高级现代办公环境工程师
Senior Modern Workplace Engineer
你是否在寻找一个能激发和挑战你的角色?你是否准备好迎接成长的机会?你是否希望加入一个团队,大家齐心协力解决难题,并通过卓越的团队合作为客户带来突破性的体验?如果你对这些问题的回答是肯定的,那么3Cloud可能正适合你!
在3Cloud,我们招聘那些不怕尝试或失败的人。我们招聘那些愿意向经理、领导和团队成员提供直接且坦率反馈的人。我们招聘那些积极抓住机会的人,因为他们关心我们的集体成长和成功。我们招聘那些会互相挑战并为践行3Cloud的核心价值观而相互负责的人,因为他们知道这将为我们客户和彼此带来出色的体验和解决方案。
高级工程师是一个亲自动手的现代职场工程师,负责构建、配置和支持基于微软365和微软Intune的解决方案,重点在于端点管理、身份集成和符合零信任原则的控制措施。该职位执行范围内的工程工作,排查复杂问题和升级情况,并通过文档和操作手册为运营准备做出贡献。该职位在技术主管/架构师的指导下工作(不承担直接的技术领导职责)
主要职责:
- 工程与升级支持:负责处理微软365和Intune相关问题的高级排查(注册、合规性、应用部署、条件访问影响、端点安全策略冲突)。进行根本原因分析,记录发现,并在变更控制下实施纠正措施。
- 协作与交接:与岸上主管/架构师、安全、身份、消息协作和网络团队紧密合作,执行分配的工作包。提供清晰的状态更新,验证依赖项,并确保顺利交接给运营和支持团队。
- 项目交付(执行重点):根据项目计划交付范围内的工程任务(策略实施、测试、试点支持、修复和部署活动)。跟踪工作项,尽早提出风险,并支持切换和部署后稳定化以满足SLA和项目里程碑。
- 微软365 / Intune配置:根据定义的标准配置和维护微软Intune及核心M365服务,包括Entra ID集成、条件访问等。
查看英文原文
Are you looking for a role that motivates and challenges you? Are you ready for an opportunity for growth? Do you want to work on teams where people roll up their sleeves to take on tough problems together, and regularly blow the doors off our clients with their outstanding teamwork? If you answered yes to those questions, 3Cloud might just be for you!
At 3Cloud, we hire people who aren’t afraid to experiment or fail. We hire people who are willing to give direct and candid feedback to their managers, leaders, and team members. We hire people who jump at those opportunities because they care about our collective growth and success. We hire people who challenge and hold each other accountable for living 3Cloud’s core values because they know that it will result in amazing experiences and solutions for our clients and each other.
The Senior Engineer is a hands-on modern workplace engineer responsible for building, configuring, and supporting Microsoft 365 and Microsoft Intune solutions with a strong emphasis on endpoint management, identity integration, and Zero Trust-aligned controls. This role executes scoped engineering work, troubleshoots complex issues and escalations, and contributes to operational readiness through documentation and runbooks. The position works under the direction of technical leads/architects (no direct technical leadership responsibilities)
Key Responsibilities:
- Engineering & Escalation Support: Own advanced troubleshooting for Microsoft 365 and Intune issues (enrollment, compliance, app deployment, Conditional Access impact, endpoint security policy conflicts). Perform root cause analysis, document findings, and implement corrective actions under change control.
- Collaboration & Handoffs: Work closely with onshore leads/architects, security, identity, messaging/collaboration, and networking teams to execute assigned work packages. Provide clear status updates, validate dependencies, and ensure smooth handoffs to operations and support teams.
- Project Delivery (Execution Focus): Deliver scoped engineering tasks aligned to project plans (policy implementation, testing, pilot support, remediation, and deployment activities). Track work items, raise risks early, and support cutovers and post-deployment stabilization to meet SLAs and project milestones.
- Microsoft 365 / Intune Configuration: Configure and support Microsoft Intune and core M365 services based on defined standards, including Entra ID integration, Conditional Access configurations, device enrollment (Windows Autopilot, ADE/DEP, Android Enterprise), compliance policies, configuration profiles, app deployment (Win32/LOB/store), Windows Update for Business, and lifecycle operations. Validate policy design through testing and assist with operational transition.
- Endpoint Security Controls: Implement and maintain endpoint security configurations including Intune security baselines, Microsoft Defender for Endpoint onboarding/configuration support, ASR rules, BitLocker/FileVault policies, local admin controls, and remediation of security findings. Assist with evidence gathering for audits and support incident response activities as needed.
- Documentation & Continuous Improvement: Create and maintain runbooks, SOPs, troubleshooting guides, and knowledge articles. Identify recurring issues and propose automation/standardization opportunities (PowerShell, Microsoft Graph) to improve reliability and reduce manual effort.
Required Qualifications:
- Experience: 6+ years in IT, with 3+ years focused on Microsoft 365 and/or endpoint management. Demonstrated experience supporting production environments, handling escalations, and executing project work with minimal supervision.
- Microsoft 365 / Endpoint Expertise: Strong hands-on administration experience with Microsoft 365 and Intune, including Entra ID, Conditional Access fundamentals, Intune device/app management, and M365 service operations (service health, incident management, and change control). Working knowledge of Exchange Online, Teams, SharePoint/OneDrive administration and common end-user issues.
- Modern Endpoint Management: Experience managing Windows (primary), and familiarity with macOS, iOS/iPadOS, and Android at scale. Hands-on work with Autopilot, configuration profiles, compliance policies, app packaging/deployment (Win32, LOB, store apps), and patch/update strategies (Windows Update for Business). Experience with troubleshooting enrollment and policy/app conflicts.
- Security & Compliance Knowledge: Practical experience implementing or supporting endpoint security controls (Defender for Endpoint, Intune endpoint security, BitLocker, ASR) and understanding of Zero Trust concepts (identity/device conditional access, least privilege). Ability to support audit requests and remediation activities in regulated environments.
- Automation & Scripting: Working PowerShell skills and familiarity with Microsoft Graph for reporting, bulk changes, and operational automation. Ability to read/modify scripts, troubleshoot failures, and follow secure coding practices.
- Soft Skills: Strong troubleshooting mindset, attention to detail, and clear written/verbal communication. Ability to document work thoroughly, collaborate across time zones, and manage multiple tickets/tasks while meeting SLAs.
- Certifications: Microsoft certifications are preferred. Examples: MD-102 (Endpoint Administrator), MS-102 (Microsoft 365 Administrator), SC-300 (Identity and Access Administrator).
Preferred Qualifications:
- Advanced Troubleshooting & Platform Experience: Experience supporting hybrid identity and device environments (on-prem AD, Entra ID, Microsoft 365), including device registration (Entra join/hybrid join), SSO issues, and authentication troubleshooting. Exposure to logging/monitoring tools (e.g., Azure Monitor/Log Analytics) is a plus.
- Endpoint Ecosystem Familiarity: Familiarity with third-party endpoint/security tooling (e.g., Jamf, Workspace ONE, Ivanti, Okta, Duo, CrowdStrike) and how it integrates with Microsoft 365 and Intune environments.
- ITSM / Operations: Experience working within ITIL-aligned processes, including incident/problem management, change management, and using tools such as ServiceNow or similar ticketing platforms.
- Consulting / Microsoft Partner Experience: Prior consulting experience is a plus, particularly supporting delivery teams with implementation work, documentation, and support transition for M365/Intune engagements.
Full-time employment
📌 Remote in Philippines
Don’t meet every single requirement? At 3Cloud we are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyway.
At this time, we cannot sponsor applicants for work visas.