benchmarks, and regulatory requirements.
Minimum Requirements
- Bachelor's Degree or Diploma in Information Technology, Computer Science, Cyber Security, or a related field.
- Minimum 5 years' experience in Endpoint Security, End User Computing (EUC), or Microsoft Endpoint Management.
- At least 3 years' hands-on experience administering Microsoft Intune in an enterprise environment.
Strong experience with
- Microsoft Intune (Compliance Policies, Configuration Profiles, Endpoint Security, App Protection Policies)
- SCCM/MECM (Microsoft Endpoint Configuration Manager)
- Microsoft Defender for Endpoint (EDR, Antivirus, Attack Surface Reduction)
- Microsoft Entra ID device registration and Hybrid Azure AD Join
- BitLocker encryption and Windows security baselines
- BYOD security using Mobile Application Management (MAM) and Mobile Device Management (MDM)
- Endpoint patch management, software deployment, and device lifecycle management
- Knowledge of Zero Trust security principles and endpoint security best practices.
- Experience implementing CIS Benchmarks and Microsoft Security Baselines
Package & Remuneration
Salary Market Related