Desktop Engineer - Windows

Cwsc
Morrisville, NC
Hybrid

Who this role is best for

Geared toward candidates with federal IT experience and advanced PowerShell skills comfortable with vulnerability remediation and SCCM/MECM deployment in a full-time, on-site role.

Best fit for

  • Candidates with federal government IT experience and strong SCCM/MECM deployment skills
    — “Experience working in federal government IT environments
  • Individuals who have managed enterprise application packaging and patch management workflows
    — “Develop and implement remediation solutions for vulnerabilities affecting Windows operating systems, third-party applications, drivers, utilities, and configurations
  • Professionals who can translate security advisories into technical deployment solutions
    — “Translate vulnerability findings, CVEs, security advisories, and remediation requirements into deployable technical solutions

Things to consider

  • Security clearance is a mandatory requirement for employment
    — “Applicants must be able to obtain a Public Trust clearance
  • The role emphasizes collaboration with cybersecurity and vulnerability management teams
    — “Coordinate with cybersecurity and vulnerability management teams to validate vulnerability findings

How to stand out

  • Highlight documented automation procedures and reusable PowerShell libraries in your resume
    — “Maintain reusable PowerShell libraries and documented automation procedures
  • Emphasize experience with CISA Binding Operational Directives and federal cybersecurity frameworks
    — “Support remediation activities associated with applicable CISA Binding Operational Directives
  • Showcase your ability to test and validate application compatibility across Windows environments
    — “Test application compatibility with supported Windows configurations
  • Demonstrate your ability to produce detailed reports on deployment statuses and compliance
    — “Monitor SCCM deployment status and produce reports identifying successful, failed, pending, and non-compliant devices
  • Include examples of root cause analysis and sustainable solutions for recurring issues
    — “Perform root cause analysis and develop sustainable solutions for recurring issues
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · Team

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • identify and remediate security vulnerabilities
  • develop and deploy remediation packages
  • maintain documentation
Typical background
Windows systems administrationenterprise management technologies

Skills & requirements

Required

Windows Vulnerability RemediationSccm/mecmPowershellApplication Packaging

Preferred

NinjaoneActive DirectoryGroup Policy

About the role

Original posting from Cwsc via Lever

Computer World Services Corp (CWS) is seeking a detail-oriented and results-driven Desktop Engineer – Windows responsible for engineering, configuring, securing, and maintaining Windows-based environments in an enterprise federal IT setting.

A primary focus of this position is the identification and remediation of security vulnerabilities through Microsoft System Center Configuration Manager (SCCM/MECM), NinjaOne, PowerShell, and other enterprise management technologies. The Desktop Engineer develops, tests, deploys, and maintains SCCM application and remediation packages designed to correct software vulnerabilities, configuration deficiencies, outdated applications, and other security exposures.

Key Tasks & Responsibilities:

Windows Vulnerability Remediation

  • Analyze Windows vulnerability findings and determine appropriate technical remediation strategies.
  • Develop and implement remediation solutions for vulnerabilities affecting Windows operating systems, third-party applications, drivers, utilities, and configurations.
  • Translate vulnerability findings, CVEs, security advisories, and remediation requirements into deployable technical solutions.
  • Support remediation activities associated with applicable CISA Binding Operational Directives, including BOD 26-04, and other federal cybersecurity requirements.
  • Coordinate with cybersecurity and vulnerability management teams to validate vulnerability findings and determine appropriate remediation actions.
  • Design, develop, test, deploy, and maintain SCCM/MECM application packages, programs, task sequences, scripts, and remediation packages.
  • Monitor SCCM deployment status and produce reports identifying successful, failed, pending, and non-compliant devices.
  • Support the use and evaluation of NinjaOne as an enterprise endpoint management,
  • Troubleshoot operating system, application, hardware, driver, security, and performance problems.
  • Perform root cause analysis and develop sustainable solutions for recurring issues.
  • Test scripts to ensure they operate safely across supported Windows configurations.
  • Maintain reusable PowerShell libraries and documented automation procedures.

Monitoring & Reporting

  • Support development of dashboards and metrics showing vulnerability remediation progress.
  • Assist management and cybersecurity teams in measuring remediation performance against established service levels and federal requirements.

Application Packaging & Software Lifecycle Management

  • Package enterprise applications for automated deployment.
  • Test application compatibility with supported Windows configurations.
  • Maintain current versions of enterprise applications and identify obsolete or unsupported software.
  • Develop upgrade and migration packages to replace vulnerable or end-of-life applications.
  • Develop automated removal packages for prohibited, unsupported, or vulnerable applications.
  • Coordinate application testing with application owners and technical stakeholders before enterprise deployment.
  • Maintain documentation covering packaging standards, installation procedures, dependencies, rollback procedures, and known issues.

User Support & System Access

  • Provide Tier 3 technical support for complex Windows issues.
  • Support Active Directory, Group Policy, configuration, and user environment troubleshooting.
  • Resolve issues resulting from application deployments, security remediation, operating system updates, and configuration changes.
  • Coordinate with Tier 1 and Tier 2 support teams to resolve incidents and recurring problems.
  • Provide technical guidance and knowledge transfer to desktop support personnel.

Required Skills & Competencies

  • Strong knowledge of Microsoft Windows desktop operating systems.
  • Hands-on experience with Microsoft SCCM/MECM, particularly application packaging and software deployment.
  • Experience creating and troubleshooting SCCM applications, packages, deployment collections, detection methods, and task sequences.
  • Experience developing PowerShell automation and remediation scripts.
  • Understanding of Windows vulnerability remediation and patch management.
  • Ability to interpret vulnerability findings and translate them into technical remediation actions.
  • Understanding of CVEs, security advisories, vulnerability severity, and remediation concepts.
  • Knowledge of Active Directory and Group Policy.

Education & Experience:

Education

  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related technical discipline

Experience

  • 5+ years of experience in desktop engineering, Windows system administration, management, or enterprise IT support.
  • Demonstrated experience supporting Windows operating systems in enterprise client/server environments.
  • Demonstrated experience with SCCM/MECM application packaging, deployment, or administration.
  • Advanced PowerShell scripting experience.
  • NinjaOne administration or engineering experience.
  • Experience working in federal government IT environments.

Certifications:

  • Desired: Microsoft Endpoint, Windows, Azure, or related technical certifications.
  • Desired: ITIL Foundation certification.

Security Clearance:

  • Applicants must be able to obtain a Public Trust clearance

Computer World Services is an affirmative action and equal employment opportunity employer. Current employees and/or qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, disability, protected veteran status, genetic information or any other characteristic protected by local, state, or federal laws, rules, or regulations.

Computer World Services is committed to the full inclusion of all qualified individuals. As part of this commitment, Computer World Services will ensure that individuals with disabilities (IWD) are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources at hr@cwsc.com.

Source: Cwsc careers (Lever)

Similar roles