Overview
Skills
Job Details
L3 MDM Engineer
Mahwah NJ
Onsite Local
Required for this Position: | 5+ years of experience in IT, with 3+ years specifically focused on MDM and enterprise mobility. Deep, hands-on experience with VMware Workspace ONE UEM (AirWatch) administration, configuration, and troubleshooting. Proven experience providing L3-level support in a complex, multi-platform mobile environment |
Job Description:
Key responsibilities
Operational support
Provide expert-level (L3) support and troubleshooting for complex and escalated issues related to the Workspace ONE UEM console, device enrollment, policy enforcement, application deployment, and user access.
Perform root cause analysis (RCA) on recurring and high-priority incidents and implement preventative measures to ensure system stability.
Troubleshoot integrations with enterprise systems like Directory Services, Certificate Authorities, and Identity & Access Management (IAM).
Architecture and implementation
Lead the design and implementation of the Workspace ONE UEM platform, including on-premise and cloud deployments, ensuring scalability, security, and performance.
Collaborate with cross-functional teams to gather requirements and create solution architecture blueprints and technical design documents.
Evaluate and recommend new Workspace ONE UEM features, emerging MDM technologies, and complementary solutions to enhance the mobile strategy.
Platform administration
Manage the full lifecycle of the UEM platform, including upgrades, patches, and security hardening.
Develop and maintain mobile device security policies, such as encryption, passcode rules, app listing/listing, and conditional access.
Handle the packaging, deployment, and management of internal and third-party applications (MAM).
Integrate Workspace ONE UEM with other security and IT platforms, such as Mobile Threat Defense (MTD) and endpoint security.
Monitoring and reporting
Create and maintain detailed technical documentation, including standard operating procedures (SOPs), knowledge base articles, and incident reports.
Configure and monitor platform performance and generate dashboards and reports on device compliance, user adoption, and security metrics for audit and security teams.
Utilize monitoring tools to proactively identify and resolve potential issues.
Qualifications and skills
Required qualifications
Bachelor's degree in Computer Science, Information Systems, or a related field.
5+ years of experience in IT, with 3+ years specifically focused on MDM and enterprise mobility.
Deep, hands-on experience with VMware Workspace ONE UEM (AirWatch) administration, configuration, and troubleshooting.
Proven experience providing L3-level support in a complex, multi-platform mobile environment.
Technical skills
Expert knowledge of Workspace ONE UEM: Proficient with device enrollment (e.g., Apple DEP, Android Enterprise), profiles, compliance policies, smart groups, and reporting.
Strong troubleshooting skills: Experience with UEM logs, certificate management (PKI), and network protocols used by mobile devices.
Integration expertise: Experience integrating MDM with Active Directory/LDAP, SAML/Identity Providers, and Certificate Authorities.
Application management: Experience with Mobile Application Management (MAM) including app wrapping, SDKs, and deployment of public and internal applications.
Networking and security: Understanding of mobile security architecture, network infrastructure (e.g., UAG, Load Balancers), and mobile VPNs.
Scripting: Experience with scripting languages (e.g., PowerShell) for automation is a plus.
Certifications (preferred)
VMware Certified Professional - Digital Workspace (VCP-DW).
VMware Workspace ONE: Skills for Unified Endpoint Management.
Soft skills
Excellent analytical and problem-solving abilities.
Strong communication and interpersonal skills to collaborate with technical and non-technical stakeholders.
Ability to work effectively in an Agile environment and manage project timelines.
Mentorship skills to provide guidance and knowledge transfer to L1 and L2 support teams.