Senior Platform Engineer - Standard Operating Environment at Commonwealth Bank
Sydney, New South Wales, Australia -
Full Time


Start Date

Immediate

Expiry Date

12 Nov, 25

Salary

0.0

Posted On

12 Aug, 25

Experience

0 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Hardening, Automation, Infrastructure, Autopilot, Code, Intune, Scripting, Automation Tools, Access, Internet Security, Security, Windows, Active Directory, Platforms, Policy Management, Powershell, Soe

Industry

Information Technology/IT

Description

SEE YOURSELF IN THE TEAM

The SOE Engineering team maintains the Standard Operating Environment (SOE) using SCCM, Group Policy, and Intune. As an escalation path for Service Desk and Desktop Technician, SOE Engineering develops tools based on user feedback and evolving technology to support business colleagues. SOE Engineering aims to provide a stable and efficient desktop platform through reliable and cost-effective tools, processes, and enterprise systems.

EXPERIENCE WORKING WITH INFRASTRUCTURE AS CODE USING TOOLS

  • Knowledge of CI/CD pipeline, DevSecOps Principles, AI Powered Engineering and Automation tools
Responsibilities

YOUR ROLE AND RESPONSIBILITIES

As a Senior Platform Engineer - Standard Operating Environment (SOE), you will play a crucial role in managing and optimising our Windows environments. You will be joining a crew who are responsible for securing over 60,000 physical and virtual Windows endpoints, and are committed to providing superior workplace technology experiences for all teams within CommBank. In this role, your duties may include, though not limited to:

  • Providing 3rd level support for Intune, Microsoft Configuration Manager (SCCM), and Windows 10/11 end-user environments for over 40,000 devices.
  • Designing, reviewing, and building Windows 11 Intune configurations.
  • Creating Intune Configuration Profiles and Compliance Policies for Windows 11 devices.
  • Packaging and deploying applications via Intune for Windows 11 devices.
  • Updating and managing Windows 11 SOE builds, including deployment via SCCM and Autopilot.
  • Configuring and testing Windows 11 Autopilot device provisioning.
  • Reviewing and migrating Windows 10/11 Group Policies to Intune.
  • Administering the Intune Admin Centre and SCCM, including patching and endpoint security.
  • Implementing Essential Eight Security hardening following Microsoft’s and CIS (Centre for Internet Security) recommendations.
  • Configuring and managing Microsoft Defender for Endpoint.
  • Developing PowerShell scripts to automate various tasks related to Windows, Active Directory, Entra ID, and Intune.
  • Creating Azure Runbooks to automate Entra ID and AVD tasks
Loading...