Ubique Systems

TRCI-26-05077

Zero Trust Network Access (ZTNA) / Endpoint Management Engineer (Intune, macOS, Prisma Access)

Contract engineer to own and continuously improve a Zero Trust Network Access and endpoint management platform, focusing on automated/scalable configuration, build and deployment. The role supports macOS and Microsoft Intune/Entra ID capabilities including device provisioning, configuration/compliance policies, Conditional Access, and application deployment (including Windows Autopilot), plus deployment of Palo Alto Prisma Access Agent and Palo Alto Enterprise Browser. You will work cross-functionally with Security/Compliance/Data Protection and deliver through Agile (Jira) while adhering to SDLC and release management standards.

Position summary

Location
Germany
Workplace
Hybrid
Employment
Contract
Experience
Minimum 5 years and Maximum 7 years
Apply now

Role overview

Why This Role Matters.

Contract engineer to own and continuously improve a Zero Trust Network Access and endpoint management platform, focusing on automated/scalable configuration, build and deployment. The role supports macOS and Microsoft Intune/Entra ID capabilities including device provisioning, configuration/compliance policies, Conditional Access, and application deployment (including Windows Autopilot), plus deployment of Palo Alto Prisma Access Agent and Palo Alto Enterprise Browser. You will work cross-functionally with Security/Compliance/Data Protection and deliver through Agile (Jira) while adhering to SDLC and release management standards.

Your Impact

Deliver Enterprise Value

Help organisations solve complex business problems through modern technology, consulting expertise and measurable outcomes.

Collaboration

Work Across Teams

Collaborate with consultants, architects, engineers and client stakeholders throughout the project lifecycle.

Growth

Learn Continuously

Gain exposure to enterprise technologies, certifications, mentoring and real-world project experience.

Career Path

Grow With Ubique

Build a long-term consulting career with opportunities to take on greater responsibility and leadership over time.

Responsibilities

What You'll Be Doing.

Every role at Ubique contributes directly to solving meaningful business challenges for our clients.

01

Engineer, configure, build, and deploy Zero Trust Network Access solutions in an automated and scalable manner.

02

Own the platform from an end-to-end engineering perspective, ensuring stability, security, and continuous improvement.

03

Collaborate closely with Product Management, Architecture, Operations, Security, Compliance, and Data Protection teams.

04

Drive backlog refinement, prioritization, and delivery within an Agile environment.

05

Ensure adherence to SDLC processes, engineering standards, and release management practices.

06

Champion innovation, automation, and an exceptional end-user experience while maintaining the highest security standards.

07

Support and optimize

08

Microsoft Intune application packaging

09

Palo Alto Prisma Access Agent deployment

10

Palo Alto Enterprise Browser deployment

11

Technical Expertise

12

Strong knowledge of macOS architecture and operating system components

Technology stack

Tools & Technologies.

The platforms and technologies you'll use to build modern, enterprise-grade solutions.

01

Zero Trust

02

ZTNA

03

Microsoft Intune

04

Endpoint Manager

05

Microsoft Entra ID

06

Azure AD

07

Conditional Access

08

Identity Protection

09

MFA

10

Microsoft 365

11

macOS

12

Active Directory

13

GPO

14

MDM

15

PowerShell

16

Azure PowerShell

17

Jira

18

SDLC

19

Release Management

20

Windows Autopilot

Requirements

Skills & Experience.

We value curiosity, collaboration and continuous learning. If you don't meet every requirement but believe you can make an impact, we'd still love to hear from you.

Essential

Required Qualifications

Zero Trust Network Access (ZTNA) solution engineering (configure/build/deploy)

Microsoft Intune (Endpoint Manager): device provisioning, configuration policies, compliance management, Conditional Access, application deployment

Microsoft Entra ID (Azure AD): Conditional Access, Identity Protection, MFA, Intune/M365 integration

Strong macOS architecture and OS components knowledge

Scripting/automation (PowerShell/Azure PowerShell preferred)

Active Directory architecture knowledge and migration from GPO-based management to MDM

Agile delivery experience and Jira usage

Understanding of end-to-end IT lifecycle (design/architecture through operations/support)

Endpoint compliance and conditional access configuration experience

Preferred

Nice to Have

Microsoft Windows Autopilot (explicitly listed under Intune scope)

Microsoft 365 integration (explicitly mentioned with Entra ID)

Microsoft Intune application packaging

Palo Alto Prisma Access Agent deployment

Palo Alto Enterprise Browser deployment

Certifications: Agile, ITIL, Security, Networking

What you'll gain

More Than Just A Job.

We're committed to helping every team member grow professionally, personally and technically while working on meaningful projects.

Global Exposure

Collaborate with international clients and multicultural teams on enterprise programmes.

Continuous Learning

Expand your expertise through mentoring, certifications and hands-on project experience.

Career Growth

Take ownership, develop leadership skills and grow your consulting career over time.

Flexible Working

Hybrid and remote collaboration designed around trust and delivering exceptional outcomes.

People First

Join a supportive culture where collaboration, respect and long-term relationships come first.

Enterprise Projects

Work on meaningful technology initiatives for leading organisations across industries.

Apply

Apply for Zero Trust Network Access (ZTNA) / Endpoint Management Engineer (Intune, macOS, Prisma Access)

One page, about two minutes. We only ask for what we actually need to have a first conversation.

Your CV

Optional. A line or two is plenty.