Intune, EUC & BYOD Security Engineer

iLaunch (Pty) Ltd · Johannesburg

Posted 29 July 2026

Stop applying one at a time.

JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.

Start free — we apply for you →

Introduction

12 Month Contract | JHB - Hybrid | Intune, EUC & BYOD Security Engineer to secure and manage the organisation's endpoint environment across corporate and personal devices. The successful candidate will be responsible for Microsoft Intune, SCCM/MECM, Microsoft Defender for Endpoint, device compliance, endpoint hardening, and BYOD security to ensure a secure, compliant, and modern workplace aligned with Zero Trust principles.

Job Description

  • Design, implement, and maintain Microsoft Intune policies for Windows, macOS, iOS, Android, and tablet devices.
  • Configure and manage compliance policies, configuration profiles, endpoint security policies, and App Protection Policies (MAM).
  • Administer SCCM/MECM for software deployment, patch management, configuration management, and co-management with Intune.
  • Lead the migration of traditional endpoint management to modern cloud-based Intune management where appropriate.
  • Implement and maintain BYOD security controls, including Conditional Access, device registration, App Protection Policies, and MAM/MDM strategies.
  • Configure and optimise Microsoft Defender for Endpoint, including EDR, antivirus, Attack Surface Reduction (ASR), firewall, BitLocker encryption, and endpoint hardening.
  • Monitor endpoint compliance, patch status, and security posture across corporate and BYOD devices, ensuring timely remediation of non-compliant endpoints.
  • Support cyber security incident response by performing endpoint isolation, forensic evidence collection, and remediation activities.
  • Produce regular reporting on endpoint compliance, patch levels, security posture, and BYOD adoption for management, audit, and governance teams.
  • Collaborate with Identity and Access Management teams to align device compliance with Conditional Access and Zero Trust security controls.
  • Work closely with EUC, Service Desk, Infrastructure, and Security Operations teams to continuously improve endpoint security and reduce organisational risk.
  • Ensure endpoint security configurations comply with organisational policies, Microsoft best practices, CIS Benchmarks, and regulatory requirements.

Minimum Requirements

  • Bachelor's Degree or Diploma in Information Technology, Computer Science, Cyber Security, or a related field.
  • Minimum 5 years' experience in Endpoint Security, End User Computing (EUC), or Microsoft Endpoint Management.
  • At least 3 years' hands-on experience administering Microsoft Intune in an enterprise environment.

Strong experience with

  • Microsoft Intune (Compliance Policies, Configuration Profiles, Endpoint Security, App Protection Policies)
  • SCCM/MECM (Microsoft Endpoint Configuration Manager)
  • Microsoft Defender for Endpoint (EDR, Antivirus, Attack Surface Reduction)
  • Microsoft Entra ID device registration and Hybrid Azure AD Join
  • BitLocker encryption and Windows security baselines
  • BYOD security using Mobile Application Management (MAM) and Mobile Device Management (MDM)
  • Endpoint patch management, software deployment, and device lifecycle management
  • Knowledge of Zero Trust security principles and endpoint security best practices.
  • Experience implementing CIS Benchmarks and Microsoft Security Baselines

Package & Remuneration

Salary Market Related

Auto-apply to this jobView original posting ↗