Skip to content

Home Expertise / Endpoints & vulnerabilities

END / END-03

Mobile device and application security — MDM/MAM

Govern phones, tablets and business applications: configuration, access, data separation and lost-device response. MDM manages devices; MAM manages compatible applications and their data.

WHEN IT HELPS

A focused response
to a defined need.

Uninventoried mobile fleet, personal-device use, customer data on phones or a need to offboard employees without unjustifiably deleting personal data.

AT A GLANCE

Family
Endpoints & vulnerabilities

Engagement
Implementation or recurring

Reference
END-03

SCOPE & OUTCOMES

What the engagement covers.

Scope

  • Enrolment-model selection
  • compliance rules
  • app protection
  • access conditions
  • updates
  • loss/theft
  • work/personal separation
  • user support

Deliverables

  • Usage policy
  • MDM/MAM profiles
  • pilot
  • inventory
  • loss and offboarding procedures
  • user notice
  • selective-wipe tests where available

Acceptance evidence

Enrolment is validated; access follows policy; lost-device response is simulated without exposing real data; business-data removal is tested; OS and app limitations are documented.

DELIVERY

How the work is structured.

Approach

Inventory versions and applications; define policies; test on a representative group; deploy; verify coverage and exceptions; organise maintenance.

Prerequisites & responsibilities

Customer: inventory, deployment tools, support, application owners and windows. Provider: policies and integration; alert handling only if included.

Scope factors

Devices, OSs, compatibility, existing tools, policies and deployment effort. Subscriptions, daily management and SOC coverage are priced separately.

Questions to clarify

Company-owned or personal devices? Which apps contain sensitive data? Which administrative actions must users understand and accept?

IMPORTANT BOUNDARIES

Capabilities differ by OS, ownership and app. Wiping, location tracking and personal data require proportionate rules and legal/HR review where relevant.

Unsupported systems, exclusions and operational gaps are made explicit. Regression tests, fallback and response ownership are part of delivery.

IN PRACTICE

Illustrative situations.

These examples describe possible engagements and target outcomes. They are not customer references or achieved results.

Scenario 01

A sales team uses personal phones. Project: protect business applications and organise removal of corporate data. Target outcome: controlled access without excessive oversight of private content.

Scenario 02

A business renews field tablets. Project: automated enrolment, restricted profiles and replacement procedures. Target outcome: consistently deployable devices; a required offline mode is tested and documented.

Technology and reference context

Examples: MDM/MAM solutions compatible with iOS, Android and selected applications; confirm licensing and enrolment models.

The final technology set is agreed during scoping, based on interoperability, licensing, access rights and operating requirements.

CONNECTED SERVICES

Build the next step.

These services can complement the engagement. They are not automatically included.

START A CONVERSATION

Make the scope clear.

We will clarify the objective, dependencies and responsibilities of this service before proposing delivery.