MDM & MTD: securing corporate mobile fleets

Smartphones and tablets now access the same data as desktop computers, yet often escape the same security rigour. Two complementary building blocks make it possible to regain control: MDM and MTD.

MDM: managing and framing devices

Mobile device management (MDM, for example Microsoft Intune) makes it possible to apply policies: mandatory encryption, passcodes, remote wipe, and compliance required to access resources. There are two models:

  • Corporate: company-provided devices, fully managed.
  • BYOD: personal devices, where work data is isolated in a container without encroaching on privacy.

MTD: detecting mobile threats

MDM frames usage but does not detect attacks. That is the role of Mobile Threat Defense (MTD, for example Pradeo): analysis of malicious applications, detection of phishing, rogue Wi-Fi networks and system vulnerabilities. MDM and MTD integrate to automatically block a compromised device.

Best practice

Pair MDM compliance with conditional access (a non-compliant device gets no access to data), keep work and personal use strictly separate, and raise user awareness: the human link remains decisive.

ZENISEC deploys and integrates these solutions to protect your fleets, from the desktop to the smartphone.

Comments are closed