• Cars & Vehicles
Cars & Vehicles
Browse by
  • Cars
  • Motorbikes & Scooters
  • Vans
  • Campervans & Motorhomes
  • Caravans
  • Trucks
Discover more in our guides
For Sale
Browse by
Services
Browse by
  • Business & Office
  • Childcare
  • Clothing
  • Computers & Telecoms
  • Entertainment
Property
Browse by
  • For Sale
  • To Rent
  • To Share
Pets
Browse by
  • Birds
  • Cats
  • Dogs
Jobs
Browse by
Community
Browse by
  • Artists & Theatres
  • Classes
  • Events, Gigs & Nightlife

Contact Investigo

Investigo

Apply on company site

EUC Engineer

Surrey Quays, London

Investigo

Contact Investigo

Hours
Full Time
Posted
4 hours ago
Salary
£375 - 425 - Day
Recruiter
Investigo
Closes
22 Mar 2026
Course
No
Recruiter Type
Direct Employer

Description

Microsoft EUC Engineer

Location: Surrey – Hybrid working – 3 days a week onsite

Duration: 6-month Contract initially

Daily Rate: £400 - £425

IR35 Status: Inside IR35 – You will be required to work through an Umbrella company

About the Role:

We are looking a skilled Microsoft EUC (End-User Computing) Engineer to join our client on a contract basis.

In this role, you will take ownership of evolving modern endpoint management using Microsoft technologies such as Intune and Configuration Manager, delivering and operating Azure Virtual Desktop (AVD), and guaranteeing secure, reliable, and compliant patching and software delivery across the organisation's estate.

Primary Duties & Responsibilities:

Endpoint & Device Management

Design, deploy, and manage Intune (MDM/MAM) for Windows 10/11, including configuration profiles, compliance policies, update rings, feature updates, Security Baselines, BitLocker, and Defender policies.

Maintain and optimise Microsoft Configuration Manager (SCCM/ConfigMgr) for application packaging, task sequencing, OS deployment, software updates, and co-management strategies with Intune.

Lead Windows Autopilot provisioning workflows, ensuring seamless device naming, enrolment, and remediation processes.Patching, Updates & Compliance

Oversee the security patching service, including monthly cycles, pilot rings, rollbacks, out-of-band updates, and reporting on deployment success, SLA adherence, and CVE coverage.

Incorporate vulnerability findings into patching plans, addressing high-severity issues and publishing compliance dashboards and summaries.Azure Virtual Desktop (AVD)

Engineer and operate AVD host pools (pooled & personal), golden image strategies, FSLogix profiles, app layering, and scaling plans.

Implement AVD monitoring, auto-healing, and patch scheduling while testing and maintaining security controls, incorporating Conditional Access, MFA, and trusted location policies.Identity, Policy & Security

Manage Active Directory (OU design, GPO creation/troubleshooting) and Microsoft Entra ID for device identity, compliance, and Conditional Access scenarios.

Apply Microsoft Defender policies and baseline hardening while enhancing local admin controls, application security, and privilege reduction.Networking (Azure & On-Prem)

Troubleshoot endpoint connectivity across DNS/DHCP, Wi-Fi, VPNs, and NAC.

Collaborate on Azure networking setups (VNets, NSGs, routing, firewalls) for reliable software distribution and management traffic on endpoints and AVD.Packaging, Automation & Tooling

Build and maintain Win32/MSIX packages, automating deployments and system health checks using PowerShell and Graph API.

Drive service improvement insights using Log Analytics, Update Compliance, SSRS, and Power BI.

Required Experience & Skills:

Essential Skills:

Demonstrable experience managing large Windows 10/11 estates with Intune and Configuration Manager, including co-management or migration experience.

Expertise in AVD engineering, covering image creation, session host patching, FSLogix, scaling, monitoring, and troubleshooting pooled and personal setups.

Strong knowledge of patch management, Windows Update for Business, compliance reporting, and servicing channel operations.

Proven track record in Active Directory and Entra ID configurations with a focus on Conditional Access and security fundamentals.

Competency in packaging (Win32/MSIX), scripting (PowerShell), and endpoint automation.

Networking knowledge applicable to endpoint and AVD scenarios, including DNS, certificates, VPN, and proxies.

Desirable Skills:

Experience transitioning from ConfigMgr to Intune and implementing Autopilot at scale.

Familiarity with Defender, WDAC/AppLocker, CIS baselines, and ITSM practices (ITIL).

Monitoring and observability expertise, using tools like Log Analytics and Azure Monitor.

Knowledge of Azure infrastructure (IaaS) and image pipelines.

Certifications (Preferred):

MD-102 (Endpoint Administrator)

AZ-140 (Azure Virtual Desktop)

AZ-104 (Administrator)

SC-200/SC-900 (Security Basics)

To apply or find out more information, please send through a copy of your CV or email – (url removed)

At Investigo, we make recruitment feel easy.

Let’s keep this simple. We’re all about your success, as your success is our business. We are part of The IN Group, a collection of six award-winning specialist brands that supply the globe with end-to-end talent solutions. xjnqpsq With recruitment at the core of our business, we’ve been connecting people since 2003.

Data & Privacy

By applying, you consent to Investigo collecting and processing your data for the purpose of recruitment and placement, in accordance with applicable data protection laws. For more information, please refer to our Privacy Notice at (url removed)

Ad ID: 5417745957

Jobs