> Markdown version of [/jobs/ext/3134541-enterprise-vulnerability-engineer](https://www.wearedevelopers.com/jobs/ext/3134541-enterprise-vulnerability-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Enterprise Vulnerability Engineer - **Company:** Hays plc - **Location:** London, UK (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Application Packaging, Desktop Computing, System Center Configuration Manager, Citrix Systems, Windows PowerShell, Software Deployment, Software Vulnerability Management, Microsoft InTune, Patch Management, Qualys - **Published:** September 29, 2026 - **Apply:** https://www.hays.co.uk/job-detail/enterprise-vulnerability-engineer-london-remote-wfh-_4829495 ## About the Role * 5+ years' experience in Endpoint Engineering, Desktop Engineering, or Endpoint Management. * Strong SCCM/MECM administration, application packaging, and software deployment expertise. * Advanced PowerShell scripting and automation skills. * Experience with vulnerability remediation, patch management, and root cause analysis. * Strong Windows 11, Active Directory, Group Policy, and Microsoft 365 knowledge. Nice to Have * Qualys vulnerability management experience. * Microsoft Intune and modern endpoint management. * Citrix Virtual Apps & Desktops. * Microsoft Defender technologies. * Nexthink or Digital Employee Experience tooling. ## Description Endpoint Vulnerability Engineer The Opportunity We're looking for an experienced Endpoint Vulnerability Engineer to help improve security, compliance, and endpoint performance across a large enterprise environment. This role is focused on identifying and remediating endpoint vulnerabilities, driving automation, and delivering long-term engineering solutions. You'll work closely with Security and End User Technology teams, using tools such as SCCM/MECM, PowerShell, Windows 11, and Qualys to reduce risk and improve operational efficiency. Key Responsibilities * Investigate and remediate endpoint vulnerabilities across the Windows estate. * Analyse security findings and perform root cause analysis to prevent repeat issues. * Package, test, and deploy applications, patches, and configuration changes using SCCM/MECM. * Develop PowerShell automation to improve remediation, reporting, and operational processes. * Collaborate with Security and Infrastructure teams to drive continuous improvement and enhance endpoint reliability. Skills & Experience Essential * 5+ years' experience in Endpoint Engineering, Desktop Engineering, or Endpoint Management. * Strong SCCM/MECM administration, application packaging, and software deployment expertise. * Advanced PowerShell scripting and automation skills. * Experience with vulnerability remediation, patch management, and root cause analysis. * Strong Windows 11, Active Directory, Group Policy, and Microsoft 365 knowledge. Nice to Have * Qualys vulnerability management experience. * Microsoft Intune and modern endpoint management. * Citrix Virtual Apps & Desktops. * Microsoft Defender technologies. * Nexthink or Digital Employee Experience tooling. If you're potentially interested please send your CV to Billy.McDonald@hays.com #4829495 - Billy