Job Purpose: -
The Senior Specialist – Mobile Application Management (MAM) is responsible for designing, implementing, and operating the organisation's mobile device and application management capability across both corporate-owned and BYOD devices. The role secures corporate data on mobile endpoints through identity-driven access, device compliance, and application-level protection, while ensuring a smooth enrolment and activation experience for end users. Working within the Cyber Technology Assurance function, the Senior Specialist enforces data-loss-prevention controls, governs risk-based exceptions, and continuously monitors device posture, coordinating with SIEM/SOAR and UEM teams to detect, respond to, and contain threats to mobile endpoints.
Primary Responsibilities: -
- Define and document enrolment methods for both corporate-owned and BYOD devices.
- Develop onboarding guides, privacy notices, and end-user support playbooks to ensure smooth device activation.
- Configure AAD/Identity Provider integrations, Conditional Access policies, MFA settings, device compliance policies, and dynamic group rules.
- Apply policy-based targeting depending on device ownership, platform type, user persona, or risk category.
- Implement compliance-driven access controls, including device posture checks and trusted-network requirements.
- Publish required corporate applications through the management platform and ensure proper deployment.
- Configure device profiles including Wi-Fi, VPN, certificates, SSO, email profiles, and per-app VPN settings.
- Enforce app-level protection such as PIN or biometric authentication and encryption of data at rest.
- Restrict copy, paste, and save-as actions to prevent data leakage into personal storage, and block screenshots where supported.
- Ensure separation of personal and corporate data across apps and storage environments.
- Apply Managed Open-In/Share restrictions and enforce appropriate per-app VPN routing.
- Enforce jailbreak/root detection, session timeout rules, and sign-in frequency controls to maintain device integrity.
Secondar Responsibilities: -
- Apply scoped, risk-based exceptions for specific personas, device types, or applications when justified.
- Track exception drift, notify owners before expiration, and manage recertification or timely removal.
- Continuously monitor suspicious activity, risky behaviours, or noncompliant devices.
- Coordinate with SIEM/SOAR and UEM teams for alerting, automated responses, and containment actions.
Education & Minimum Work Experience: -
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related discipline (or equivalent practical experience).
- Minimum 5 years of experience in endpoint, mobile device, and application management, including at least 2 years in a senior or lead capacity.