Summary
Overview
Work History
Education
Skills
Timeline
Generic

Gurpreet Singh

Calgary,CA-AB

Summary

IT Specialist with 10+ years of experience in endpoint management, security compliance, and enterprise operations. Expert in Microsoft Intune (AutoPilot, policy deployment, hybrid co-management) and SCCM/MECM (app packaging, OS deployment, infrastructure hardening). Skilled in patching strategies, GPOs, managing AVD's and PowerShell automation. Familiar with Microsoft Defender for Endpoint for threat detection and endpoint protection. Proven ability to resolve complex issues, enhance system resilience, and drive cross-functional collaboration across security, network, and development teams. Eager to contribute to our infrastructure team by leveraging technical skills and innovative solutions.

Overview

11
11
years of professional experience

Work History

End User Technical Analyst

Tata Consultancy Services
03.2015 - Current

Microsoft Intune:

  • Deployed and managed Windows AutoPilot for seamless device provisioning.
  • Created and enforced compliance policies, configuration profiles, and conditional access rules.
  • Managed hybrid co-management with MECM, ensuring smooth workload transitions and policy alignment.
  • Migrated devices from traditional GPO-based management to cloud-based Intune policies for streamlined control.
  • Configured Windows Update for Business via Intune to automate patching and reduce manual overhead.
  • Implemented Endpoint Security policies for antivirus, firewall, and disk encryption using Intune.
  • Integrated Intune with Azure AD dynamic groups for automated targeting policies and apps.
  • Deployed Win32 apps with custom detection logic and dependency handling for reliable installations.
  • Used Intune reporting and analytics to monitor device health, compliance status, and deployment success.


Microsoft Defender for Endpoint:

  • Integrated Defender for Endpoint with Intune to enforce real-time threat protection and compliance policies.
  • Configured Endpoint Security profiles in Intune to manage antivirus, firewall, and attack surface reduction settings.
  • Deployed Defender onboarding scripts and policies through Intune for seamless agent installation and activation.


SCCM / MECM:

  • Designed and maintained OS deployment task sequences for upgrades, driver injection, PXE boot setups, and post-deployment configuration
  • Automated patching and software updates using ADRs and maintenance windows.
  • Managed distribution points, boundaries, and content replication for optimal performance.
  • Integrated MECM with Intune for co-management and workload shifting.
  • Scheduled and monitored software update deployments with detailed compliance reporting.
  • Performed client health checks, remediation scripting, and infrastructure optimization.


Group Policy Objects (GPOs):

  • Developed and maintained GPOs for security hardening, user restrictions, and desktop experience.
  • Migrated legacy GPOs to modern Intune equivalents where applicable.
  • Conducted audits to eliminate redundant or conflicting policies.


Patching Process:

  • Led monthly patch cycles using MECM and Intune, ensuring compliance and minimal disruption.
  • Coordinated pilot testing, rollback strategies, and reporting dashboards for patch success rates.
  • Supported third-party patching for non-Microsoft applications.


Application Packaging:

  • Created and tested application packages using MSI, App-V, and PowerShell for deployment via MECM and Intune.
  • Defined detection rules, return codes, and dependencies to ensure reliable installations.
  • Maintained centralized app catalog and version control for enterprise software.


Azure Virtual Desktop (AVD):

  • Provisioned and managed AVD host pools, session hosts, and FSLogix profile containers.
  • Integrated AVD with Intune and Defender for Endpoint to enforce security and compliance.
  • Tuned performance through scaling plans, image optimization, and monitoring tools.

Education

Bachelor of Science - Information Technology

Karim City College
Jamshedpur, IND
08-2013

Skills

  • Microsoft Intune
  • SCCM / MECM
  • Windows Group Policies
  • Patch Management
  • Windows Powershell
  • IT Service Management
  • Process Improvement
  • Adaptability and Flexibility

Timeline

End User Technical Analyst

Tata Consultancy Services
03.2015 - Current

Bachelor of Science - Information Technology

Karim City College
Gurpreet Singh