A globalized business environment is made up of multinational organizations with offices and clientele spread across nations, and a workforce operating out from these distant locations. The aggressive competitive environment has paved way for teams (more)
A globalized business environment is made up of multinational organizations with offices and clientele spread across nations, and a workforce operating out from these distant locations. The aggressive competitive environment has paved way for teams working together across multiple time zones. Remote working thus has become a vital factor in the drive for corporate success and employee productivity. (less)
Array Networks Inc (TWO: 3664) a global leader in application, desktop and cloud service delivery, today announced the launch of DesktopDirect for Android, an application enabling full remote desktop access for enterprise users from Android-powered (more)
Array Networks Inc (TWO: 3664) a global leader in application, desktop and cloud service delivery, today announced the launch of DesktopDirect for Android, an application enabling full remote desktop access for enterprise users from Android-powered tablets or smart phones. (less)
The globalized business world is made up of mobile, multilingual and multicultural workforce working from different geographical locations. Further with offices located in different time zones, the concept of fixed time work schedule has moved to a (more)
The globalized business world is made up of mobile, multilingual and multicultural workforce working from different geographical locations. Further with offices located in different time zones, the concept of fixed time work schedule has moved to a more flexible timing, making professionals and their expertise available ay time anywhere. The techno-savvy online web conferences carried through remote access solutions have taken over from the conventional system of conference hall meetings, ensuring anytime access. (less)
Most entrepreneurs and organizations are of opinion that the concept of Bring Your Own Device (BYOD) is gradually becoming important. This device represents an essential facet in an individual’s life. The way an individual feels and how productive (more)
Most entrepreneurs and organizations are of opinion that the concept of Bring Your Own Device (BYOD) is gradually becoming important. This device represents an essential facet in an individual’s life. The way an individual feels and how productive he is utilizing it all goes on to translate his emotional happiness. (less)
Slide 1: You Got Chocolate On My iPad!
(Toys in the Office)
Secure360 Tues. May 10, 2011 barry.caplin@state.mn.us bc@bjb.org, @bcaplin
Barry Caplin Chief Information Security Officer MN Department of Human Services
Slide 3: http://about.me/barrycaplin
Slide 7: Apr. 3, 2010 300K ipads 1M apps 250K ebooks … day 1!
Slide 9: http://www.bbspot.com/Ne ws/2010/03/should-i-buyan-ipad.html
Slide 11: Don't Touch!
Pharmaceutical coating
Slide 12: Of iPad owners...
• • • • 17% have > 1 in their household 37% - their partner uses it 14% bought cause their kid has one 19% considering purchasing another
http://today.yougov.co.uk/sites/today.yougov.co.uk/files/Tablet_ownership_in_households.pdf
Slide 20: Our Story Begins...
Slide 21: Device Convergence
PEDs
Computers
Slide 22: Example
• The “PED” policy • Personal Electronic Device
• Acceptable use
• Connections • Data storage
Slide 23: 1 Day
Slide 27: Considerations
• • • • • Scaled-down device v multi-purpose computer Want v Need Reduced attack surface v eggs in one basket Need for mobility v mobile issues Does remote access apply?
Slide 28: What needs to change for “local” remote access?
Slide 29: BYO
Slide 30: BYO
Slide 31: BYOC or BYOD
BYO
Slide 32: Security Concerns
Slide 33: Data Leakage
Slide 34: Unauthorized Access
Slide 35: “Authorized” Access
Slide 36: How can we do BYOC?
Slide 37: Method 1 - Sync
• Direct or Net Connect Issues: • Need Controls – a/v, app install control, filtering, encryption, remote detonation • Authentication – 2-factor? • Leakage! • Support
Slide 38: Method 2 – ssl vpn
• Citrix or similar Pros: • Leakage – no remnants, disable screen scrape/local save/print • Reduced support needed • Web filtering covered Issues: • Unauthorized access still an issue; User experience; Support
Slide 39: Method 3 – data/app segregation
• Encrypted sandbox • Separate work and home • Many products Pros: • Better user experience • Central management/policy • Many products – local/cloud • Leakage – config separation, encryption Issues: access ; support; cloud issues
Slide 40: DHS view
• • • • • Policy Supervisor approval Citrix only No Gov't records on POE (unencrypted) 3G or wired • • • • Guest wireless 802.1x FAQs for users/sups Metrics
Slide 41: Other Issues
• • • • Notes or manually entered data Enterprise email/OWA Discovery Voicemail/video
Slide 42: The Future
• More tablets/phones/small devices • More “slim” OS's – chrome, android, ios, etc • Cost savings? • Cloud
Slide 43: Capabilities to Consider
• • • • • • •
Device encryption Transport encryption Complex PWs/policy VPN support Disable camera Restrict/block apps Anti-malware
• • • • • •
Restrict/block networks Remote lockout Remote/selected wipe Policy enforcement OTA management 2-factor/OTP
InfoWorld March 2011 MDM Deep Dive
Slide 44: Discussion…
Slides at http://slideshare.net/bcaplin