About this role
About the Role The Workplace Engineer / Packaging SME is responsible for engineering, maintaining, and evolving the enterprise digital workplace environment, with a deep focus on modern application packaging, software lifecycle management, and automation. This role ensures end-user devices are secure, reliable, and optimized, delivering a seamless and high-performing user experience across the organization. The ideal candidate combines strong technical skills in application packaging and deployment with broad expertise in Intune, SCCM, Windows system engineering, and modern endpoint management.
What You'll Do
- Build, package, and maintain applications using MSI, MSIX, IntuneWin, and scripted installers (PowerShell).
- Perform compatibility testing, dependency resolution, and application readiness validation.
- Maintain packaging standards, naming conventions, versioning, and documentation.
- Automate packaging pipelines using PowerShell and CI/CD (Azure DevOps, GitHub Actions, etc.).
- Manage application deployments via Microsoft Intune and/or MECM/SCCM.
- Troubleshoot packaging issues, installation failures, and application conflicts.
- Liaise with relevant Application owners and vendors.
- Develop, maintain, and improve Windows 10/11 device configurations and baselines.
- Engineer, test, and deploy Windows Autopilot, Intune device configuration + compliance policies, Microsoft Defender for Endpoint, Windows Update for Business.
- Optimize login performance, device health, OS stability, and user experience.
- Implement modern management and co-management strategies.
- Create and maintain automation scripts in PowerShell for: Intune management, software deployment, endpoint remediation, OS configuration, and application lifecycle management.
- Contribute to shared script repositories and drive automation maturity.
- Act as the SME for app packaging escalations; support major Workplace incidents affecting desktop/app performance; collaborate with security, networking, identity, and other infrastructure teams.
- Ensure packaged apps meet organizational and regulatory security standards; manage code signing certificates and packaging trust requirements; provide patching for application vulnerabilities; support compliance efforts (CIS, NIST, ISO27001, etc.).
- Lead or contribute to Workplace transformation projects, such as OS version upgrades, application modernization (EXE → MSI/MSIX), zero-touch provisioning / Autopilot rollout, and legacy remediation with vendor coordination.
What We're Looking For
- 4+ years in Workplace Engineering, End User Computing, or IT Operations.
- Advanced experience with Application Packaging Tools (Admin Studio, PSADT, MSIX Packaging Tool, Advanced Installer, Orca, Patch My PC, etc.).
- PowerShell (advanced scripting and automation).
- Microsoft Intune (Apps, Win32 deployments, device config, compliance).
- SCCM/MECM (optional if Intune-only environment).
- Strong understanding of Windows internals, registry, services, file systems, event logs.
- Experience troubleshooting app installs with Process Monitor, Process Explorer, CM Trace, Event Viewer.
- Familiarity with CI/CD pipelines (Azure DevOps, GitHub).
- Knowledge of ITIL processes (Change, Incident, Problem).
- Excellent communication and documentation skills.
Compensation & Benefits
- Flexible Work Hours
- Hybrid working model (Mon & Fri WFH)
- Medical Insurance
- Parental leave Policy
- On-site crèche facility
- Annual Health Check-up
- Employee Assistance Program