05 Aug
|
SII Group Belgium
|
Montreal
05 Aug
SII Group Belgium
Montreal
Contexte
Historiquement, la majorité des stations de travail médias (régies, studios, radio) d’une grande entreprise du secteur audiovisuel sont gérées manuellement par des équipes locales ou via des outils fragmentés (comme Ivanti ou PDQ Deploy). Cette situation engendre une charge opérationnelle importante et des disparités en matière de cybersécurité.
Contexte (English)
Historically, most media workstations (control rooms, studios, radio) in a large broadcasting organization have been managed manually by local teams or through fragmented tools (such as Ivanti or PDQ Deploy). This results in significant operational overhead and inconsistent cybersecurity practices.
Objectifs
- Standardization: integrate media workstations into Intune and SCCM to align with enterprise standards.
- Security: enforce centralized security, configuration, and compliance policies tailored to media environments.
- Operational efficiency: reduce manual workload and phase out legacy tools (e.g., Ivanti).
- Optimized deployment: reduce deployment and imaging time through automation and standardization.
Responsabilités
- Lead discovery and inventory profiling of media workstations (hardware, OS, proprietary software, vendor dependencies, and roles).
- Analyze media-specific use cases (radio, studio, control room) and design a tailored Intune/SCCM co‑management architecture.
- Design and implement a granular RBAC (Role‑Based Access Control) model in Intune and SCCM.
- Collaborate with third‑party vendors to ensure compatibility and compliance with support constraints and SLAs.
- Lead proof of concepts (POC) and pilot testing to validate security policies without impacting broadcast performance.
- Implement the solution and oversee phased national deployment while ensuring operational continuity.
- Produce architectural documentation and deliver knowledge transfer to local teams.
- Support project management with technical insights, timelines, and change enablement.
- Act as a key technical liaison between cybersecurity and operational teams.
Livrables attendus
- Detailed inventory matrix of equipment.
- Media use case and constraint analysis.
- Documented RBAC model (roles, permissions, scope tags).
- Architecture documentation (HLD and LLD).
- Migration and legacy tools decommissioning plan.
- POC and pilot testing reports.
- Configured and secure production environment.
- Completed media workstation deployment within the UEM platform.
- Operational documentation (runbooks).
Environnement de travail
- Hybrid work model with attachment to a Canadian office.
- On‑site presence required approximately two days per week (adjustable depending on project phases).
- Occasional travel across the country may be required.
Profil
- Degree in computer science or equivalent experience.
- 7+ years of experience in endpoint management architecture or technical leadership.
- Strong expertise in Microsoft Intune, SCCM, Autopilot, Active Directory, Azure/Entra ID, and GPO.
- Proficiency in scripting (PowerShell, Bash) for automation.
- Robust communication, collaboration, and change management skills.
- Analytical mindset, problem‑solving ability, autonomy.
- Experience working in high‑availability or mission‑critical environments.
Nice to have
- Experience with Ivanti, PDQ Deploy, or similar tools.
- Knowledge of media or broadcast IT environments.
- Understanding of constraints related to proprietary media systems.
#J-18808-Ljbffr
📌 Architecte Endpoint (Senior) (Montreal)
🏢 SII Group Belgium
📍 Montreal