Endpoint SME / Endpoint, Device & Provisioning Engineer
Location: 100% Remote and 1 visit a month to London Office
Role Type: Endpoint SME
We're looking for an experienced Endpoint SME to help build and scale modern, automated, zero‑touch device management across Windows, macOS, iOS/iPadOS, and Android. Working within our CTO organisation, you'll engineer the next generation of endp...
Endpoint SME / Endpoint, Device & Provisioning Engineer
Location: 100% Remote and 1 visit a month to London Office
Role Type: Endpoint SME
We're looking for an experienced Endpoint SME to help build and scale modern, automated, zero‑touch device management across Windows, macOS, iOS/iPadOS, and Android. Working within our CTO organisation, you'll engineer the next generation of endpoint, provisioning, and DaaS capabilities that power our Digital Workplace services.
What You'll Do
- Engineer and enhance Microsoft Intune for compliance, configuration, app deployment, and reporting.
- Build zero-touch provisioning workflows using Autopilot, ABM/ADE, Android Enterprise, Power Automate, Graph API, and PowerShell.
- Develop cross‑platform device management and security baselines (Windows, macOS, iOS, Android).
- Implement encryption, PKI, SCEP, certificate enrolment, and Defender for Endpoint.
- Produce reusable automation, provisioning patterns, scripts, and documentation.
- Support DaaS fulfilment, partner logistics, and provisioning processes.
- Collaborate with identity, security, and operations teams to deliver unified device experiences.
What We're Looking For
- Strong hands-on Intune / Endpoint Manager experience.
- Cross-platform MDM knowledge (Apple, Android, Windows).
- Proven automation and scripting capability (PowerShell, Graph API, Power Automate).
- Experience with Autopilot or large-scale zero-touch deployments.
- Understanding of DaaS fulfilment or device provisioning pipelines.
- Excellent documentation and engineering pattern creation skills.
- MSP or enterprise engineering experience (preferred).
Modern Endpoint & Configuration
- Microsoft Intune / Endpoint Manager
- Compliance, configuration, applications
- Custom scripts, remediations, reporting
Provisioning & Zero-Touch
- Windows Autopilot
- Apple Business Manager / ADE
- Android Enterprise Zero‑Touch
- DaaS fulfilment and logistics integration
Cross-Platform MDM
- macOS, iOS/iPadOS, Android
- Jamf (beneficial)
- ABM/ASM integration
Endpoint Security
- Microsoft Defender for Endpoint
- BitLocker / FileVault
- PKI, SCEP, certificate enrolment
Automation
- Power Automate
- Graph API
- PowerShell
- Provisioning & lifecycle automation workflows
Certifications
Required:
- Microsoft Certified: Endpoint Administrator Associate (MD‑102)
Beneficial:
- Jamf certifications
- Android Enterprise
- Power Automate / Microsoft automation
- Apple device management (ABM/ASM)

