Confidential Jobs · 5 days ago
End User Computing Architect
Confidential Jobs is seeking an End User Computing Architect who will serve as the principal technical authority for the enterprise’s digital workspace ecosystem. This role entails providing high-level technical oversight and hands-on engineering of EUC systems, while also leading the development of strategic blueprints and managing the lifecycle of the EUC stack.
Computer Software
Responsibilities
Define the multi-year technology roadmap and lead hands-on Proof-of-Concept (POC) initiatives to validate emerging technologies
Author and maintain the "North Star" reference architectures, personally configuring the core "gold-standard" templates that engineering teams leverage for global scale
Conduct deep-dive technical evaluations of vendor platforms, performing the initial setup and "stress-testing" of new tools before enterprise-wide adoption
Actively identify and remediate technical debt by re-engineering legacy configurations to align with modern optimization standards
Develop and implement the global strategy for managing a heterogeneous device fleet (Windows, macOS, Mobile), including the hands-on configuration of modern management policies
Personally build and tune telemetry sensors and observability dashboards to measure and improve the Digital Employee Experience (DEX)
Design and package the initial delivery models for application layering or streaming, establishing the technical "recipe" for the broader engineering team to follow
Lead the technical implementation of Single Sign-On (SSO) and automated user lifecycle workflows within the workspace environment
Act as the lead engineer for major platform shifts, participating directly in the build-out of new infrastructure tiers and the migration of complex workloads
Develop the scripts and automated workflows required for moving workloads between environments with zero business disruption
Perform deep-dive troubleshooting and stabilization of legacy stacks, serving as the Tier 4 technical escalation point for critical environment issues
Technical lead for the orderly teardown of legacy infrastructure, ensuring configuration parity and data integrity are maintained throughout the exit
Develop and maintain the "Safety Valve" code and logic that triggers automated capacity scaling into public cloud resources
Build and test high-availability and disaster recovery (BCDR) configurations, personally conducting "Game Day" failure simulations to validate recovery times
Hands-on tuning of compute and storage resources to balance high-performance delivery with cost-efficiency
Partner with Security teams to personally configure modern authentication (MFA) and conditional access policies at the platform level
Write and maintain the CI/CD pipelines and IaC templates (e.g., Terraform, PowerShell, APIs) used for OS provisioning and configuration enforcement
Author Architectural Decision Records (ADRs) and technical runbooks that reflect the actual implemented state of the environment, ensuring a lack of "tribal knowledge."
Qualification
Required
Experience: 8+ years (inclusive of 5+ years in enterprise-scale environments) specializing in End User Computing, VDI, and Desktop-as-a-Service (DaaS) ecosystems
Platform Mastery: Advanced hands-on experience with enterprise virtualization platforms, cloud-pod architectures, and instant-clone technologies
Endpoint Management: Proven expertise in Unified Endpoint Management (UEM) and Mobile Device Management (MDM) for secure remote access and device lifecycle management across Windows and macOS
Application Delivery: Demonstrated experience with real-time application delivery, layering, and environment management tools
Infrastructure Knowledge: Deep understanding of software-defined data centers (SDDC), hyperconverged infrastructure (HCI), and hybrid/multi-cloud workload orchestration
Productivity & Public Cloud: Experience administering enterprise cloud productivity suites, including IAM roles, global policies, and service optimization within public cloud environments
Identity & Access: Advanced knowledge of Identity Provider (IdP) administration, including SAML/OIDC integrations, Single Sign-On (SSO) configuration, and automated user lifecycle management
Automation: Proficiency in modern deployment automation, image engineering best practices, and API-driven reporting