×
Register Here to Apply for Jobs or Post Jobs. X

Endpoint Engineer

Job in Greater London, London, Greater London, W1B, England, UK
Listing for: Fitch Group
Full Time position
Listed on 2026-07-04
Job specializations:
  • IT/Tech
    M365, SharePoint & Power Platform, IT Infrastructure, Azure
Salary/Wage Range or Industry Benchmark: 60000 - 80000 GBP Yearly GBP 60000.00 80000.00 YEAR
Job Description & How to Apply Below
Location: Greater London

Fitch Group is currently seeking an Endpoint Engineer based out of our London office.

The Endpoint Engineer is a key technical contributor within the global infrastructure organization, providing advanced (Tier 2/3) support, endpoint management, and platform engineering across Windows, Microsoft Intune, and related technologies. This role delivers secure, reliable, and frictionless user experiences through modern device management practices, automation, observability, and Zero Trust principles.

How You’ll Make an Impact Endpoint Platform Engineering (Windows CSP / Intune)
  • Own the migration of legacy Group Policy configurations to modern CSP‑based Intune policy, resolving conflicts to protect platform consistency and compliance posture.
  • Design and maintain consolidated, well‑governed CSP policy structures across the fleet.
Hardware Fleet & Device Lifecycle
  • Drive vendor‑led firmware and driver lifecycle management — including HP Image Assist and Dell Command Update automations — to improve device stability and end‑user experience.
  • Troubleshoot and remediate audio, video, and conferencing reliability issues.
  • Perform hardware and performance testing/benchmarking to support fleet standardization decisions.
  • Modernize Windows Autopilot and provisioning workflows to reduce legacy dependencies and improve consistency.
  • Resolve drive‑mapping dependencies and CSP conflicts affecting the provisioning pipeline.
  • Complete remaining GPO‑to‑CSP transitions in support of provisioning consistency.
Application & Configuration Management
  • Package, test, and deploy enterprise applications using MECM/Intune and modern deployment frameworks, ensuring compliance with internal and regulatory requirements.
  • Collaborate with engineering leadership to design, implement, and operationalize endpoint policies, configurations, and standards in support of global infrastructure initiatives.
Developer Tooling & AI Workload Enablement
  • Configure, package, and support core developer tooling across the fleet (VS Code, Python, Git, CLI utilities), balancing developer flexibility with security and compliance standards.
  • Define and support endpoint requirements for AI/ML workloads, including GPU driver management, containerization/WSL2, and local model runtime resource sizing.
  • Partner with engineering and data teams to evaluate, standardize, and roll out AI‑assisted developer tools (e.g., Claude Code, Copilot) within governance and device‑management guardrails.
Operations & Support
  • Deliver advanced incident and problem resolution with a strong focus on user experience and root‑cause elimination.
  • Execute recurring operational activities, including patching, vulnerability remediation, compliance reporting, and endpoint health monitoring.
  • Partner closely with the Service Desk to drive continuous improvement, streamline workflows, and reduce recurring issues through automation or policy enhancement.
  • Participate in an on‑call rotation to support critical after‑hours incidents or high‑priority escalations.
Documentation & Cross‑Functional Collaboration
  • Create and maintain technical documentation, runbooks, and cross‑team knowledge resources.
  • Engage in cross‑functional project work spanning cloud identity, automation, security hardening, and software lifecycle management.
  • Act as an owner by proactively driving issues to resolution across business.
You May be a Good Fit if:

3–5+ years in enterprise endpoint engineering or advanced support, with hands‑on experience in:

  • Microsoft Intune (Endpoint Manager), MECM, and co‑management services
  • Active Directory and Directory Services, including Group Policy and RSAT tools
  • Intune configuration and compliance policy management
  • LAPS and least‑privilege / privilege elevation models (e.g., Privilege Management)
  • Microsoft 365 Apps deployment, configuration, and update servicing
  • Networking fundamentals (DNS, DHCP, VPN, Proxy)

Strong experience with modern Intune management, including:

  • Windows Autopilot (user‑driven, pre‑provisioning, self‑deploying)
  • Zero‑touch provisioning and cloud‑first imaging strategies
  • Intune application management (Win
    32, MSI, MSIX, store apps, managed apps)
  • Settings Catalog, Compliance Policies, and Configuration Profiles
  • De…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary