Joshua Walderbach

Systems & Infrastructure Engineer III

Northwest Arkansas • Open to Remote & Relocation

PowerShell
AI
Intune
MECM
Azure
ServiceNow
Git
PCI
Network
Power BI

Professional Summary

Infrastructure engineer with extensive experience designing scalable automation, endpoint management, and governance solutions for enterprise environments supporting 300,000+ devices. Proven ability to operate with autonomy in distributed team environments, transforming reactive operations into systematic, tool-driven approaches that reduce incident volume, eliminate configuration drift, and accelerate mean time to recovery (MTTR). Experienced in CI/CD pipeline design, Infrastructure as Code (IaC), Mobile Device Management (MDM) migration, and building AI-augmented support solutions. Leverages AI-assisted development tools including Claude Code and Codex to rapidly build PowerShell, JavaScript, and HTML-based enterprise tooling. Skilled in change management, asynchronous cross-functional stakeholder communication, and enabling geographically distributed teams through training, documentation, and purpose-built tooling.

PowerShell Evangelist & Author

Creator of WinDAS, PULSE, and 200+ automation solutions. Led "PowerShell in a Month of Lunches" training series, championing coding culture and Git adoption across teams.

Single & Multi-App Kiosk Developer

Expert in building custom Windows kiosk solutions from scratch. Specialist in secure single-app and multi-app kiosk configurations, vulnerability management, and endpoint hardening.

Technology Enablement Leader

Passionate about upskilling colleagues through training, research, and tool development. Created learning platforms, automated solutions, and documentation that empower teams to work more efficiently and embrace new technologies.


Core Competencies

Enterprise Systems & Platforms

Windows OS Platform Engineering Endpoint Lifecycle Management Kiosk Architecture (Assigned Access) Windows 11 Migration at Scale Endpoint Configuration Manager (MECM) Microsoft Entra ID (Azure AD) Windows Autopilot Microsoft Graph API / SDK

Preventative Systems & Automation

Configuration Drift Mitigation PowerShell Framework Design Remote Connectivity Automation Policy Enforcement Automation Operational Risk Reduction CI/CD Pipeline Design Infrastructure as Code (IaC)

Operational Resilience & Diagnostics

Diagnostic Automation Incident Triage Tooling Root Cause Analysis Platform Reliability Controls Upgrade Orchestration Vulnerability Management Endpoint Security & Compliance

Collaboration & Enablement

GitHub Workflow Standardization Peer Review Enablement Technical Training and Enablement Cross-Functional Delivery Process Standardization AI-Augmented Development Distributed Team Collaboration Async Cross-Team Communication Self-Directed Project Delivery

Technical Skills

Languages & Scripting

PowerShell (Scripts & Modules) JavaScript HTML & CSS JSON Bash

Platforms & Tools

Microsoft Intune Microsoft Entra ID (Azure AD) Windows Autopilot MECM / SCCM Microsoft Azure Microsoft 365 Windows Update for Business Microsoft Graph API / SDK ServiceNow Power BI Brinqa

DevOps & Infrastructure

Git & GitHub CI/CD Pipelines TeamCity Octopus Deploy Infrastructure as Code (IaC) Group Policy Mobile Device Management (MDM)

Security & Compliance

TLS/SSL Configuration Vulnerability Remediation Endpoint Compliance Cipher Suite Management PCI Compliance

Professional Experience

Large Global Enterprise (Retail & Technology)

August 2018 - Present • 7+ Years

Supporting 350,000+ endpoints and 2.1 million users

November 2023 - Present

Systems & Infrastructure Engineer III

Own the enterprise Windows platform experience for kiosk fleets, operating with high autonomy due to leadership transitions while prioritizing systemic fixes and preventative systems over reactive work.

  • Led phased upgrade of 18,000+ employee-facing HR, timekeeping, and e-learning kiosks to Windows 11 using SCCM task sequences. Resolved deployment issues encountered at scale
  • Modernized ~500 customer-facing in-store ordering kiosks from Windows 10 multi-app desktop-style to Windows 11 single-app full-screen experience. Improved usability and reduced support complexity
  • Landing Page Studio: GUI and no-code kiosk landing page builder enabling non-engineers to design locally hosted kiosk experiences
  • Assigned Access XML Builder (Making Kiosks Simple Again): Guided builder that abstracts and validates kiosk Assigned Access XML
  • Configuration Blender: Role-based framework to restore devices to a known-good state and mitigate configuration drift
  • WinDAS: Comprehensive diagnostics that reduce incident discovery time
  • PULSE: Lightweight OS-focused diagnostics for fast triage
  • Remote Connectivity PowerShell Module: Name-based remote access in segmented networks through automated lookup and validation
  • GitHub101: Training and enablement that standardized GitHub workflows and peer review
  • Project Hampton: Structured learning platform enabling AI-assisted development and rapid prototyping
  • UserLogonTracking: Reliable logon tracking and automated stale profile cleanup for shared systems
  • Driving enterprise-wide migration of Group Policy configurations to Intune MDM, modernizing endpoint governance and enabling cloud-native device management via Microsoft Entra ID and Windows Autopilot at scale
  • Built web-based HTML reporting tools using PowerShell and JavaScript to provide stakeholders with clear, interactive visibility into Group Policy and Intune configuration states across the enterprise
  • Served as 1 of 3 enterprise script approvers, ensuring code quality and traceability across distributed engineering teams via structured peer review
October 2021 - November 2023

Systems & Infrastructure Engineer II

  • Helped drive a team objective to reduce support queue volume by 60%, ultimately achieving nearly 70% reduction through PowerShell-based configuration drift remediation tools, proactive Intune configuration profiles, and automated remediations that resolved issues before they generated tickets
  • Orchestrated global Intune Health Script deployment managing TLS/SSL cipher suites across 300,000+ Windows devices, partnering with Risk Management to align security posture with Brinqa vulnerability reporting and eliminate legacy protocols
  • Directed migration of virtual environments from Configuration Manager to Windows Update for Business, reducing change controls from 24 to 6 through standardized patching and a streamlined approval process
  • Developed a ServiceNow telemetry extraction and Power BI reporting pipeline that provided actionable insight into incident patterns, enabling data-driven prioritization of proactive remediation efforts
  • Served as cross-functional liaison between OS Engineering and Vulnerabilities teams across multiple locations, providing remediation strategies, authoring PowerShell scripts and Intune compliance configurations
  • Researched and communicated monthly patch content to Risk Management, developing rollout strategies aligned with risk mitigation priorities and stakeholder transparency
August 2019 - October 2021

Associate Systems Engineer

  • Engineered modular PowerShell GUI tool integrating 30+ scripts, standardizing support desk procedures
  • Developed comprehensive automation suite, accelerating resolution time by 40% and reducing support tickets significantly
  • Co-architected skills-based assessment framework integrated with ServiceNow
  • Implemented automated reporting solutions, reducing escalations by 25%
April 2019 - August 2019

Technician VI

  • Led global L2 support desk operations covering collaboration, hardware, telephony, mobile, and virtualized endpoints for 350,000+ users
  • Launched "PowerShell in a Month of Lunches" learning series, elevating team-wide automation capabilities
  • Constructed dynamic ServiceNow dashboards for real-time ticket trend analysis, improving MTTR by 30%
  • Pioneered diagnostic tools that became standard utilities across the support organization
August 2018 - April 2019

Technician V

  • Delivered overnight support to global distribution centers
  • Specialized in print infrastructure and software troubleshooting via ServiceNow
  • Maintained 98% SLA compliance during high-volume support windows

Previous Experience

Media Security Firm

Anti-Piracy Analyst

Jan 2018 - Jun 2018

Engineered macro-driven automation solution for forensic documentation, accelerating IP analysis workflows by 60%

Cloud Services Provider

Technical Support Engineer

Jun 2017 - Jan 2018

Provided expert technical guidance to MSPs for Microsoft 365, Symantec, and cloud platform deployments

Digital Agency

DevOps Engineer

Jun 2015 - Jan 2017

Architected CI/CD pipelines using TeamCity and Octopus Deploy, accelerating feature delivery by 35%

Regional Healthcare System

Information Technology Specialist

May 2011 - Apr 2015

Delivered Tier 2 desktop and application support, achieving 99% uptime for critical patient-facing systems

Broadcast Media Company

Traffic Manager / Radio Producer

Aug 2007 - Apr 2011

Managed ad traffic scheduling across 4 radio stations ensuring 100% FCC compliance; produced live sports broadcasts using NexGen automation

Printing and Awards Fabrication company

Manager of Information Technology

Apr 2001 - Apr 2011

Directed comprehensive IT operations spanning infrastructure, Active Directory, configuration management, and enterprise patch management systems

Internet Service Provider

Network Engineer

Feb 2005 - Mar 2006

Designed and implemented network infrastructure solutions enabling reliable high-speed internet service delivery

Public University

Human Resources Assistant

May 2004 - Feb 2005

Facilitated HR operations and streamlined administrative processes for university staff and faculty

Telecom Services Provider

Network Engineer

Aug 1999 - Apr 2001

Architected Intermapper-based network monitoring for telephony and optical connections, enabling proactive issue detection and resolution

AgTech Software Company

IT Technical Services Specialist

Jun 1998 - Jul 1999

Delivered technical support and managed infrastructure for mission-critical agricultural technology solutions

Quick-Service Restaurant Franchise

General Manager

Apr 1997 - Jun 1998

Directed franchise operations, staff development, and P&L management for high-volume location generating $1M+ annual revenue

Software and Video Game Retail Store

Assistant Manager

Apr 1996 - Apr 1997

Drove store performance from bottom 50 to top 10 nationwide through strategic merchandising and bundled sales initiatives


Projects

Education & Certifications

Education

Kirkwood Community College

Certificate in Website Development

University of Michigan

Certificate in Internet History, Technology, and Security

Certifications

2025 Competency in AI Essentials - CompTIA
2022 Microsoft Certified: Azure Fundamentals
2019 Apple Certified Support Professional 10.14
2017 ITIL® Foundation Certificate
2006 CompTIA Network+
2006 CompTIA i-Net+
2006 HDI Customer Support Specialist
1999 CompTIA A+

Awards & Recognition

🏆 Making A Difference Award (3x)
🏆 Bravo Award

Get In Touch

I'm always interested in discussing new opportunities and challenges in systems engineering and infrastructure automation.