- Company Name
- Revel IT
- Job Title
- Lead Mobility Platform Engineer
- Job Description
-
**Job title**
Lead Mobility Platform Engineer
**Role Summary**
Lead the architecture, automation, and day‑to‑day operation of a Workspace ONE UEM/Access platform in an iOS‑centric mobile ecosystem, driving identity‑driven mobility, secure BYOD, zero‑touch enrollment, and continuous compliance for global production environments such as Crew iPad Electronic Flight Bags.
**Expactations**
- Architect and maintain a secure, scalable UEM/Access solution that supports iOS, macOS, and Android devices.
- Deliver a seamless, end‑user experience through zero‑touch provisioning, lifecycle automation, and proactive device compliance.
- Integrate identity management (Okta) and mobile threat defense into conditional access and compliance workflows.
- Maintain compliance with CIS/NIST security baselines and manage vendor relationships.
- Provide Tier‑3 support, incident response, root‑cause analysis, and mentorship for junior engineers.
**Key Responsibilities**
- Own Workspace ONE UEM/Access platform architecture, configuration, automation, monitoring, and Tier 3 escalation.
- Design and implement the iOS‑first strategy: Apple Business Manager, ADE, Managed Apple IDs, supervision, RSR, Declarative Device Management, and Apple User Enrollment.
- Build BYOD solutions with privacy separation and containerized data loss prevention using Microsoft 365 MAM and conditional access.
- Develop Infrastructure‑as‑Code and automation scripts (PowerShell, Python, Bash) using UEM APIs.
- Manage device lifecycle workflows: zero‑touch provisioning, updates, refresh/retire, deprovisioning.
- Integrate Mobile Threat Defense signals into compliance and conditional access.
- Define, track, and report mobility KPIs (enrollment success, compliance rate, time‑to‑remediate, CSAT).
- Lead major incident response, root‑cause analysis, and continuous improvement initiatives.
- Collaborate with Cybersecurity, Risk, and Compliance teams to align with CIS/NIST baselines.
- Manage vendor partnerships with Apple, Okta, Omnissa, and mobility managed service providers.
**Required Skills**
- Expert iOS/iPadOS management (ABM, ADE, Managed Apple IDs, supervision, User Enrollment, RSR, DDM).
- Deep knowledge of Workspace ONE UEM/Access and Okta identity integration (SAML/OIDC, MFA, device trust, contextual access policies).
- Scripting/automation: PowerShell, Python, Bash.
- BYOD privacy architecture and data separation using Microsoft 365 MAM and conditional access.
- Mobile Threat Defense integration and proactive monitoring.
- Understanding of CIS/NIST mobile security baselines.
- Strong troubleshooting, communication, and mentorship abilities.
- KPI‑driven approach to continuous improvement.
**Required Education & Certifications**
- Bachelor’s degree in Information Technology or related field.
- 6–8 years of enterprise mobility engineering/administration experience.
- Certifications: VCP‑DW, OCAP, Omnissa OCA (Workspace ONE UEM), Okta, Apple device management (preferred).