Digital Workplace Engineer (EUC)
Posted 7 hours 57 minutes ago by Spirax-Sarco Engineering
Location: Cheltenham, Gloucestershire (hybrid working)
The RoleWe are looking for a Digital Operations Engineer specialising in Endpoint Configuration & Policy to join our Digital Operations team. In this role, you will support the design, implementation, and continuous improvement of endpoint configuration, compliance, and security policies across a global environment.
You'll play a key part in delivering a consistent, secure, and scalable digital workplace experience, working primarily with Microsoft Intune and modern device management technologies. Acting as a subject matter expert, you will contribute to platform stability, compliance targets, and ongoing service improvement, while providing third line support for complex endpoint issues.
Key Responsibilities- Support the configuration and lifecycle management of Intune policies, compliance settings, and security baselines
- Assist with endpoint security controls, including Defender for Endpoint and encryption policies
- Help standardise and govern endpoint configuration across regions
- Support Entra ID device management and Conditional Access troubleshooting
- Assist with patch management (Windows Autopatch, Windows Update for Business, and third party applications)
- Monitor device compliance and contribute to reporting dashboards and insights
- Develop and maintain documentation, runbooks, and knowledge articles
- Support device enrolment technologies such as Windows Autopilot, Apple Business Manager, and Android Enterprise
- Assist with application packaging and deployment through Intune
- Provide third line support for endpoint and policy related issues
- Collaborate with internal teams and vendors to resolve technical challenges and improve services
- Experience in IT infrastructure, endpoint management, or end user support
- Hands on experience with Microsoft Intune or similar MDM platforms
- Experience working with Windows 10/11 in enterprise environments
- Understanding of Active Directory / Entra ID and cloud identity
- Knowledge of mobile device management (iOS and/or Android)
- Experience with patch management processes such as Windows Update for Business or Autopatch
- Familiarity with IT service management frameworks
- Understanding of endpoint security and compliance standards (e.g., CIS benchmarks)
- Strong working knowledge of Microsoft Intune
- Good understanding of Windows, iOS, and Android operating systems
- Knowledge of Entra ID and Conditional Access
- Understanding of endpoint security tools such as Defender for Endpoint
- Familiarity with Windows Autopilot and modern provisioning
- PowerShell scripting (desirable)
- Strong analytical and problem solving skills
- Excellent communication and collaboration abilities
- Experience in documentation and process development
- Awareness of compliance reporting tools (e.g., Intune reporting, Power BI)
- Microsoft Endpoint Administrator Associate (MD 102) or working towards it
- Experience with SCCM/MECM or third party patching tools
- ITIL Foundation certification
- Exposure to AV or print technologies
You will receive a competitive salary (and a discretionary bonus), flexible working and excellent benefits including 27 days holiday allowance (before bank holidays), 3 days' paid volunteering leave, comprehensive private healthcare, enhanced pension plan, life assurance, optional participation in a Share Ownership Plan, free onsite parking, flexible benefits, and access to a personal discounts portal. We also offer additional support and benefits through our inclusion plan.
We are also a Disability Confident Committed Employer. If you would like to apply using this scheme, please select this option in our application form or notify our recruitment partners.