End User Platform Vulnerability Engineer

Coforge

Greater London

On-site

GBP 70,000 - 90,000

Full time

10 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Coforge is seeking an experienced End User Platform Vulnerability Engineer to support endpoint security, remediation, packaging, and automation across a large enterprise environment. You will investigate vulnerabilities, develop sustainable remediation solutions, and manage software deployments.

The role requires hands-on experience with SCCM/MECM, PowerShell, Qualys, and Citrix VDI, plus ITIL change practices.

Qualifications

  • Strong experience with SCCM/MECM Administration and Application Packaging.
  • Hands-on experience in Endpoint Vulnerability Management and remediation.
  • Expertise in PowerShell scripting and automation.
  • Strong knowledge of Windows Desktop Platforms, Active Directory, Group Policy, and Microsoft 365.
  • Experience with Qualys or similar vulnerability management tools.
  • Experience troubleshooting software deployment, patching, and endpoint compliance issues.
  • Knowledge of Citrix Virtual Desktop environments.
  • Understanding of ITIL processes and change management practices.
  • Excellent troubleshooting, analytical, and stakeholder management skills.
  • Preferred ITIL Certification and experience in regulated environments.
  • Experience producing deployment validation, runbooks, and audit records.

Responsibilities

  • Investigate and remediate complex endpoint vulnerabilities across workstation and virtual desktop environments.
  • Analyse and prioritize vulnerabilities identified through Qualys and other security platforms based on risk, impact, and remediation feasibility.
  • Perform root cause analysis for recurring vulnerabilities, deployment failures, endpoint health issues, and compliance gaps.
  • Design, test, and implement sustainable engineering solutions to prevent recurrence of issues.
  • Create, test, and deploy application packages, security updates, and configuration changes using SCCM/MECM.
  • Develop and maintain PowerShell scripts for automation, remediation, validation, reporting, and health monitoring.
  • Troubleshoot SCCM/MECM client health, software distribution, patch deployment, and content delivery issues.
  • Execute controlled pilot deployments, technical validation, and rollback planning to minimize deployment risks.
  • Collaborate with Security and End User Platform teams to define remediation strategies and delivery priorities.
  • Produce technical documentation, runbooks, knowledge articles, audit evidence, and remediation records.
  • Provide regular updates on progress, risks, dependencies, and compliance metrics.
  • Support physical workstations, laptops, and Citrix virtual desktop environments.
  • Follow ITIL best practices across Incident, Problem, Change, and Request Management processes.

Skills

Endpoint vulnerability management
PowerShell scripting
Automation
Active Directory
Group Policy
Microsoft 365
Qualys
Patching
Endpoint compliance
Citrix VDI
ITIL processes
Troubleshooting
SCCM/MECM

Tools

SCCM/MECM

Job description

Job Title : End User Platform vulnerability Engineer
Experience: 8-12 Years
Job Overview:

We at Coforge are seeking an experienced EUP Vulnerability Engineer to support endpoint security, vulnerability remediation, application packaging, and automation across a large enterprise end-user computing environment. The successful candidate will be responsible for investigating vulnerabilities, developing sustainable remediation solutions, managing software deployments, and improving endpoint compliance and operational health.

Key Responsibilities
  • Investigate and remediate complex endpoint vulnerabilities across workstation and virtual desktop environments.
  • Analyse and prioritize vulnerabilities identified through Qualys and other security platforms based on risk, impact, and remediation feasibility.
  • Perform root cause analysis for recurring vulnerabilities, deployment failures, endpoint health issues, and compliance gaps.
  • Design, test, and implement sustainable engineering solutions to prevent recurrence of issues.
  • Create, test, and deploy application packages, security updates, and configuration changes using SCCM/MECM.
  • Develop and maintain PowerShell scripts for automation, remediation, validation, reporting, and health monitoring.
  • Troubleshoot SCCM/MECM client health, software distribution, patch deployment, and content delivery issues.
  • Execute controlled pilot deployments, technical validation, and rollback planning to minimize deployment risks.
  • Collaborate with Security and End User Platform teams to define remediation strategies and delivery priorities.
  • Produce technical documentation, runbooks, knowledge articles, audit evidence, and remediation records.
  • Provide regular updates on progress, risks, dependencies, and compliance metrics.
  • Support physical workstations, laptops, and Citrix virtual desktop environments.
  • Follow ITIL best practices across Incident, Problem, Change, and Request Management processes.
Required Skills & Experience
  • Strong experience with SCCM/MECM Administration and Application Packaging.
  • Hands-on experience in Endpoint Vulnerability Management and remediation.
  • Expertise in PowerShell scripting and automation.
  • Strong knowledge of Windows Desktop Platforms, Active Directory, Group Policy, and Microsoft 365.
  • Experience with Qualys or similar vulnerability management tools.
  • Experience troubleshooting software deployment, patching, and endpoint compliance issues.
  • Knowledge of Citrix Virtual Desktop environments.
  • Understanding of ITIL processes and change management practices.
  • Excellent troubleshooting, analytical, and stakeholder management skills.
Preferred Qualifications
  • ITIL Certification.
  • Experience working within regulated enterprise environments.
  • Exposure to endpoint security, compliance, and audit requirements.
  • Prioritized vulnerability remediation backlog.
  • Tested and approved SCCM/MECM deployment packages.
  • Production-ready PowerShell automation scripts.
  • Root cause analysis reports and remediation documentation.
  • Deployment validation, pilot, and rollback evidence.
  • Knowledge articles, runbooks, and audit records.
  • Regular progress and compliance reporting.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Vulnerability Engineer
Vulnerability Engineer

Coforge • Greater London

Hybrid
GBP 60,000 - 90,000
Vulnerability Engineer: Endpoint Security & Automation
Vulnerability Engineer: Endpoint Security & Automation

Coforge • Greater London

Hybrid
GBP 60,000 - 90,000
Endpoint Deployment & Manual Remediation Analyst
Endpoint Deployment & Manual Remediation Analyst

HCLTech • Greater London

Hybrid
GBP 45,000 - 65,000
Technical Support Specialist
Technical Support Specialist

Coforge • Greater London

Hybrid
GBP 35,000 - 50,000
Senior Endpoint Experience Engineer
Senior Endpoint Experience Engineer

Brevan Howard • Greater London

On-site
GBP 90,000 - 150,000
Senior Security Engineer
Senior Security Engineer

Guidant Global • Reading

Hybrid
GBP 101,000 - 138,000
End User Technology Compliance & Security Lead
End User Technology Compliance & Security Lead

HCLTech • Birmingham

On-site
GBP 60,000 - 90,000
Vacation 20 days
Term life insurance
Business travel insurance
+1
Senior Vulnerability Management Engineer
Senior Vulnerability Management Engineer

HCLTech • Greater London

Hybrid
GBP 90,000 - 120,000
Vacation per year
Term life insurance
Business travel insurance
Cyber Security Analyst-VM
Cyber Security Analyst-VM

Wipro • West of England

On-site
GBP 60,000 - 90,000
Senior Workspace Engineer
Senior Workspace Engineer

Magnit Global • Greater London

On-site
GBP 115,000 - 157,000