Principal Windows Endpoint Engineer
Principal Windows Endpoint Engineer
Gurgaon, India, IN
About Foundever:
We are Foundever. Our 150,000 people across the globe connect many of the world’s best-known brands with their customers – 9 million times every day. As a global leader in customer experience (CX) management, we deliver experiences through voice, chat, social media and for 400+ clients, from Fortune 500 companies to startups. We value creativity, collaboration, and a commitment to excellence. Join our team and be part of a culture that fosters growth and advancement.
Overview
The Principal Windows Endpoint Engineer is the technical authority responsible for defining, training, and leading the enterprise endpoint management strategy. This role ensures all Windows endpoints are secure, compliant, scalable, and aligned with HIPAA, PCI, and internal security standards. The Principal Engineer drives modernization initiatives, leads cross‑functional engineering efforts, and provides expert‑level guidance across the organization.
This position is hands‑on and works as the bridge between Engineering and Architecture teams, with a strong emphasis on strategy, automation, governance, and technical leadership.
Essential Duties & Responsibilities
Architecture & Strategy
- Ensure standardisation across Foundever’s enterprise Windows endpoint architecture - including Intune, SCCM/MECM, Autopilot, and related lifecycle technologies.
- Lead the transition toward cloud‑native, Intune‑first endpoint management and Zero Trust‑aligned device strategies.
- Maintain hardened baseline configurations aligned with HIPAA, PCI, CIS, and NIST frameworks.
- Work with Architecture teams to establish and coordinate engineering standards, governance models, and long‑term roadmaps for endpoint management.
- Evaluate emerging technologies and drive adoption of modern endpoint capabilities.
Technical Leadership
- Serve as the highest‑level technical escalation point for complex endpoint issues across engineering, security, and operations teams.
- Mentor engineers and guide best practices in automation, configuration management, and endpoint security.
- Represent endpoint engineering in standards boards, security reviews, and cross‑functional technical forums.
- Provide expert consultation to leadership on endpoint strategy, risk, and modernization initiatives.
Deployment & Automation
- Maintain and optimize OS and application deployment strategies using Intune, Autopilot, and SCCM/MECM.
- Develop enterprise‑grade PowerShell automation and reusable tooling to support configuration, compliance, and lifecycle operations.
- Oversee co‑management or migration strategies between SCCM and Intune.
Security & Compliance
- Own endpoint audit readiness for HIPAA, PCI, and internal security assessments.
- Partner with Security teams to design and enforce endpoint security controls, including ASR rules, BitLocker, Defender for Endpoint, and Conditional Access policies.
- Ensure endpoint configurations meet enterprise security baselines and regulatory requirements.
- Lead remediation strategies for endpoint vulnerabilities and compliance gaps.
Collaboration & Influence
- Work closely with Networking, Security, Identity, and Infrastructure teams to ensure cohesive endpoint architecture.
- Provide technical leadership during major deployments, client onboarding, and enterprise‑wide initiatives.
- Deliver training, documentation, and knowledge sharing to engineering and support teams.
Required Qualifications
- 10+ years of experience in endpoint engineering, systems administration, or enterprise device management.
- Expert‑level knowledge of Windows endpoint operating systems, including Windows 11.
- Deep hands‑on experience architecting and administering Intune/Endpoint Manager, Autopilot, and SCCM/MECM.
- Advanced PowerShell scripting and automation capabilities.
- Strong expertise in Active Directory, Group Policy, DNS, networking fundamentals, and identity‑driven device management.
- Proven experience in regulated environments (HIPAA, PCI, or similar).
- Strong understanding of Zero Trust principles and endpoint security hardening.
Preferred Qualifications
- Relevant certifications such as:
- Microsoft 365 Certified: Enterprise Administrator Expert
- Microsoft Certified: Endpoint Administrator
- Microsoft Certified: Cybersecurity Architect Expert
- CompTIA Security+ or equivalent
- ITIL Foundation
- Experience with CI/CD pipelines, automation frameworks, or configuration‑as‑code approaches.
- Familiarity with virtualization technologies (VMware, Hyper‑V).
- Experience designing large‑scale SCCM infrastructures (DPs, SUP, SQL, HA).
Job Segment:
Developer, Virtualization, SQL, Cyber Security, Database, Technology, Security