Staff Engineer, Digital Workplace Engineering
Overview
NISA Investment Advisors, LLC (NISA) partners with world-leading organizations to design, develop, and manage highly customized, risk-controlled investment strategies across fixed income, equities, and derivatives. With $462 billion assets under management ($295 billion in physical assets and $167 billion in derivatives notional value), NISA actively manages risk for institutional investors, providing clarity to complicated challenges and stability in ever-evolving markets. At NISA, we foster a culture that supports both personal and professional growth, providing opportunities to learn from experienced professionals while contributing meaningful work from the outset. We seek candidates who demonstrate strong quantitative and analytical skills, intellectual curiosity, and a collaborative mindset to join our growing teams.
Responsibilities
The Staff Engineer is a founding member of NISA's newly established Digital Workplace Engineering team and owns the architecture and engineering of NISA's digital workplace environment. This team will lead a foundational transformation of NISA's desktop delivery model, including evaluating and architecting options for NISA's future remote access tooling and strategy. The ideal candidate combines deep end-user computing expertise with strong systems architecture skills, independent technical judgment, and will play a key role in ensuring secure, efficient, and seamless work experiences for our workforce. Consistent with NISA's collaborative culture, this role drives outcomes by building consensus and incorporating the insights of peer engineering, security, and business teams, rather than making unilateral technology decisions.
Exercise independent judgment and make final architectural and design recommendations while incorporating cross-functional input when evaluating, designing, and co-leading the architecture for NISA's secure remote access tooling and strategy, building consensus with Cybersecurity, Network Engineering, and business stakeholders
- Manage the deployment, patching, and upgrade lifecycle for endpoint hardware and software, exercising independent technical judgment to assess compatibility, security, and user-impact risk and to define sequencing, validation, and rollback strategy within NISA's tightly controlled, regulated workplace environment
- Administer endpoint configuration and device management policies across Microsoft Intune, Entra ID, and Group Policy, ensuring a consistent security posture and compliance with NISA's desktop and endpoint standards
- Monitor workplace performance and endpoint telemetry to proactively identify degradation trends, and engineer preventative improvements through tuning, automation, or platform changes
- Own the technical documentation that defines configuration baselines, deployment approaches, and operational standards for the digital workplace environment, developed in partnership with IT peers and ensuring decisions are transparent, repeatable, and audit-ready
- Serve as an engineering-level escalation point for complex, cross-system troubleshooting and root cause analysis, collaborating with peer engineering teams to translate findings into configuration changes, automation, or architectural improvements that reduce recurring risk
- Partner with cybersecurity and risk stakeholders to design and operate endpoint security and compliance controls, including patch compliance, encryption, and monitoring, and maintain audit-ready evidence of control effectiveness
- Evaluate emerging endpoint and digital workplace technologies through proof-of-concept and risk assessment, incorporating input from IT peers and business stakeholders, and recommend solutions based on security, supportability, and long-term workplace strategy
- Provide technical leadership, mentoring, and advanced training as the Digital Workplace Engineering team grows
- Apply department security standards consistently while communicating technical decisions and tradeoffs, and actively seeking input from business stakeholders and partners
Qualifications
- Bachelor's degree in information technology, computer science, engineering, or a related field, or equivalent relevant work experience required
- 7+ years of experience in enterprise-scale end user computing (EUC), systems administration, or digital workplace engineering environments
- Demonstrated ability to build consensus and drive technical decisions through cross-functional collaboration with engineering, security, and business partners
- Demonstrated experience designing and implementing secure remote access solutions (e.g., VPN, Zero Trust Network Access) for enterprise environments
- Hands-on experience with virtual desktop/VDI platforms (e.g., Citrix, VMware Horizon, AWS WorkSpaces, Azure Virtual Desktop)
- Demonstrated experience designing and managing enterprise-scale endpoint deployment, patching, and upgrade strategies that require independent technical judgment across operating systems, applications, and security controls
- Experience working with ServiceNow for incident, change, and event management in support of end user computing operations
- Experience with Active Directory and Entra ID to manage and maintain user accounts and group policies
- Expertise with endpoint management tools (Microsoft Intune and Configuration Manager, ControlUp, Ivanti Neurons)
- Scripting and automation skills (Microsoft PowerShell, Power Automate, etc.)
- Advanced knowledge of collaboration platforms, unified communications, and AV hardware/software integration
- Strong understanding of networking fundamentals (LAN/WAN/Wi-Fi), VPNs, and remote access solutions
- Proven experience performing systems-level root cause analysis and implementing long-term corrective actions in complex endpoint environments
- Experience implementing and maintaining endpoint security and compliance controls in environments subject to regulatory and audit oversight
- Familiarity with project management principles and change control
- Professional certifications such as CompTIA Security+, Microsoft 365 Certified: Endpoint Administrator Associate, or Microsoft Certified: Identity and Access Administrator Associate preferred
NISA's culture encourages collaboration and innovation. We seek self-motivated, intellectually curious individuals willing to push themselves and others in an environment that celebrates fresh thinking. We equip employees with the resources needed to excel, and we encourage personal development. NISA is dedicated to internally cultivating and rewarding talent. Employees at NISA are provided with a wide range of benefits, including health, dental, vision and life insurance options, paid time off, a competitive retirement plan, onsite cafeteria, fitness center, a health and wellness program, and an educational assistance program. NISA is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.
|