Enterprise Vulnerability Engineer

Hays plc
London, UK
8 days ago
Apply on www.hays.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Application Packaging Desktop Computing System Center Configuration Manager Citrix Systems Windows PowerShell Software Deployment Software Vulnerability Management Microsoft InTune Patch Management Qualys

Job description

Endpoint Vulnerability Engineer

The Opportunity

We’re looking for an experienced Endpoint Vulnerability Engineer to help improve security, compliance, and endpoint performance across a large enterprise environment.

This role is focused on identifying and remediating endpoint vulnerabilities, driving automation, and delivering long-term engineering solutions. You’ll work closely with Security and End User Technology teams, using tools such as SCCM/MECM, PowerShell, Windows 11, and Qualys to reduce risk and improve operational efficiency.

Key Responsibilities

  • Investigate and remediate endpoint vulnerabilities across the Windows estate.
  • Analyse security findings and perform root cause analysis to prevent repeat issues.
  • Package, test, and deploy applications, patches, and configuration changes using SCCM/MECM.
  • Develop PowerShell automation to improve remediation, reporting, and operational processes.
  • Collaborate with Security and Infrastructure teams to drive continuous improvement and enhance endpoint reliability.

Skills & Experience

Essential

  • 5+ years’ experience in Endpoint Engineering, Desktop Engineering, or Endpoint Management.
  • Strong SCCM/MECM administration, application packaging, and software deployment expertise.
  • Advanced PowerShell scripting and automation skills.
  • Experience with vulnerability remediation, patch management, and root cause analysis.
  • Strong Windows 11, Active Directory, Group Policy, and Microsoft 365 knowledge.

Nice to Have

  • Qualys vulnerability management experience.
  • Microsoft Intune and modern endpoint management.
  • Citrix Virtual Apps & Desktops.
  • Microsoft Defender technologies.
  • Nexthink or Digital Employee Experience tooling.

If you’re potentially interested please send your CV to Billy.McDonald@hays.com

4829495 - Billy

Requirements

  • 5+ years’ experience in Endpoint Engineering, Desktop Engineering, or Endpoint Management.
  • Strong SCCM/MECM administration, application packaging, and software deployment expertise.
  • Advanced PowerShell scripting and automation skills.
  • Experience with vulnerability remediation, patch management, and root cause analysis.
  • Strong Windows 11, Active Directory, Group Policy, and Microsoft 365 knowledge.

Nice to Have

  • Qualys vulnerability management experience.
  • Microsoft Intune and modern endpoint management.
  • Citrix Virtual Apps & Desktops.
  • Microsoft Defender technologies.
  • Nexthink or Digital Employee Experience tooling.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.hays.co.uk
Prepare application

Good distractions

Loading talks and stories from around this role…