×
Register Here to Apply for Jobs or Post Jobs. X

Senior Endpoint Engineer

Job in Greater London, London, Greater London, W1B, England, UK
Listing for: NBBJ
Full Time position
Listed on 2026-02-28
Job specializations:
  • IT/Tech
    Systems Engineer, Cybersecurity, IT Support
Salary/Wage Range or Industry Benchmark: 100000 - 125000 GBP Yearly GBP 100000.00 125000.00 YEAR
Job Description & How to Apply Below
Location: Greater London

This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board.

The role at a glance:

NBBJ is currently seeking a Senior Endpoint Engineer to join the London office. The Endpoint Engineer will be responsible for establishing and maintaining the gold standard for endpoint devices across NBBJ's global operations. This includes designing secure, high-performing device configurations, implementing robust management practices with tools such as SCCM, JAMF, Intune, and Purview, while driving innovation through the strategic use of AI.

Beyond core device and baseline management, this role supports and integrates a range of cloud based, user-facing platforms to ensure seamless, secure, and intuitive daily workflows.

This role works hands-on to ensure every device meets rigorous readiness criteria, proactively resolve technical challenges, and collaborate with teams to support new technologies and platforms. The ideal candidate understands how to balance security, user experience, and operational efficiency, communicates technical concepts clearly, and is instrumental in enabling seamless, secure, and innovative digital experiences for all users.

In your new role, you will:
Gold Device Standards
  • Define and maintain device specifications by persona/studio use case (performance targets, firmware/driver standards)
  • Coordinate with Asset & Licensing Specialist (ALS) for hardware alignment and lifecycle management
  • Supporting and informing initiatives related to engineering the end-user experience, ensuring that devices, cloud services, and security controls work together without friction
Secure Baselines & Readiness Gate
  • Author and version GPO/MDM baselines (Bit Locker, Defender, firewall, device control, local rights, browser/Office hardening, Wi-Fi/EAP, certificate chain)
  • Define readiness gate criteria and automated acceptance checks for device handoff
  • Managing and supporting firmwide cloud collaboration and storage tools such as Box, Share File, and other end user SaaS platforms
Endpoint Integrations
  • Engineer and maintain Autopilot/OOBE flows, enrollment status pages, update ring strategy, health/compliance connectors, and telemetry models for operations reporting
  • Utilize AI tools to automate and enhance endpoint management, validation, and security workflows
  • Map baselines to END controls, package CAB requests with risk notes, test plans, rollback/communication steps, and capture promotion evidence for audits
  • Partnering with Collaboration, UX, and Security teams to design cohesive, user-centered experiences across devices, applications, and services
Incident & Problem Management
  • Lead root cause analysis (RCA) for policy/baseline defects, update standards/readiness tests, and partner with Senior Desktop Engineer for safe redeployment
  • Troubleshooting and optimizing workflows that span multiple cloud systems, ensuring reliability, access integrity, and user productivity
  • Provide reference artifacts, publish diagrams/runbooks, and brief stakeholders on changes impacting device experience or training
  • Own and version secure baselines and readiness gates mapped to END controls; route changes via CAB; monitor control health and coauthor control adoptions/exceptions with Cybersecurity
What you will need to succeed:
  • Bachelor's degree in Computer Science, Information Technology, or related field, or equivalent experience
  • 5+ years in End User Computing or Endpoint Configuration Engineering
  • Certifications:

    MD-102, SC-200, SC-400 or equivalents preferred
  • Hands-on experience with JAMF, Intune, and Purview (required)
  • Experience with GPO, Autopilot/OOBE, update rings, compliance policies, certificate/802.1X/Wi-Fi profiles
  • Demonstrated ability to use AI tools to automate, validate, and improve endpoint workflows and security
  • Excellent problem-solving and communication skills
  • Familiarity with automation tools and scripting (Power Shell, Python)
  • Proven ability to manage projects and support cross-functional initiatives
Additional attributes to help you succeed:
  • Experience with architecture/design firm environments
  • Experience with MacOS, Microsoft Teams Rooms, Meta 3 VR headsets and other Android based devices in an enterprise environment
  • Citrix (Virtual Apps/Desktops, Workspace) experience is a strong plus, especially in environments blending physical endpoints with virtualized workloads
  • Security-by-design: builds secure defaults and proves them with telemetry
  • Systems thinking: simplifies policy portfolios; designs for resilience & rollback
  • Change stewardship: meticulous with CAB artifacts, evidence, and communications
  • Partnership mindset: enables teams and stakeholders to run faster via clear, testable standards

NBBJ is an Equal Opportunity Employer. M/F Disabled and Vet EEO/AA Employer.

#J-18808-Ljbffr
Position Requirements
10+ Years work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary