Senior Endpoint & Modern Workplace Engineer
Listed on 2026-07-09
-
IT/Tech
M365, SharePoint & Power Platform, Cybersecurity, Systems Administrator, Systems Engineer
PGI is a global consultancy that helps organisations build digital resilience. We deploy our people to implement solutions on behalf of clients or to support them in developing their own capabilities. Our vision is a world resilient to digital threats and online harm. To achieve this, we need to grow our team of talented and passionate people. Our clients include some of the most well‑known global brands, national governments, and innovative growing businesses.
We operate in an exciting, fast‑growing sector that bears increasing relevance and importance to nation‑states, corporates, universities, and NGOs.
We are seeking an experienced Senior Engineer to design, implement, and manage secure, scalable endpoint solutions across Windows and mobile (iOS and Android). The role focuses on modern device management using Microsoft technologies, including Autopilot, Intune, and Entra , while ensuring strong security controls through Conditional Access and application control policies.
You will act as a technical lead and escalation point for complex endpoint issues, contributing to continuous improvement initiatives and supporting the wider IT team through knowledge sharing and collaboration. This role will play a crucial part in ensuring the stability, security, and scalability of PGI’s IT infrastructure. The position combines technical expertise with hands‑on implementation, proactive systems management, and a strong commitment to continuous improvement, working closely with IT colleagues and business stakeholders to deliver robust infrastructure solutions that align with organisational goals.
WhatYou’ll Be Doing
- Design, implement and maintain Windows Autopilot deployments for corporate laptops, transitioning and optimising from SCCM
- Manage and secure endpoints using Microsoft Intune, Entra , and Conditional Access policies including update and driver management
- Administer and enhance MDM & MAM (iOS & Android), ensuring secure access to corporate data
- Maintain and improve endpoint security controls, including App Locker and/or App Control for Business, Bit Locker, Defender XDR
- Act as an escalation point for complex support issues, troubleshooting root causes and driving resolution, including IP networking, poor performance, stop codes
- Collaborate with the IT team to design, implement, and document solutions, ensuring consistency and maintainability
- Support and mentor team members, explaining technical concepts clearly and improving overall team capability
- Identify opportunities to automate, standardise, and improve endpoint management and security posture
- Ensure endpoint solutions align with ISO 27001, Cyber Essentials+, DCC, and organisational security policies
- A minimum of 7 years’ experience in Microsoft‑based on‑prem and SaaS infrastructure engineering, including Windows 11 endpoint management and modern workplace technologies such as Microsoft Intune, Entra , Conditional Access, Microsoft Defender XDR, and Microsoft 365
- Experience with SCCM‑based operating system deployment (OSD) and the transition to modern endpoint management using Windows Autopilot
- Hands‑on experience implementing and managing Windows Autopilot, Conditional Access policies, Mobile Device Management (MDM), Mobile Application Management (MAM) for iOS and Android, and Universal Print or equivalent solutions
- Experience with application control technologies such as App Locker or Microsoft Defender Application Control (App Control for Business preferred)
- Strong troubleshooting and root cause analysis skills, with the ability to resolve complex infrastructure and endpoint issues
- Experience working within secure, compliance‑driven environments
- Excellent communication and stakeholder management skills, with the ability to explain technical concepts to non‑technical audiences, collaborate effectively across teams, and provide technical leadership and guidance
- Building and managing environments with Windows 365 and/or Azure Virtual Desktop
- Power Shell and/or other automation experience
- Familiarity with endpoint security baselining and monitoring
- Proactive and security‑focused mindset
- Structured, methodical…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: