# Windows Client Engineer

**Company:** [Avacone](null/companies/kvak1oQzkZ4HB1vYKYku9o.md)
**Location:** Basel, Switzerland
**Workplace:** on site
**Employment type:** Full-time
**Department:** Switzerland

[Apply for this job](null/view/e9e9d516-7ba6-41ed-85bc-6bc2e4de86c3)

## Description

### About the Role

We are looking for a Windows Client Engineer to help manage, secure, and continuously improve our Windows endpoint environment. You will collaborate with infrastructure, security, and service desk teams to deliver a reliable and efficient digital workplace.

The scope of responsibilities will be aligned with your experience and strengths, with opportunities to contribute across endpoint management, automation, and workplace modernisation.

###   
Key Responsibilities

-   Configure, deploy, maintain, and optimise Windows client operating systems and endpoint configurations.
-   Manage devices using Microsoft Intune, Microsoft Configuration Manager, and related endpoint management solutions.
-   Support automated device provisioning and lifecycle management, including Windows Autopilot.
-   Package, test, deploy, and update business applications.
-   Manage operating system updates, security patches, and feature upgrades.
-   Implement and maintain endpoint security policies in collaboration with the security team.
-   Administer device policies through Microsoft Intune and Group Policy.
-   Troubleshoot issues related to client performance, applications, authentication, and connectivity.
-   Automate recurring administrative tasks using PowerShell.
-   Support integration with Microsoft Entra ID, Active Directory, and Microsoft 365 services.
-   Maintain technical documentation, configuration standards, and operational procedures.
-   Collaborate with the service desk and application owners to resolve escalated issues and improve the user experience.

## Requirements

### Required Skills and Experience

-   Practical experience with Windows client administration or endpoint engineering in an enterprise environment.
-   Working knowledge of Microsoft Intune, Microsoft Configuration Manager, or comparable endpoint management tools.
-   Understanding of application deployment, patch management, and device lifecycle management.
-   Familiarity with Active Directory, Microsoft Entra ID, and Group Policy.
-   Experience with PowerShell scripting and automation.
-   Understanding of endpoint security, encryption, access controls, and device compliance.
-   Familiarity with networking fundamentals, including DNS, DHCP, VPN, and TCP/IP.
-   A structured approach to troubleshooting and a service-oriented mindset.
-   Ability to collaborate across technical teams and maintain clear documentation.
-   Good written and spoken English.

###   
Preferred Qualifications

-   Experience with Windows Autopilot and modern endpoint management.
-   Familiarity with co-management and migration from traditional to cloud-based device management.
-   Experience with Microsoft Defender for Endpoint, BitLocker, and endpoint security baselines.
-   Knowledge of application packaging technologies such as MSI and MSIX.
-   Exposure to virtual desktop environments, including Azure Virtual Desktop or Windows 365.
-   Experience supporting Microsoft 365 applications and services.
-   Relevant Microsoft certifications are an advantage.
