At a Glance
- Tasks: Design and support modern cloud-first endpoint solutions for diverse clients.
- Company: Join a dynamic managed services practice with a focus on innovation.
- Benefits: Enjoy competitive salary, funded certifications, and a dedicated learning day each month.
- Other info: Collaborate with a supportive team and gain exposure to various sectors and technologies.
- Why this job: Make a real impact by transforming client environments to modern, secure platforms.
- Qualifications: 3-5 years in End User Compute or Desktop Engineering; strong Microsoft Intune experience.
The predicted salary is between 50000 - 65000 β¬ per year.
We are looking for a Modern Workplace / End User Compute (EUC) Engineer to join our managed services practice. You will be the technical owner for a portfolio of client estates, designing, delivering and supporting cloud-first endpoint and virtual desktop platforms built on Microsoft 365, Intune, Entra ID and Azure Virtual Desktop. This is a hands-on engineering role with real client exposure. You will work alongside architects, project managers and service desk teams to migrate clients away from legacy on-premises management toward modern, zero-trust, cloud-managed environments, and keep those environments secure, patched and performant. Expect a mix of project delivery, escalations from the service desk, and continuous improvement of our managed offerings.
Key responsibilities
- Modern endpoint management: Intune & Autopilot: design, build and operate Microsoft Intune tenants β including Autopilot enrolment profiles, configuration profiles, compliance policies, Endpoint Security baselines and Update Rings across Windows 10/11.
- Application packaging & delivery: package and deploy Win32 apps, MSIX, store apps and Office/Microsoft 365 Apps via Intune; manage app lifecycle, supersedence and assignment strategies.
- Identity & access: configure Entra ID (formerly Azure AD), Conditional Access, MFA, SSPR, hybrid join, and Entra ID Connect synchronisation.
- Co-management & migration: migrate clients from SCCM / Configuration Manager and on-premises AD-joined estates to cloud-native, Entra-joined management.
Windows patch & update management
- Update strategy: design and operate Windows Update for Business (WUfB) policies, Update Rings, feature update profiles and Expedited update policies via Intune for both physical and virtual endpoints.
- Windows Autopatch: onboard eligible client tenants to Windows Autopatch, manage device and update groups, and triage release health alerts.
- Third-party patching: deploy and maintain third-party application patching via Intune (Win32 supersedence, Patch My PC, or equivalent) to keep browsers, runtimes and line-of-business apps current.
- Server & infrastructure patching: co-ordinate Azure Update Manager / WSUS scheduling for AVD session hosts, gold images and any remaining management infrastructure.
- Compliance & reporting: produce monthly patch compliance reports for clients using Intune reporting, Endpoint Analytics and Log Analytics; investigate and remediate non-compliant devices.
- Vulnerability response: work with the security team to prioritise out-of-band patches in response to CVEs and Microsoft Defender Vulnerability Management findings.
Virtual desktop & cloud workspace
- Azure Virtual Desktop (AVD): deploy and operate AVD host pools, session hosts, FSLogix profile containers, image management (custom images, Azure Image Builder) and scaling plans.
- Windows 365: provision and manage Cloud PCs, custom images, provisioning policies and user assignment.
- Citrix (advantageous): support of existing Citrix DaaS / CVAD estates during migration to Microsoft-native alternatives.
- Performance & cost: monitor session performance, right-size hosts and Cloud PCs, and contribute to FinOps reporting for client environments.
Service delivery & client engagement
- Third-line support: act as a senior escalation point for the service desk on EUC, Intune and AVD incidents and problems.
- Change & release: raise, peer-review and implement RFCs across multiple client tenants in line with ITIL change management.
- Documentation: produce and maintain high-quality build documents, run-books, low-level designs and knowledge base articles.
- Client-facing delivery: join client workshops, technical design sessions and project handovers; explain trade-offs in plain language to non-technical stakeholders.
Continuous improvement & automation
- PowerShell & Graph API: automate provisioning, reporting and tenant configuration using PowerShell, Microsoft Graph and Graph PowerShell SDK.
- Service development: feed back into our managed service standards, baselines and reference architectures so every new client benefits from prior work.
Essential skills and experience
- 3β5 years' hands-on experience in an End User Compute, Modern Workplace or Desktop Engineering role.
- Strong production experience with Microsoft Intune, Autopilot and Endpoint Security, ideally across multiple tenants.
- Solid working knowledge of Entra ID, Conditional Access, MFA and modern identity concepts (Zero Trust, device-based trust).
- Experience delivering and supporting at least one virtual desktop platform in production β Azure Virtual Desktop, Windows 365 or Citrix.
- Hands-on experience operating Windows patch management at scale β Windows Update for Business, Update Rings, feature update controls and patch compliance reporting.
- Confident with Windows 10/11, Microsoft 365 Apps, OneDrive Known Folder Move and Teams desktop deployment.
- Practical PowerShell scripting ability β comfortable reading, modifying and writing scripts that interact with Graph and Azure.
- Excellent written English and the ability to produce clear technical documentation for both peers and clients.
- Experience working in an ITIL-aligned environment with formal incident, problem and change processes.
Desirable skills and experience
- Prior experience in a Managed Service Provider (MSP) or IT consultancy environment.
- Exposure to macOS management via Intune or Jamf.
- Familiarity with SCCM / Configuration Manager and co-management migrations.
- Experience with Windows Autopatch, Azure Update Manager or third-party patching tooling (Patch My PC, Ivanti, ManageEngine).
- Experience with FSLogix, App Attach and image management pipelines.
- Working knowledge of Defender for Endpoint, Defender Vulnerability Management and Microsoft Purview.
- Experience with Power Platform β particularly Power Automate for EUC workflows.
Certifications
We are pragmatic about certifications β proven, hands-on experience matters most. However, there may be occasions where we require certification. The following are considered favourably and we will fund continued study and exam costs.
- Expected or in progress: MD-102 Endpoint Administrator Associate or MS-102 Microsoft 365 Administrator Expert.
- Advantageous: AZ-140 (AVD Specialty), SC-300 (Identity & Access Administrator), AZ-104 (Azure Administrator).
What you bring as a person
- A genuine curiosity for how things work β you read release notes, follow the product roadmaps and enjoy experimenting in a lab tenant.
- Calm under pressure during P1 incidents, with a structured approach to troubleshooting.
- A consulting mindset: you ask why before how, and tailor solutions to the client's size, sector and risk appetite.
- Strong communication β you can explain Conditional Access to a CFO and a junior engineer in the same week.
- Pride in clean, well-documented work that the rest of the team can pick up without you.
What we offer
- Genuine variety of work across multiple clients, sectors and platforms β no two weeks are the same.
- A senior, supportive engineering team and an architect community that mentors mid-level engineers toward Senior and Principal roles.
- Funded certifications, vendor training and a dedicated learning day every month.
- Competitive salary, pension, private medical and 25 days' holiday plus bank holidays.
Modern Workplace / End User Compute Engineer in Basingstoke employer: Workspace IT
Join a dynamic team as a Modern Workplace / End User Compute Engineer, where you'll enjoy a collaborative work culture that prioritises continuous learning and professional growth. With access to funded certifications, a supportive engineering community, and a diverse range of projects across various sectors, this role offers not just a job, but a meaningful career path in a cloud-first environment. Located in a vibrant area, you will experience a blend of innovation and teamwork, making it an excellent place to thrive both personally and professionally.
StudySmarter Expert Adviceπ€«
We think this is how you could land Modern Workplace / End User Compute Engineer in Basingstoke
β¨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even just grab a coffee with someone whoβs already in the role you want. You never know who might have the inside scoop on job openings!
β¨Tip Number 2
Show off your skills! Create a portfolio or a personal project that highlights your expertise in Microsoft Intune, Azure Virtual Desktop, or any other relevant tech. This gives potential employers a taste of what you can do and sets you apart from the crowd.
β¨Tip Number 3
Prepare for interviews by practising common questions related to End User Compute and Modern Workplace roles. Think about how youβd explain complex concepts like Conditional Access or Windows Autopatch to non-techies. Confidence is key!
β¨Tip Number 4
Donβt forget to apply through our website! Itβs the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Modern Workplace / End User Compute Engineer in Basingstoke
Some tips for your application π«‘
Tailor Your CV:Make sure your CV reflects the skills and experiences that match the Modern Workplace / End User Compute Engineer role. Highlight your hands-on experience with Microsoft Intune, Azure Virtual Desktop, and any relevant projects you've worked on.
Craft a Compelling Cover Letter:Your cover letter is your chance to show us your personality! Explain why you're excited about this role and how your background makes you a great fit. Donβt forget to mention your passion for modern workplace solutions and client engagement.
Showcase Your Technical Skills:In your application, be sure to highlight your technical expertise, especially in areas like PowerShell scripting and Windows patch management. We want to see how you can contribute to our cloud-first approach and keep client environments secure.
Apply Through Our Website:We encourage you to apply directly through our website. Itβs the best way for us to receive your application and ensures youβre considered for the role. Plus, it shows us youβre keen to join the StudySmarter team!
How to prepare for a job interview at Workspace IT
β¨Know Your Tech Inside Out
Make sure you brush up on your knowledge of Microsoft Intune, Autopilot, and Azure Virtual Desktop. Be ready to discuss your hands-on experience with these tools, as well as any challenges you've faced and how you overcame them.
β¨Showcase Your Problem-Solving Skills
Prepare to share specific examples of how you've tackled complex issues in previous roles. Think about times when you had to troubleshoot under pressure or implement a new solution, and be ready to explain your thought process.
β¨Communicate Clearly
Practice explaining technical concepts in simple terms. You might need to convey complex ideas to non-technical stakeholders, so being able to break things down will show your communication skills and consulting mindset.
β¨Demonstrate Continuous Learning
Highlight your curiosity and commitment to staying updated with the latest tech trends. Mention any recent certifications or training you've pursued, and express your enthusiasm for ongoing learning and improvement in the field.