Wrapping Your Arms Around Mobile Security in the Enterprise Nathan King, Senior Manager, IT Security Systems United Airlines



Similar documents
Chris Boykin VP of Professional Services

Answers to these questions will determine which mobile device types and operating systems can be allowed to access enterprise data.

Auditing the Security and Management of Smart Devices. ISACA Dallas Meeting February 13, 2014

Mobile Device Management

Exchange ActiveSync (EAS)

1. What are the System Requirements for using the MaaS360 for Exchange ActiveSync solution?

How To Protect The Agency From Hackers On A Cell Phone Or Tablet Device

The User is Evolving. July 12, 2011

Feature Matrix MOZO CLOUDBASED MOBILE DEVICE MANAGEMENT

Mobile Device Security Is there an app for that?

Apple Configurator MDM Site - Review

Smart Givaudan. From BYOD experience to new mobile opportunities

Network and Device Level Mobile Security Controls IT Considera-ons in the BYOD Era

Security Overview Enterprise-Class Secure Mobile File Sharing

Mobile Device Management AirWatch Enrolment ios Devices (ipad, iphone, ipod) Documentation - End User

Symantec Mobile Management 7.2

Mac in the Enterprise

AirWatch Pricing EUR. Effective May 15 th, 2013 Expires September 30 th, 2013

MDM Mobile Device Management

What We Do: Simplify Enterprise Mobility

Mobile Device. Management-

Managing iphones, ipads, and Androids with Exchange ActiveSync. Presented by Val Hetrick

Technology Shifts. Mainframe Windows Desktop Internet

Mobile Device Management and Security Glossary

Service Definition Nine23 MDM

When enterprise mobility strategies are discussed, security is usually one of the first topics

SIMPLIFY MULTI-PLATFORM ENTERPRISE MOBILITY MANAGEMENT

BYOD: Should Convenience Trump Security? Francis Tam, Partner Kevin Villanueva, Senior Manager

Ben Hall Technical Pre-Sales Manager

Community Chat. MDM Meets Endpoint Mgmt. Justin Strong Sr. Product Marketing Manager

Kaspersky Lab Mobile Device Management Deployment Guide

Symantec Mobile Management 7.2

activecho Driving Secure Enterprise File Sharing and Syncing

Corporate-level device management for BlackBerry, ios and Android

Mobile Device Security Risks and RemediaAon Approaches

BYOD Enabling Technologies

Cisco Mobile Collaboration Management Service

FileDrawer An Enterprise File Sharing and Synchronization (EFSS) solution.

AirWatch Enterprise Mobility Management. AirWatch Enterprise Mobility Management

Hands on, field experiences with BYOD. BYOD Seminar

Harry Fike Frostburg State University Office of Information Technology Technical Services

Mobile Security Fall 2013

Results of 3rd Annual Survey of IT Pros on Managing Mobile Devices

2/23/2013 BY VORAPOJ LOOKMAIPUN CISA, CISM, CRISC, CISSP Agenda. Security Cases What is BYOD Best Practice Case Study

Symantec Mobile Management for Configuration Manager 7.2

AirWatch for Android Devices

Interact Intranet Version 7. Technical Requirements. August Interact

Ensuring Enterprise Data Security with Secure Mobile File Sharing.

Embracing Complete BYOD Security with MDM and NAC

McAfee Enterprise Mobility Management Versus Microsoft Exchange ActiveSync

The Future of Mobile Device Management

Security. Mobile Device FOR. by Rich Campagna, Subbu Iyer, and Ashwin Krishnan. John Wiley & Sons, Inc. Foreword by Mark Bauhaus.

ipad Deployment Guide

APPLE & BUSINESS. ios ENTERPRISE SECURITY ENTERPRISE NEEDS CONFIGURATION PROFILES

Dell World Software User Forum 2013

Tom Schauer TrustCC cell

Bell Mobile Device Management (MDM)

Bring Your Own Device & the Consumerisation of IT: 2 Case Studies

Kaspersky Security 10 for Mobile Implementation Guide

Access All Your Files on All Your Devices

MDM: Enabling Productivity in the world of mobility. Sudhakar S Peddibhotla Director of Engineering, Good Technology

Feature List for Kaspersky Security for Mobile

7 Things You Need to Know about Virtual Mobile Infrastructure

Windows Phone 8.1 Mobile Device Management Overview

Hakhel has received the following essential information from Torah Jews who are smart phone experts:

Anchor End-User Guide

Mobility Challenges & Trends The Financial Services Point Of View

Systems Manager Cloud-Based Enterprise Mobility Management

Managing ios Devices. Andrew Wellington Division of Information The Australian National University XW11

User Manual for Version Mobile Device Management (MDM) User Manual

Mobile Security & BYOD Policy

Peace of mind across all your mobile devices

Bring Your Own Device (BYOD) Mobile Device Management (MDM) Joshua Jacobs, Sawyers & Jacobs LLC jjacobs@sawyersjacobs.com. Presented by Joshua Jacobs

Security and Compliance challenges in Mobile environment

System Configuration and Deployment Guide

Building Apps for iphone and ipad. Presented by Ryan Hope, Sumeet Singh

ipad in Business Mobile Device Management

The Truth About Enterprise Mobile Security Products

M O B I L E C O L L A B O R A T I O N S O L U T I O N S

Salmon Group, Inc. An 8(a) Certified, Veteran owned company

Access Tropical Cloud Desktop from Any Device

ios W HY YOU NEED TO UPGRADE Presented by Ammy Woodbury AND HOW TO GET THE MOST FROM I OS 7

Athena Mobile Device Management from Symantec

Symantec Mobile Management 7.1

Reviewer Guide Core Functionality

Global Mobile Technologies Guide for Zenprise Enrollment for IOS devices (ipad, iphones)

Data risks and Technology Trends. Stephen Reyes Saltmarsh, Cleaveland & Gund

Symantec Mobile Management 7.1

iphone in Business Mobile Device Management

ITSM & Enterprise Mobility Management

[BRING YOUR OWN DEVICE POLICY]

BYOD and Its Impact on IT. Making it easy to deploy, integrate and manage Macs, iphones and ipads in a Windows environment

BlackBerry Universal Device Service. Demo Access. AUTHOR: System4u

Georgia Institute of Technology Data Protection Safeguards Version: 2.0

Deploying. Mac. Five best practices

1. Introduction Activation of Mobile Device Management How Endpoint Protector MDM Works... 5

Enabling Staff with Secure Mobile Technology in an Increasingly Risky World

Mobile Device Management ios Policies

Systems Manager Cloud Based Mobile Device Management

Enterprise Mobility Management

Transcription:

Wrapping Your Arms Around Mobile Security in the Enterprise Nathan King, Senior Manager, IT Security Systems United Airlines May 2013

Choosing a Mobile Device Had to pass FAA Device Security Hardware encryption Manageability Maturity 3

Choosing a Mobile Device Management (MDM) Solution 3 Provide cloud support for quick deployment (PLUS) Backup database to implement in our datacenter Backup database and restore to the cloud for business continuity Provide full support for: Apple ios devices (ipads, iphones) Windows Mobile Android Blackberry (not a primary concern since we had BES) Symbian (also not a primary concern) Enterprise App Store (Critical) Jail Broken/Rooted Detection (Critical) Secure Document Management (Critical) We partnered with AirWatch Interface to Microsoft SCCM or HPCA (Since then, SCCM is our standard) Was not a requirement but did provide an incentive AirWatch has partnered with Microsoft to integrate with SCCM

4 Pilot EFB Electronic Flight Bag Flight Manuals SOPs Weather Charts Flight Charts Training Auto-Provision Wi-Fi Email Pros Reduce expense for paper manual reproduction Save fuel costs due to reduced weight of paper manuals $2+ million/year savings Cons New environment for those who are used to paper Some country s confiscate devices Email Only Access Use Exchange Active Sync Require PIN Pin Expires OWA allows user to wipe lost phone More than email Require MDM management

Corporate Devices BYOD Automatic Provision Wi-Fi Email Corporate Applications Loss Prevention Wipe lost devices Geo-locate lost devices Secure Document Management Secure sensitive & financial data Departments & Teams Green Initiative Full disk encryption Secure web filtering Support for 11,000 EFB ipads All corporate non-windows mobile devices Bring Your Own Device Breach Your Own Data Bring Your Own Disaster Current Currently some devices are sneaking their way on the network Temp Guest Wi-Fi for those who don t sneak as well as guests Using EAS for smart phones accessing email Future NAC Network Access Control Guest network w/ AD credentials LAN access by MDM only using certificate authentication VDI RDP to desktop Web applications that support Safari Auto-provision email & guest Wi-Fi Enterprise wipe Allow user wipe of lost personal devices 5

Challenges PIN More than 4 characters Alpha Numeric Does not allow repeating, ascending, descending Expiration History Max failed attempts Restrictions App monitoring for inappropriate or malicious apps Ratings Apps TV Movies Geo Location You can track me? 6

MDM Strengths & Weaknesses Apple Not quite enterprise ready Provides the best support for MDM Best security ios 6 updates allow ability to disable app install/delete Android Malicious apps Minimal MDM - still needs work Newer versions are increasing support for MDM solutions Less expensive that Apple Still few with hardware encryption Windows Mobile LAN based devices may be better managed by SCCM MDM solutions still best for devices that leave the corporate LAN App provides remote viewing for trouble shooting Still best solution for PCI related apps 7

Key Takeaways PIN The PIN is an integral part of ios encryption It also protects the passwords stored for email and other apps App password further protects data Geo-location I lost my phone however was able to recover it because of this Remote wipe Enterprise wipe for employees leaving the enterprise Full wipe for lost corporate devices Full wipe available for employees personal devices if managed. Still BIG concerns over Android OS Easily provision corporate applications Apple and Android are not ready for Enterprise PCI 8

Questions Nathan.King@united.com 713-324-2364 9