Company Profile:
Founded in 1976, CGI is among the largest independent IT and business consulting services firms in the world. With 94,000 consultants and professionals across the globe, CGI delivers an end-to-end portfolio of capabilities, from strategic IT and business consulting to systems integration, managed IT and business process services and intellectual property solutions. CGI works with clients through a local relationship model complemented by a global delivery network that helps clients digitally transform their organizations and accelerate results. CGI Fiscal 2024 reported revenue is CA$14.68 billion and CGI shares are listed on the TSX (GIB.A) and the NYSE (GIB). Learn more at cgi.com.
Job Title: SCCM Admin
Position: SE
Experience: 3-4 years
Category: Software Development/ Engineering
Shift: Canada Shift – EST (5:30 PM to 2:30 AM IST)
Main location: Bangalore
Position ID: J1025-0906
Employment Type: Full Time
Education Qualification: Bachelor's degree in Computer Science or related field or higher with minimum 3 years of relevant experience.
Job Summary
We are seeking an experienced SCCM & Intune Administrator with strong expertise in Windows endpoint management, patching, and vulnerability remediation. This role is responsible for maintaining the SCCM and Intune infrastructure, managing Windows devices, performing application and patch deployments, and working closely with security teams to remediate vulnerabilities across the environment.
________________________________________
Key Responsibilities
SCCM/MECM Administration
- Manage and maintain the SCCM infrastructure (site servers, DPs, MPs).
- Create and enhance OSD task sequences, Windows images, and deployment workflows.
- Package and deploy Win32/MSI applications, software updates, and feature upgrades.
- Monitor SCCM client health, deployment success, and logs for troubleshooting.
- Manage collections, boundaries, ADRs, and compliance baselines.
________________________________________
Intune (Windows Endpoint Management)
- Manage Windows devices using modern management capabilities including:
o Windows Autopilot provisioning and enrollment
o Configuration Profiles for Windows security and hardening
o Compliance Policies for endpoint posture
o Win32 application deployments
o Windows Update for Business (WUfB) rings and feature update management
- Support co-management workloads between SCCM and Intune.
- Implement Endpoint Security policies (BitLocker, AV, Firewall, ASR rules).
________________________________________
Vulnerability Management & Patching
- Coordinate with the security team to interpret vulnerability scan results (e.g., Qualys, Tenable, Rapid7).
- Prioritize remediation based on CVSS scores, exploitability, and business impact.
- Plan and execute monthly and out-of-band patch deployments using SCCM and/or WUfB.
- Track and resolve patching failures; ensure high compliance levels.
- Deploy configuration baselines to remediate OS-level weaknesses.
- Report vulnerability remediation progress and compliance to leadership.
- Address zero-day vulnerabilities with accelerated patching strategies.
________________________________________
Automation & Scripting
- Create and maintain PowerShell scripts for automation, reporting, and configuration changes.
- Automate repetitive tasks such as application packaging, dashboard creation, and device configuration.
________________________________________
Monitoring & Reporting
- Build and maintain dashboards and reports using:
o SCCM reporting/SSRS
o Power BI
o SQL queries
o Intune analytics
- Provide weekly/monthly reports on:
o Patch compliance
o Vulnerability remediation status
o Device health and security posture
________________________________________
Collaboration & Support
- Serve as a Tier 2/3 escalation point for Windows endpoint issues.
- Collaborate with security, operations, infrastructure, and service desk teams.
- Document procedures, deployments, and endpoint configurations.
________________________________________
Required Qualifications
- 3–7 years of hands-on experience administering SCCM/MECM and Intune for Windows endpoints.
- Strong knowledge of:
o Windows Autopilot
o Windows Update for Business (WUfB)
o Win32 app packaging & deployment
o Compliance & configuration profiles
o SCCM application and patch deployment
- Experience working with vulnerability management tools (Qualys, Tenable, Rapid7, etc.).
- Strong PowerShell scripting skills.
- Good understanding of Azure AD, AD DS, Group Policy, and Windows architecture.
Life at CGI:
It is rooted in ownership, teamwork, respect and belonging. Here, you’ll reach your full potential because…
You are invited to be an owner from day 1 as we work together to bring our Dream to life. That’s why we call ourselves CGI Partners rather than employees. We benefit from our collective success and actively shape our company’s strategy and direction
Your work creates value. You’ll develop innovative solutions and build relationships with teammates and clients while accessing global capabilities to scale your ideas, embrace new opportunities, and benefit from expansive industry and technology expertise
You’ll shape your career by joining a company built to grow and last. You’ll be supported by leaders who care about your health and well-being and provide you with opportunities to deepen your skills and broaden your horizons
Come join our team, one of the largest IT and business consulting services firms in the world