Windows SME
About Persistent:
We are an AI-led, platform-driven Digital Engineering and Enterprise Modernization partner, combining deep technical expertise and industry experience to help our clients anticipate what’s next. Our offerings and proven solutions create a unique competitive advantage for our clients by giving them the power to see beyond and rise above. We work with many industry-leading organizations across the world, including 20 Fortune 50 companies and 4 of the 5 top banks in both the US and India, and numerous innovators across the healthcare ecosystem.
Our disruptor’s mindset, commitment to client success, and agility to thrive in the dynamic environment have enabled us to sustain our growth momentum. Persistent has been recognized across top industry platforms for innovation, leadership, and inclusion. We have delivered 21 sequential quarters of growth with $389.7M in Q1 FY26 revenue, up 3.9% Q-o-Q and 18.8% Y-o-Y growth. Our 25,000+ global team members, located in 18 countries, have been instrumental in helping the market leaders transform their industries. We have been named the fastest-growing Indian IT services brand in the “Brand Finance India 100” 2025 report. We were also cited as a Leader in the ISG Provider LensTM 2025 for Digital Engineering Services 2025 and the Everest Group Talent Readiness for Next-generation Application Services PEAK Matrix® Assessment 2025.
We are fast growing company (with $1 billion dollars in revenue). Plan to grow at Krakow, Poland. If you’re interested in working on bleeding Data and AI technologies, join us.
Read more - https://www.persistent.com/
About Position and details:
- Role: Windows / M365 / Intune Engineer (Banking Sector – Windows SME)
- Location: Harbour Exchange Square, London
- Mode: Hybrid
- Experience: 10 to 15 years
- Job Type: Permanent role
Summary
We are hiring a Windows SME in UK location who has Device and Image management experience on Intune to support a leading financial services organization. The role requires a highly experienced engineer with deep expertise in Windows engineering, Microsoft 365, Microsoft Intune, and enterprise‐grade security and compliance controls aligned with banking-sector regulatory expectations. The successful candidate will work onsite within a regulated environment, ensuring all systems adhere to strict audit, security, and change‐management standards.
Job Description:
Key Responsibilities
Windows Engineering (Banking Environment)
- Lead the design, engineering, and lifecycle management of Windows 10/11 across trading floors, corporate offices, and secure environments.
- Maintain a hardened, compliant Windows desktop baseline aligned with financial sector requirements (e.g., CIS/NIST/NCSC).
- Support high‐availability endpoint environments used by traders, analysts, and regulated functions.
Intune / Modern Device Management
- Design and operate Intune-based modern management solutions with a focus on security, compliance, and policy governance required in banking.
- Manage Autopilot provisioning for distributed and secure device deployment.
- Build Win32 application packages, configuration profiles, compliance rules, and security policies with strict adherence to change-control procedures.
- Support co-management scenarios with MECM/SCCM, where required within legacy systems.
Device & Image Management
- Maintain a secure, version-controlled Windows image for regulated environments, ensuring:
- Risk-assessed image changes
- Comprehensive audit documentation
- Traceable approval workflows
- Continuously optimize Autopilot and provisioning to support large-scale banking device rollouts.
Security, Compliance & Audit
- Implement device controls and configurations aligned to:
- FCA, PRA, EBA guidelines
- Cyber Security Frameworks
- SOX controls (where applicable)
- Manage and monitor:
- BitLocker, Defender for Endpoint, ASR Rules, Credential Guard, Disk Encryption
- Ensure every change follows strict governance: CAB, audit trails, risk assessments, and rollback plans.
M365 & Entra ID
- Manage Entra ID device identities, Conditional Access rules based on zero-trust principles, and device security posture.
- Oversee secure rollout of M365 Apps, Teams, OneDrive KFM, and productivity tools in a regulated banking context.
Automation & Scripts
- Develop secure and reusable PowerShell automation for:
- Deployment
- Compliance remediation
- Endpoint analytics reporting
- Follow Git-based version control and produce auditable script documentation.
Stakeholder Engagement
- Serve as the Windows and Intune SME for internal teams including:
- Security
- Risk & Compliance
- End-User Computing
- Trading Support
- Provide senior-level technical guidance and mentor team members.
Essential Skills & Experience
- 10+ years in Windows engineering, ideally within the banking or financial services sector.
- Proven Device and Image management experience using Intune and Autopilot.
- Expert-level knowledge of Windows 10/11, M365, Intune, Autopilot, Conditional Access, and Defender.
- Experience working in regulated, audited, and high‐security environments.
- Strong understanding of compliance requirements such as:
- Regulatory audits (FCA/PRA)
- Data privacy policies
- Security baselines
- Strong PowerShell development skills (scripted packaging, policy automation, remediation).
KPIs (Aligned to Banking Standards)
- Endpoint compliance ≥ 99%
- Security patching SLAs:
- Critical patches: within defined risk window
- Monthly updates: > 95% success rate
- Zero critical audit findings related to endpoint.
- Reduction of repeat incidents and high-severity endpoint outages.
- Fully documented and risk-assessed engineering changes.
Benefits :
- Competitive salary and benefits package
- Culture focused on talent development with quarterly promotion cycles and company-sponsored higher education and certifications.
- Opportunity to work with cutting-edge technologies.
- Employee engagement initiatives such as project parties, flexible work hours, and Long Service awards
- Annual health check-ups
- Insurance coverage: group term life, personal accident, and Mediclaim hospitalization for self, spouse, two children, and parents
Let’s unleash your full potential at Persistent - persistent.com/careers.
“Persistent is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind.”