Skip to content
← Back to job listings

Modern Workplace Engineer

9010 Aven Hospitality Inc. · Dallas-Fort Worth Metroplex, United States

IT - Network / Systems / DB AdminQuick applyfull-timeabout 7 hours ago

About The Role

Aven Hospitality is an innovative technology provider powered by SynXis®, the leading global hospitality commerce and distribution platform. We empower hoteliers around the world to exceed expectations, solve daily challenges, and stay ahead of the competition.

With our comprehensive portfolio of solutions, hoteliers can manage distribution, retailing, payments, operations, and more. Providing hoteliers the tools to maximize revenue, improve operational efficiency, and deliver personalized guest experiences that drive satisfaction.

Our tools are built to seamlessly integrate with each hotelier’s unique strategy, elevating guest satisfaction and creating meaningful connections.

We are pioneering AI in hospitality technology to unlock new opportunities, drive efficiency, and personalize the guest experience. By prioritizing stability, scalability, and data-driven insights, we equip hoteliers to adapt and thrive in an ever-changing landscape, ready for whatever comes next..

Modern Workplace Engineer

Location: Frisco, TX | Work Model: Onsite | Team: IT Hub Support

Job Description

Role Summary

The Modern Workplace Engineer is responsible for engineering, administering, securing, and continuously improving the organization’s Microsoft 365 modern workplace ecosystem. This role owns operational support and technical execution across collaboration services, endpoint management, identity and access controls, business process automation, and virtual desktop services, including SharePoint Online, Microsoft Teams, OneDrive, Power Platform, Microsoft Intune, Microsoft Entra ID, and Windows 365 Cloud PCs.

The ideal candidate is a hands-on technical lead who can diagnose complex platform issues, design scalable configurations, implement governance and security controls, automate repeatable processes using PowerShell and Microsoft Graph, and partner with business, security, infrastructure, and service desk teams to deliver reliable, compliant, and measurable workplace services.

Key Responsibilities

SharePoint Online and Microsoft 365 Collaboration

  • Engineer and administer SharePoint Online sites, hub sites, libraries, metadata, permissions, external sharing, storage, sensitivity controls, and lifecycle management.
  • Support Microsoft Teams and OneDrive collaboration workloads by aligning site architecture, ownership models, file sharing, retention, and governance standards.
  • Implement site provisioning standards, access reviews, information architecture, content governance, and secure collaboration practices.
  • Troubleshoot advanced access, sync, search, sharing, site performance, versioning, and permission inheritance issues.

Power Platform Administration

  • Administer Power Apps, Power Automate, Dataverse environments, connectors, gateways, solution lifecycle, environment settings, and platform capacity.
  • Design and enforce Power Platform governance, including DLP policies, environment strategy, connector classification, maker onboarding, and administrative monitoring.
  • Partner with business users to review low-code solutions for security, supportability, data access, compliance, and operational readiness.
  • Analyze flow failures, app performance, connector errors, service health, licensing impacts, and adoption trends to improve platform reliability.

Microsoft Intune and Endpoint Management

  • Engineer and administer Microsoft Intune for Windows, macOS, iOS, and Android device management across corporate and supported user-owned device scenarios.
  • Configure compliance policies, configuration profiles, device restrictions, endpoint security baselines, app protection policies, app deployment, update rings, and enrollment workflows.
  • Support Windows Autopilot, Apple device enrollment, device lifecycle management, patching, remote actions, remediation scripts, and endpoint analytics.
  • Maintain secure endpoint configurations aligned with CIS-style hardening, organizational standards, audit requirements, and conditional access dependencies.

Microsoft Entra ID and Access Management

  • Administer Microsoft Entra ID users, groups, dynamic membership rules, enterprise applications, app registrations, service principals, administrative roles, and role-based access.
  • Support identity governance, conditional access, multifactor authentication, self-service password reset, access reviews, privileged access controls, and lifecycle workflows.
  • Troubleshoot authentication, single sign-on, token claims, group-based access, provisioning, sign-in logs, and application access issues.
  • Apply least-privilege, separation-of-duties, break-glass, and secure administrative practices across identity and access operations.

Windows 365 Cloud PC / VDI

  • Administer Windows 365 Cloud PC provisioning, assignment, access, connectivity, user settings, resize actions, reprovisioning, and restore scenarios.
  • Support Cloud PC image strategy, provisioning policies, network connectivity, license allocation, device redirection, and security baseline alignment.
  • Monitor Cloud PC health, performance, connection quality, policy application, and user experience signals to coordinate remediation.
  • Understand VDI architecture concepts, remote access workflows, profile behavior, endpoint dependencies, and end-user support for virtual desktop environments.

Scripting, Automation, and Technical Tooling

  • Develop, maintain, and troubleshoot PowerShell scripts for Microsoft 365 administration, including bulk user, group, device, license, application, and policy operations.
  • Use Microsoft Graph PowerShell SDK and Graph API concepts to query tenant data, automate Intune and Entra ID tasks, manage devices at scale, and support repeatable administrative workflows.
  • Create automation runbooks, scheduled scripts, and operational reports using PowerShell, JSON, CSV, REST API concepts, and secure authentication methods.
  • Use KQL and log analysis techniques to investigate sign-in activity, device compliance, endpoint health, audit events, security signals, and service trends.
  • Maintain script documentation, version control discipline, error handling, logging, least-privilege permissions, and change control practices for administrative automation.

Required Skills and Experience

  • 8+ years of hands-on Microsoft 365 engineering, endpoint management, identity administration, or modern workplace platform experience in a mid-size to enterprise environment.
  • Strong technical knowledge of SharePoint Online, Teams, OneDrive, Power Platform administration, Microsoft Intune, Microsoft Entra ID, and Windows 365.
  • Experience configuring endpoint compliance, configuration profiles, application deployment, update management, endpoint security controls, and device enrollment methods.
  • Working knowledge of identity and access management concepts, including conditional access, MFA, SSO, RBAC, app registrations, enterprise applications, and sign-in diagnostics.
  • Ability to troubleshoot complex collaboration, identity, endpoint, automation, and virtual desktop issues using admin portals, logs, reports, service health, and Microsoft support tools.
  • Knowledge of Microsoft 365 governance, security, compliance, data protection, role-based access, and operational control best practices.
  • Advanced PowerShell scripting experience for Microsoft 365, Intune, Entra ID, Exchange Online, SharePoint Online, Teams, and endpoint administration.
  • Working knowledge of Microsoft Graph PowerShell SDK, Graph API concepts, REST API fundamentals, JSON payloads, CSV data handling, authentication scopes, and least-privilege permissions.
  • Ability to write, review, debug, document, and maintain scripts with proper error handling, logging, parameterization, testing, and secure credential handling.
  • Familiarity with KQL, Log Analytics, audit logs, sign-in logs, Intune diagnostics, endpoint analytics, and operational reporting for troubleshooting and trend analysis.
  • Strong technical documentation, runbook creation, customer service, escalation management, and cross-functional collaboration skills.

Preferred Qualifications

  • Microsoft certifications such as MS-102, MD-102, SC-300, PL-900, PL-200, MS-700, or related Microsoft 365, security, endpoint, or Power Platform certifications.
  • Experience with Power Platform DLP policies, Managed Environments, Center of Excellence concepts, connector governance, and environment lifecycle controls.
  • Experience with Windows Autopilot, Apple Business Manager, endpoint analytics, proactive remediations, macOS PPPC profiles, and Intune-based macOS management.
  • Strong familiarity with Microsoft Graph, Graph PowerShell SDK, PowerShell modules for Microsoft 365 services, KQL basics, reporting, automation, audit logs, service health monitoring, and operational dashboards.
  • Experience with Git or other version control tools, Azure Automation, scheduled runbooks, CI/CD concepts, secure app registrations, certificate-based authentication, and automation documentation.
  • Basic scripting or coding knowledge in Python, JavaScript, or similar languages is a plus for API integration, data transformation, reporting, and workflow automation.
  • Experience working within ITIL-aligned incident, request, change, problem, knowledge, asset, and configuration management processes.

Success Measures

  • Stable, secure, and well-documented administration of Microsoft 365 modern workplace platforms with reduced recurring incidents.
  • Improved end-user experience through faster issue resolution, proactive monitoring, root-cause analysis, and repeatable remediation.
  • Consistent governance across collaboration, automation, endpoint, identity, and virtual desktop services through standardized policies and controls.
  • Secure and compliant configuration of devices, identities, access policies, applications, data sharing, and business automation workloads.
  • High-quality documentation, operational runbooks, troubleshooting guides, and knowledge articles that improve support efficiency and service continuity.

Outstanding Benefits

  • Very competitive compensation
  • Generous Paid Time Off (25 PTO days)
  • 8 Hours of Volunteer Time Off (VTO)
  • We offer a comprehensive medical, dental and Wellness Program
  • 12 weeks paid parental leave
  • An infrastructure that allows flexible working arrangements
  • Formal and informal reward, recognition and acknowledgement programs
  • Lots of fun and engaging employee development events

Reasonable Accommodation

Aven Hospitality is committed to working with and providing reasonable accommodation to applicants with disabilities. Applicants applying for a Aven Hospitality position with a disability who require a reasonable accommodation for any part of the application or hiring process may contact Aven Hospitality at Contact Us

Determinations on requests for reasonable accommodation will be made on a case-by-case basis.

Affirmative Action

Aven Hospitality is an equal employment opportunity/affirmative action employer and is committed to providing employment opportunities to minorities, females, veterans and disabled individuals. EEO IS THE LAW

#LI-Hybrid#LI-TJ1

This listing was posted by a verified recruiter at 9010 Aven Hospitality Inc.. Report this listing