• News
  • Security
  • Products
  • About Seqrite
Blogs on Information Technology, Network & Cybersecurity | Seqrite Blog
  • News
  • Security
  • Products
  • About Seqrite
Home  /  Android • Application • Mobile Device Management • Security  /  Mobile Device Management: How to manage security of your mobile devices
Mobile Device Management: How to manage security of your mobile devices
20 September 2017

Mobile Device Management: How to manage security of your mobile devices

Written by Seqrite
Seqrite
Android, Application, Mobile Device Management, Security

Smartphones have made way into our personal and professional life. Apart from always being connected to the world, there are many business functions that users, today, perform with their smartphones. Business emails, document reviews, editing, and video conferencing are just some of those. To support mobile workforce, companies issue handhelds such as smartphones, tablets and laptops that enable them to work while travelling or while sitting at the comfort of their homes. Some companies also support the ‘Bring Your Own Device (BYOD)’ concept which permits employees to access company network from their personal handhelds.

The different operating systems, the customization and variation in hardware, tweaks in the operating system by each vendor have led to a sea of devices. This presents a serious challenge from the security perspective for organizations that support mobile devices. Let us look at some of the key challenges that organizations face by supporting a mobile environment for their employees.

The challenges in using mobile devices for business:

  1. Lack of physical security: Desktops cannot be moved easily and laptops can be locked to a stationary structure but handheld devices,such as smartphone can be easily stolen. The thief also gets open access to the data on the device and to the enterprise through enterprise applications installed on mobile.
  2. Untrusted networks: While travelling, users routinely connect the devices to untrustworthy networks (Wi-Fi). It could be at cafes, restaurants, clubs, and other social places. These networks are not secure and extremely prone to hacking.
  3. Untrusted applications: Games, social media apps, and many other apps read the data from the device and upload it to their servers. This is a threat to corporate data stored on mobiles. Personal apps on devices are usually one of the biggest threat for data theft.
  4. Interaction with other systems: Users connect mobile devices to their personal laptops and other desktops to transfer music, videos etc. These computers pose security danger for the enterprise data saved on the handheld.
  5. Untrusted mobile devices: Most personal devices are untrustworthy. They may not be upgraded to latest OS and patches are also not frequently updated thus leaving the device insecure. Employees tend to avoid upgrading immediately to save on data streaming and may also try to jailbreak the device to play and experiment with it. In case of organizations supporting BYOD, this increases the threat.

Securing Mobile Devices

With so many issues popping up constantly around mobile device safety, it sometimes doesn’t really come out as a great idea to use them for work. However, looking at the need of the hour, it cannot be avoided. Hence, it is important for companies to adopt safe practices before establishing the mobile environment for their employees. Here are few steps that organizations should take before provisioning handheld device on the enterprise network and issuing it to the employee.

1. Enforce general security policy: All devices must adhere to the security policy which includes the following:

  • Restricted access to hardware such as camera, USB interface, Bluetooth, and removable storage.
  • Restricted access to native applications such as email client, calendar, built-inbrowser, contacts etc.
  • Manage Wi-Fi network interface, including enforced security protocol for all connections.
  • Limit or prevent access to enterprise services based on rooting or jailbreak status to ensure only secure devices access the company’s information.
  • Select only the most secure devices in market to integrate with enterprise infrastructure.

2. Data communication and storage

  • Ensure strong encryption for data connection to enterprise networking. Enforce use of VPN to connect to the network.
  • Enable strong encryption of data stored on the device. Bind the removable storage to that specific device using encryption techniques.
  • Remotely wipe the device if it is reported lost or stolen or otherwise become untrustworthy.
  • Auto-wipe the device after a specific number of unsuccessful authentication attempts.

3. User and device authentication

  • Enforce strong authentication using one-time token or 2-factor authentication to access enterprise network.
  • Enforce auto lock when device is idle for specific duration (e.g. 5 minutes)
  • Enable remote lock to allow locking of the devicebased on suspicious behavior on the device.
  • Enable remote reset of the
  • Deploy a Mobile Device Management (MDM) solution to manage all devices across the enterprise.

4. Applications (Apps)

  • Allow the use of only specific app stores to install applications.
  • Restrict the applications that can be installed (using white-listing or blacklisting)
  • Restrict the permission allowed for apps (e.g. camera access, location access, screenshotetc)
  • Distribute enterprise applications from a dedicated mobile app store.

Mobile devices by their very nature are prone to hacks. However, with proper device management, they can be used securely to ensure that organization’s information and network are not put in any danger. Commercial Mobile Device Management (MDM) software makes the administration of handheld security easy and manageable and integrate into organization’s overall security infrastructure. With proper security implemented, mobile devices can truly provide the productivity improvements that they promise.

As an IT security partner for your business, Seqrite provides comprehensive endpoint security from advanced cyber threats. To know more, visit our website or

seqrite_cta1

 Previous PostImpact of malware/ransomware attacks on Government data
Next Post  Use CAA DNS records for SSL Certificate and minimize cyber threat...
Seqrite

About Seqrite

Follow us for the latest updates and insights related to security for enterprise networks. Subscribe to our newsletter to stay...

Articles by Seqrite »

Related Posts

  • data privacy

    The What, How, and Why of Data Privacy

    January 24, 2025
  • How the Recent Health Insurance Data Breach Could Affect You – and What You Can Do About It

    October 14, 2024
  • Defending against APT attacks with endpoint security

    How To Defend Against Advanced Persistent Threats (APTs): A Comprehensive Approach

    September 27, 2024
Featured Authors
  • Seqrite
    Seqrite

    Follow us for the latest updates and insights related to security for...

    Read more..
  • Sanjay Katkar
    Sanjay Katkar

    Sanjay Katkar is the Joint Managing Director of Quick Heal Technologies...

    Read more..
  • Mahua Chakrabarthy
    Mahua Chakrabarthy

    A tea connoisseur who firmly believes that life is too short for dull content....

    Read more..
Topics
apt (19) Cyber-attack (35) cyber-attacks (58) cyberattack (16) cyberattacks (13) Cybersecurity (322) cyber security (31) Cyber threat (33) cyber threats (48) Data (11) data breach (55) data breaches (28) data loss (28) data loss prevention (34) data privacy (11) data protection (24) data security (15) DLP (49) Encryption (16) endpoint security (107) Enterprise security (17) Exploit (14) firewall (11) GDPR (12) hackers (11) malware (76) malware attack (23) malware attacks (12) MDM (25) Microsoft (15) Network security (22) Patch Management (12) phishing (27) Ransomware (67) ransomware attack (30) ransomware attacks (30) ransomware protection (13) security (11) Seqrite (33) Seqrite Encryption (27) Seqrite EPS (33) Seqrite Services (16) UTM (34) Vulnerability (16) windows (11)
Loading
Resources
  • White Papers
  • Datasheets
  • Threat Reports
  • Manuals
  • Case Studies
About Us
  • About Seqrite
  • Leadership
  • Awards & Certifications
  • Newsroom
Archives
  • By Date
  • By Category
Loading

© 2025 Quick Heal Technologies Ltd. Cookie Policies Privacy Policies