Workspace ONE – Technical Consultant (L3)
Location: South Asia(India, Pakistan, Bangladesh, Nepal, Bhutan, Sri Lanka, Maldives, Afghanistan)
Experience: 9–14 Years
Employment Type: Full-Time
Work Mode: On-site(562)
Level: L3 / Senior Technical Consultant shoul be at currently.
Notice Period: Immediate to 45 Days
Interview Process: 3 Rounds
Role Overview
We are looking for an experienced Workspace ONE / UEM Technical Consultant – L3 with strong expertise in Omnissa Workspace ONE UEM, Intune, enterprise mobility, identity, security, and device management.
The role will involve designing and implementing enterprise-scale UEM architectures, leading complex migrations, troubleshooting critical issues, implementing security frameworks, and supporting large mobile and endpoint environments.
The ideal candidate should have strong L3-level technical expertise and experience working in customer-facing consulting environments.
Key ResponsibilitiesUEM Architecture & Implementation
Design and implement end-to-end Unified Endpoint Management (UEM) architectures using Omnissa Workspace ONE.
Design multi-region and high-availability Workspace ONE environments.
Install, configure, and maintain Workspace ONE UEM and Workspace ONE Access.
Configure enrollment and Organization Group assignments.
Configure profiles, policies, system settings, compliance policies, and device management configurations.
Manage enterprise mobility environments across iOS, macOS, Android, Windows, and ChromeOS.
Migration & Transformation
Lead complex MDM/UEM migrations, including migrations from legacy MDM platforms and Microsoft Intune to Workspace ONE.
Plan and execute migrations with minimal downtime and user impact.
Support large-scale device fleet transformation and modernization initiatives.
Security & Zero Trust
Design and implement Zero Trust security frameworks using Workspace ONE Access and conditional access.
Implement device compliance and remediation frameworks.
Configure automated actions based on device posture and compliance status.
Conduct security audits, environment hardening, and compliance assessments.
Implement enterprise mobility security controls and data protection practices.
Identity & Access Management
Integrate Workspace ONE with identity providers such as:
Azure AD / Microsoft Entra ID
Okta
Ping Identity
Implement SSO, federation, MFA, and conditional access solutions.
Configure and troubleshoot identity integrations using SAML, OAuth, and OIDC.
ACC & Enterprise Integrations
Design, configure, and maintain AirWatch Cloud Connector (ACC) architecture.
Integrate ACC with on-premises Active Directory, Exchange, and Certificate Authorities.
Support enterprise directory, LDAP, and Kerberos integrations.
Work with certificate-based authentication and enterprise PKI environments.
Troubleshooting & Production Support
Perform advanced L3 troubleshooting across:
Device Enrollment
Application Deployment
Certificates
Identity Integrations
Device Compliance
Connectivity
Authentication
Lead root-cause analysis and resolution of complex production issues.
Perform environment health checks and performance tuning.
Provide technical guidance for critical escalations.
Application & Content Management
Manage application lifecycle and software distribution across enterprise endpoints.
Support Win32, macOS packages, mobile applications, and internal applications.
Configure and optimize:
Workspace ONE Tunnel
Content Gateway
Secure Email Gateway (SEG)
Automation & Reporting
Develop automation solutions using REST APIs, PowerShell, JSON, and scripting.
Automate bulk device/user management, Smart Groups, reporting, and administrative activities.
Use Workspace ONE Intelligence for analytics, automation, and reporting.
Must-Have Skills:
7+ years of hands-on experience with Omnissa Workspace ONE UEM and Microsoft Intune.
7+ years of experience in customer-facing consulting roles, preferably within system integrators, consulting organizations, or IT services.
Candidate must currently be working at an L3 technical level.
Expert-level understanding of Workspace ONE UEM architecture, including:
Console
Device Services
API
ACC
Database
Strong understanding of the 5 UEM pillars:
MDM
MAM
Security & Compliance
IAM
Reporting
Strong hands-on experience with AirWatch Cloud Connector (ACC) setup and architecture.
Experience integrating Workspace ONE with Azure AD / Microsoft Entra ID, Okta, or Ping Identity.
Experience integrating ACC with on-premises Active Directory, Exchange, and Certificate Authorities.
Strong understanding of PKI, SCEP, and certificate-based authentication.
Solid understanding of DNS, DHCP, Active Directory, and Domain Controllers.
Strong experience managing large device fleets using MDM/UEM platforms.
Strong experience with configuration and compliance policies.
Excellent troubleshooting and problem-solving skills.
Strong customer-facing communication and consulting skills.
Good-to-Have Skills
Experience with Workspace ONE Access.
Experience with Workspace ONE Intelligence for automation, reporting, and analytics.
Experience with Workspace ONE Tunnel, Content Gateway, and Secure Email Gateway (SEG).
Advanced knowledge of Zero Trust and Conditional Access.
Experience with SAML, OAuth, and OIDC.
Strong scripting and automation skills using PowerShell, REST APIs, and JSON.
Experience with Android Enterprise, including:
Work Profile
COPE
Fully Managed
Experience with Apple Business Manager (ABM) / Apple DEP.
Experience with SCEP / PKI / CA integrations.
Experience managing iOS, macOS, Android, Windows, and Chromebook environments.
Knowledge of networking concepts including DNS, load balancers, reverse proxies, and SSL offloading.
Experience with enterprise mobility security, DLP, compliance frameworks, and security hardening.
Experience with MFA solutions such as Duo or RSA.
Experience with Microsoft Office 365 Administration.
Experience with large-scale MDM/UEM migrations.
Relevant Workspace ONE, UEM, cloud, or security certifications.
Candidate Profile
Strong L3-level technical and troubleshooting capabilities.
Excellent customer-facing communication and consulting skills.
Ability to independently handle complex enterprise mobility environments.
Strong analytical and problem-solving approach.
Comfortable working with multiple technologies and enterprise integrations.
Ability to explain complex technical concepts to technical and non-technical stakeholders.
Strong ownership and ability to work effectively both independently and within a team.
Candidates with 2+ years of stability in an organization are preferred.
Work Schedule
Monday–Friday: 9:00 AM–6:00 PM PST
IST Equivalent: Approximately 9:30 PM–6:30 AM IST
Flexibility may be required for on-call / critical production escalations.
Copyright © 2026 Grabjobs Pte.Ltd. All Rights Reserved.