Endpoint Network & Security Engineer - MasTec Network Solutions - King of Prussia, PA
Endpoint management across Windows, iOS, and Android — MDM administration, patch management, app deployment, policy management, and endpoint security across a 14,000+ device enterprise environment
- Designed, implemented, and maintained scalable and secure endpoint management solutions across 14,000+ Windows, iOS, and Android devices — administered Microsoft Intune and SCCM/MECM as core management platforms, configuring device enrollment, co-management, and unified endpoint management across desktop and mobile platforms.
- Managed mobile device management (MDM) for iOS and Android through Microsoft Intune — enrolled and managed iOS devices via Apple Business Manager and Android devices via Android Enterprise / Managed Google Play; deployed iOS and Android applications, created device and user groups, and assigned apps, configuration profiles, and compliance policies to the correct groups based on role and department.
- Developed and enforced endpoint policies for OS updates, security patches, application deployments, and device configurations — built OS update rings, deployed security patches via Intune and SCCM with PowerShell automation, packaged and deployed applications across Windows/iOS/Android, and applied app protection policies to safeguard corporate data on mobile devices.
- Ensured device compliance with organizational security and regulatory standards including HIPAA-adjacent and NIST requirements — enforced compliance policies, BitLocker encryption, Conditional Access, and CIS Benchmark baselines across the device fleet; blocked non-compliant devices from accessing corporate resources and produced audit-ready compliance documentation.
- Automated device provisioning and software deployment workflows — implemented zero-touch provisioning through Windows Autopilot and streamlined mobile enrollment via ABM and Android Enterprise; authored PowerShell and Microsoft Graph API automation for app assignment, configuration, and compliance reporting, reducing manual effort by 4+ hours weekly.
- Collaborated with cybersecurity teams to implement endpoint protection and detection (EDR/XDR) — administered CrowdStrike Falcon and Microsoft Defender for Endpoint, integrated protection with device compliance policies; reviewed and built out services for Microsoft applications including O365, OneDrive for Business, Teams, and collaboration tools across the managed device estate.
- Monitored and troubleshot endpoint performance, connectivity, and security issues; provided support and guidance to IT support teams on endpoint escalations; maintained accurate asset inventory and endpoint lifecycle documentation via ServiceNow CMDB; and evaluated and recommended new endpoint management technologies, tools, and best practices.
Cybersecurity Specialist I - Sankara Nethralaya Medical Research Foundation - Chennai, India
Endpoint compliance, device configuration, and security operations in a regulated healthcare environment
- Supported endpoint management and device compliance in a HIPAA-adjacent healthcare environment — configured device security policies, validated compliance against organizational baselines, and coordinated endpoint remediation with infrastructure teams.
- Monitored endpoint performance and security, investigated device issues, and maintained compliance documentation supporting regulatory requirements and internal security standards.
Desktop Engineer (Intern) - Hindustan Aeronautics Limited - Bengaluru, India
Enterprise endpoint deployment, device management, and Active Directory administration in a regulated defense environment
- Executed Windows deployment and patch management for 500+ users — administered Active Directory, configured VPN, managed endpoint compliance and device provisioning, and provided endpoint support and escalation handling for end users.