09 Sep
|
Umanist NA
|
India
Job Title: L3 Workspace ONE / UEM Technical Consultant
Overall experience: 9-14yrs
Virtual Drive - 11 Sep till 19 Sep
Job Overview
We are looking for an experienced L3 Workspace ONE / UEM Technical Consultant to design, implement, administer, troubleshoot and optimize enterprise Unified Endpoint Management environments.
The role requires a highly hands-on technical professional with strong expertise in Omnissa Workspace ONE UEM, enterprise mobility, identity and access management, PKI, device enrollment, application management, security and compliance.
The candidate will be expected to independently handle complex L3 escalations, architecture, integrations, migrations, implementation and customer-facing technical discussions.
Key ResponsibilitiesWorkspace ONE UEM Architecture &
- Implementation
- Design and implement end-to-end Omnissa Workspace ONE UEM solutions for enterprise environments.
- Design scalable, secure and highly available Workspace ONE architectures, including multi-region deployments where required.
- Configure, implement and maintain Workspace ONE UEM components including:
- Workspace ONE UEM Console
- Device Services
- APIs
- AirWatch Cloud Connector (ACC)
- Database architecture
- Configure and manage Organization Groups, enrollment, profiles, policies, Smart Groups and system settings.
- Manage large-scale enterprise device fleets across multiple operating systems.
- Perform environment health checks, performance tuning and capacity optimization.
L3 Troubleshooting &
- Support
- Act as an L3 escalation point for complex Workspace ONE/UEM issues.
- Perform deep-dive troubleshooting related to:
- Device enrollment
- Device compliance
- Application deployment
- Profiles and policies
- Certificate issues
- Authentication and SSO
- Identity integrations
- ACC connectivity
- Device communication
- Infrastructure and network dependencies
- Perform root-cause analysis and provide permanent technical solutions.
- Work independently on critical incidents and complex production issues.
Migration &
- Transformation
- Lead or support complex migrations from:
- Legacy MDM/UEM platforms
- Microsoft Intune
- Other endpoint management solutions
- Plan and execute migrations with minimal downtime and user impact.
- Develop migration strategies, technical documentation and rollback plans.
Workspace ONE Access &
- IAM
- Configure and implement Workspace ONE Access.
- Integrate Workspace ONE with enterprise identity providers including:
- Microsoft Azure AD / Entra ID
- Okta
- Ping Identity
- Implement and troubleshoot:
- SSO
- MFA
- Federation
- Conditional Access
- SAML
- OAuth
- OIDC
- Support Zero Trust and identity-based access control use cases.
AirWatch Cloud Connector / Enterprise Integration
- Design, configure and troubleshoot AirWatch Cloud Connector (ACC).
- Integrate ACC with on-premises enterprise infrastructure.
- Work with:
- Active Directory
- LDAP
- Kerberos
- Exchange
- Certificate Authorities
- Troubleshoot authentication, directory synchronization and connectivity issues.
PKI &
- Certificate Management
- Implement and troubleshoot certificate-based authentication.
- Work with enterprise PKI and Certificate Authorities.
- Configure and manage SCEP-based certificate deployment.
- Troubleshoot certificate enrollment, authentication and device-certificate issues.
- Ensure certificate configurations align with enterprise security requirements.
Device Enrollment &
- Platform Management
Manage And Configure Enterprise Enrollment Across
- Apple iOS
- macOS
- Android
- Windows
- Chromebooks
Specific Responsibilities Include
- Apple Business Manager (ABM)
- Automated Device Enrollment / DEP
- Android Enterprise
- Android Work Profile
- Corporate-Owned Personally Enabled (COPE)
- Fully Managed Android
- Windows enrollment and management
- Device compliance and security policies
Application Management
- Manage application lifecycle across enterprise endpoints.
- Configure and troubleshoot application deployment for:
- Win32 applications
- macOS packages
- Mobile applications
- Internal applications
- Troubleshoot application installation, deployment and compliance issues.
- Support enterprise software distribution requirements.
Security &
- Compliance
- Design and implement endpoint compliance frameworks.
- Configure automated remediation based on device posture and compliance status.
- Implement security policies aligned with enterprise standards.
- Support Zero Trust, Conditional Access, DLP and endpoint security initiatives.
- Conduct environment hardening and security assessments.
- Ensure UEM configurations align with security and compliance requirements.
Workspace ONE Security Components Configure, Administer And Troubleshoot
- Workspace ONE Tunnel
- Content Gateway
- Secure Email Gateway (SEG)
- Workspace ONE Access
- Device compliance and access controls
Automation &
- Reporting
- Develop automation for bulk device/user management using:
- REST APIs
- PowerShell
- JSON
- Scripting
- Automate administrative tasks, reporting and remediation activities.
- Work with Workspace ONE Intelligence for:
- Reporting
- Analytics
- Automation
- Device insights
- Compliance monitoring
Customer-Facing Consulting
- Participate in customer workshops and technical discussions.
- Understand customer requirements and translate them into scalable technical solutions.
- Present architecture and implementation approaches.
- Prepare technical documentation, solution designs and troubleshooting reports.
- Communicate complex technical concepts clearly to technical and non-technical stakeholders.
- Collaborate with infrastructure, networking, security, identity and application teams.
Must-Have SkillsWorkspace ONE / UEM(562)
- 7+ years of hands-on experience with Omnissa Workspace ONE / VMware AirWatch or equivalent enterprise UEM/MDM platforms.
- Strong expertise in Workspace ONE UEM architecture.
- Hands-on knowledge of:
- UEM Console
- Device Services
- API
- ACC
- Database
- Strong understanding of the five UEM pillars:
- MDM
- MAM
- Security &
- Compliance
- IAM
- Reporting
- Current experience working at L3 technical/support/consulting level.
- Experience managing large enterprise device fleets.
- Strong experience with Workspace ONE enrollment, profiles, policies, Smart Groups and compliance.
ACC &
- Enterprise Infrastructure
- Strong hands-on experience with AirWatch Cloud Connector (ACC) setup, configuration and troubleshooting.
- Experience integrating ACC with:
- On-premises Active Directory
- LDAP
- Kerberos
- Exchange
- Certificate Authorities
- Robust understanding of:
- Active Directory
- Domain Controllers
- DNS
- DHCP
- Load Balancers
- Reverse Proxies
- SSL/TLS
Identity &
- Access Management
- Strong knowledge of Azure AD / Microsoft Entra ID.
- Hands-on experience with Conditional Access, SSO and MFA.
- Experience integrating Workspace ONE with at least one of:
- Azure AD / Entra ID
- Okta
- Ping Identity
- Good understanding of:
- SAML
- OAuth
- OIDC
- Federation
PKI &
- Certificates
- Strong understanding of PKI.
- Hands-on experience with:
- SCEP
- Certificate Authorities
- Certificate deployment
- Certificate-based authentication
- Ability to troubleshoot certificate-related enrollment and authentication issues.
Device Management Hands-on Experience Managing Enterprise Devices Across
- iOS
- macOS
- Android
- Windows
Strong Knowledge Of
- Android Enterprise
- Work Profile
- COPE
- Fully Managed Android
- Apple Business Manager
- Apple Automated Device Enrollment / DEP
- Windows device enrollment
Consulting &
- Experience
- 7+ years of customer-facing consulting experience, preferably within a system integrator, IT services or consulting environment.
- Strong L3 troubleshooting and analytical skills.
- Ability to independently handle complex technical issues.
- Strong customer communication and stakeholder-management skills.
- Ability to work independently and as part of a cross-functional team.
- Strong ability to explain complex technical concepts to different audiences.
Good-to-Have / Nice-to-Have Skills
- Experience with Workspace ONE Intelligence.
- Experience migrating from Microsoft Intune to Workspace ONE.
- Experience with legacy MDM-to-Workspace ONE migrations.
- Experience with Workspace ONE Access architecture.
- Hands-on experience with:
- Workspace ONE Tunnel
- Content Gateway
- Secure Email Gateway (SEG)
- Experience implementing Zero Trust security models.
- Experience with enterprise DLP and endpoint security controls.
- Experience with automated compliance remediation.
- Strong PowerShell scripting skills.
- Experience with Workspace ONE REST APIs and JSON.
- Application packaging experience for:
- Win32
- macOS
- Mobile applications
- Experience with multi-region and high-availability Workspace ONE deployments.
- Experience with performance tuning and large-scale UEM optimization.
- Knowledge of enterprise security and compliance frameworks.
- Experience with networking concepts such as load balancing, reverse proxy and SSL offloading.
- Experience with Chromebook management.
Experience &
- Eligibility
- Overall Experience: 7+ years in UEM/MDM/Enterprise Mobility.
- Workspace ONE Experience: 7+ years strongly preferred/required for this L3 role.
- Current Level: Candidate must currently be working at L3 level.
- Customer-Facing Experience: 7+ years preferred.
- Job Stability: Minimum 2 years' tenure in an organization preferred.
- Notice Period: Immediate to 45 days.
- Candidates who can join immediately are strongly preferred.
Work &
Compensation Details
- Work Mode: Fully Remote
- Location: Anywhere in India
- Compensation: ₹24–32 LPA
- Working Days: Monday to Friday
- Working Hours: 9:30 PM – 6:30 AM IST
- Additional Requirement: Flexibility for occasional on-call/escalation support
- Interview Process: 3 rounds
Ideal Candidate Profile The ideal candidate should be a hands-on L3 Workspace ONE/UEM specialist, rather than someone limited to routine administration. The candidate should be capable of independently handling architecture, implementation, enterprise integrations, migrations, security, certificate issues, device enrollment, application deployment and complex L3 troubleshooting.
Strong candidates should be comfortable answering scenario-based technical questions around Workspace ONE UEM, ACC, Active Directory, PKI/SCEP, Azure AD/Entra ID, identity integrations, Android Enterprise, Apple ABM/DEP and UEM security.
Candidates with only basic MDM administration or L1/L2 support experience will not be suitable for this role.
Skills: vmware airwatch,profiles,uem pillars,device services,pki & certificates,database,workspace one enrollment,omnissa workspace one,api,uem/mdm platforms,acc,identity & access management,workspace one,uem console,l3 technical,acc & enterprise infrastructure,active directory,device management,workspace one uem architecture.
📌 Workspace ONE – Technical Consultant (India)
🏢 Umanist NA
📍 India