Job
Description
About The Role
Project Role :Full Stack Engineer
Project Role Description :Responsible for developing and/or engineering the end-to-end features of a system, from user experience to backend code. Use development skills to deliver innovative solutions that help our clients improve the services they provide. Leverage new technologies that can be applied to solve challenging business problems with a cloud first and agile mindset.
Must have skills :Microsoft Intune
Good to have skills :NA
Minimum 12 year(s) of experience is required
Educational Qualification :15 years full time education
Summary:The Cognitive Workplace Endpoint Full Stack Engineer designs and develops cognitive cloud applications and services"”ranging from user interfaces to API layers and AI integration middleware. The engineer works across front-end, back-end, and cloud infrastructure layers to deliver intelligent, data-driven solutions that leverage AI/ML models, agentic workflows, and cognitive automation frameworksThe role spans devices, identity, apps, and cloud. The engineer owns end-to-end engineering for workplace endpoint devices and virtual desktops. Responsibilities include modern device management with cloud foundations on Azure, AWS and Google. The role also applies generative AI tools"”Microsoft Copilot and Google Gemini"”and agentic orchestration with LangChain and retrieval-augmented generation (RAG). These capabilities enhance employee experience, reduce toil, and accelerate incident resolution while maintaining strong governance, security, and cost controls.
Roles & Responsibilities:
Design Build & manage modern device management:Intune for Windows 11 and macOS (policies, baselines, compliance, app lifecycle, Autopilot/ABM), with MECM and Citrix DaaS for hybrid scenarios.Design & operate VDI:Images, scaling plans, FSLogix, and app layering for performance, cost efficient virtual workspaces leveraging the CI/CD pipelinesWorkplace App modernization with signed pipelines, ring based rollouts, rollback, and telemetry driven success criteria; align with modern standards where applicable.Administer core workplace platforms:Microsoft 365, Google Workspace, Entra ID , Conditional Access, enterprise SSO, and app catalogs; integrate device posture signals.Experience analytics:Use Nexthink to prioritize fixes, drive proactive hygiene, and measure experience level agreements (XLAs).Automate at scale:PowerShell, Terraform, and Microsoft Graph API; create reusable modules and platform APIs for service teams.Build AI powered assistants:Use Microsoft Copilot (incl. Copilot Studio) and Gemini to summarize incidents, draft KBs, and generate change plans; apply RAG with LangChain and vector search to ground responses in approved documentation.Implement AI guardrails:Prompt templates, safety filters, role based data access, and audit trails to protect sensitive information and meet compliance requirements.Observability & drift control:Native telemetry, KQL workbooks, and Nexthink; detect regressions with automated remediation.Security hardening:CIS Security baselines, BitLocker/FileVault, Defender for Endpoint, macOS profiles, and certificate/PKI lifecycle management.Partner with SecOps & GRC:Enforce DLP, Purview labeling, identity governance (JIT/JEA), and effective change management.Infrastructure as code:Image/config definitions as IaC; integrate GitHub Actions/Azure DevOps CI/CD and peer review.Advanced support & RCA:Lead Tier 3 investigations, run blameless postmortems, and deliver data backed action plans.Documentation & enablement:Publish patterns, runbooks, and ADRs; coach operations/regional teams to scale adoption.Professional & Technical
Skills:Hands on expertise with Intune (Windows 11, macOS), Autopilot/ABM, compliance & configuration profiles, app lifecycle, and reporting.Strong Windows desktop and macOS administration, including shell/PowerShell scripting and endpoint security baselines.Virtual Desktop engineering (images, host pools, scaling, FSLogix) and hybrid integration with DaaS servicesCloud based Application modernization and distribution and staged rollouts and rollback strategiesPlatform administration across M365, Google Workspace, and Entra ID"”including Conditional Access and identity lifecycle basics.Automation:PowerShell (advanced), Terraform (modules, state), and Microsoft Graph API (device, user, app endpoints).Cloud foundations:Azure fundamentals (IaaS) and AWS Cloud Practitioner level understanding.GenAI literacy:Designing Copilot/Gemini prompts and copilots for workplace scenarios; orchestrating LangChain RAG workflows grounded in approved content.Observability & telemetry:Nexthink analytics, KQL workbooks, and XLA scorecards.Excellent troubleshooting, stakeholder communication, and documentation; operate in Agile/Kanban using Jira or Azure Boards.Familiarity with Copilot Studio, Power Automate, and Gemini extensions to build task specific assistants for IT operations.Enterprise VDI at scale (multi region, image pipelines, cost optimization).Operating System compliance at scale (profiles, FileVault, PPPC, notarization).CI/CD for scripts and configs using GitHub Actions/Azure DevOps with policy checks and secret management.Networking for endpoints/VDI (DNS, proxies, split tunnel/VPN, private endpoints).Excellent communication and collaboration skills.Certifications (Required / Preferred)Microsoft Certified:Intune (MD 102) or equivalent endpoint certification (required or within 6 months).Microsoft Certified:Agentic AI Business Solutions Architect (AB-100) (currently in beta at the time of writing but required after it becomes generally available)AWS Certified Cloud Practitioner (preferred).Citrix DaaS/CVAD Associate or Professional (preferred).Nexthink certification (preferred).Hashi Corp Terraform Associate and/or Microsoft Cybersecurity certifications (preferred).
Additional Information:The candidate should have minimum 5 years of experience in Microsoft Intune.This position is based at our Bengaluru office.A 15 years full time education is required.
Qualification 15 years full time education