×
Register Here to Apply for Jobs or Post Jobs. X

Windows Endpoint Resilience Engineer (Patch & Compliance

Job in Toronto, Ontario, C6A, Canada
Listing for: Scotiabank
Full Time position
Listed on 2026-08-20
Job specializations:
  • IT/Tech
    Cybersecurity, M365, SharePoint & Power Platform, Windows Server
Salary/Wage Range or Industry Benchmark: 100000 - 150000 CAD Yearly CAD 100000.00 150000.00 YEAR
Job Description & How to Apply Below
Position: Windows Endpoint Resilience Engineer (Patch & Compliance)

Select how often (in days) to receive an alert:

Title:

Windows Endpoint Resilience Engineer (Patch & Compliance)

Requisition :

Join our team!

Would you like to complete your internship with an organization that has been in the market for more than 35 years, dedicated to improving our customers’ financial well-being through comprehensive and innovative solutions?

The Role:
Technical Specialist Advisory, Modern Endpoint & Patch Engineering

Is this role right for you? In this role, you will:

  • Champion a customer-focused culture that strengthens employee experience while leveraging enterprise platforms, partnerships, and technical expertise.
  • Design, implement, and support Windows Autopilot provisioning services, including deployment profiles, Enrollment Status Page (ESP), dynamic group assignment, Autopilot Reset, pre-provisioning, Entra , and Intune enrollment.
  • Lead the enterprise cloud patch management practice across Windows Update for Business, Microsoft Autopatch, Microsoft 365 Apps, and driver and firmware updates. Establish deployment ring strategies that enable safe, predictable, and measurable updates across approximately 94,000 workstations globally.
  • Develop and manage third-party application patching capabilities using enterprise patch management platforms integrated with Intune, ensuring alignment with vulnerability remediation objectives and security standards.
  • Define and evolve enterprise standards for Company Portal and Intune application delivery, including packaging governance, application lifecycle management, self-service experiences, and targeting strategies.
  • Implement and maintain CIS benchmarks, security baselines, and compliance controls in partnership with Cyber Security and OS Product teams, ensuring secure and consistent deployment at enterprise scale.
  • Lead complex troubleshooting and root-cause analysis activities related to provisioning, patching, compliance, and enrollment services, driving permanent corrective actions and platform improvements.
  • Support tenant modernization initiatives across subsidiary organizations, including Intune adoption, co-management transitions, and cloud endpoint management transformation programs.
  • Advance platform maturity through automation and engineering best practices using Power Shell, Microsoft Graph API, Azure Automation, and other modern automation frameworks.
  • Partner with Cyber Security, Identity, Networking, End User Services, and Operations teams to embed security-by-design principles, Zero Trust controls, and audit-ready processes.
  • Ensure adherence to ITIL service management practices, change management standards, risk assessment requirements, and operational support commitments, including participation in major incident response and Patch Tuesday activities.
  • Apply sound judgment and risk-based decision making while ensuring compliance with internal policies, regulatory requirements, and security controls.
  • Contribute to a collaborative, high-performing engineering culture focused on innovation, accountability, continuous improvement, and technical excellence.

Do you have the skills that will enable you to succeed in this role? We'd love to work with you if you have:

  • Bachelor’s degree in computer science, Information Technology, Engineering, or equivalent practical experience.
  • 5-8 years of experience in endpoint engineering, modern device management, workplace technology, or platform engineering, including at least 4 years of hands‑on experience with Microsoft Intune.
  • Strong expertise in Microsoft Intune, Windows Autopilot, Entra , Conditional Access, and Windows Update for Business or Microsoft Autopatch.
  • Experience implementing and managing enterprise-scale third-party application patching solutions integrated with Intune such as Patch Mypc .
  • Deep understanding of Windows servicing, Patch Tuesday processes, deployment rings, update governance, and vulnerability remediation practices.
  • Experience delivering and supporting Win
    32 applications, Microsoft Store applications, MSIX packaging, and application lifecycle management within Intune.
  • Knowledge of CIS benchmarks, Microsoft security baselines, device compliance policies, and endpoint security controls.
  • A…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary