Back

Enterprise Mobility Suite Overview with Brad Anderson

As more apps and data move to cloud traditional perimeter security has become irrelevant and ineffectiveWith widespread EMM consolidation compani...

4 min read
Published on Mar 24, 2016
breaking-enterprise-mobility-suite-overview-brad-anderson-2

As more apps and data move to cloud, traditional perimeter security has become irrelevant and ineffective.

With widespread EMM consolidation, companies are no longer looking for disparate identity, device management, app management and data management solutions. They need a comprehensive solution that enables mobile productivity.

EMS is a born-in-the-cloud solution that integrates with on-premises capabilities. So it serves as an extension from what you’re already using, enables you to capitalize on gaps between products and equip users to do more. Learn more about getting EMS deployed in your organization.

The concept of security in the Microsoft-hosted cloud may be difficult to grapple for some, especially when it comes to protecting all the aspects of users and company data on the go. That’s why Microsoft exec Brad Anderson recently released a video that breaks down the EMS capabilities (42 minute video).

Here are 3 distinguishing characteristics of EMS that make it the most comprehensive cloud security platform:

1. Verifying Identity With Azure Active Directory

Identity is the most important part of an enterprise mobility management platform and architecture. While the cloud has increased productivity, more entry points and interactions mean 1 threat could compromise an entire organization.

2.  Azure Active Directory is the identity store and security springboard for all corporate apps, devices, etc. Once users have proven who they are, they can access apps like Office 365 and have everything delivered to them to be productive. Microsoft has worked with thousands of partners (including 2,500 SaaS apps) to ensure they also integrate with AD.

To prevent against malicious access, you can enable multi-factor authentication (verification via email or text) through Microsoft EMS. Windows 10 takes this one step further through camera authentication, which eliminates the need for passwords and unauthorized logins altogether.

3.  Managing Corporate Apps, Not Devices

Microsoft EMS focuses on managing corporate apps, not the devices themselves, so users can work securely from the apps and devices they prefer while retaining control over their personal data. Microsoft’s Advanced Threat Analytics and telemetry capabilities sift through data to point you to suspicious activity. Here are just a few technologies at work:

  • Cloud App Discovery brings apps under management so you can drill into specific apps to see user activity, how much data is transferred, etc. Other management capabilities include auto provisioning and access revoking, single sign-on, etc.
  • Azure Machine Learning identifies who is using apps, when they’re being used and from where and delivers custom reports.
  • Anomalous Sign-in Reports tell you when people are attempting to sign in from hidden IP addresses, from multiple accounts or from two different locations within a short period of time.
  • Microsoft’s Digital Crimes Unit constantly looks at the dark part of web to find user credentials for sale and compromised user accounts.

Distinguishing Between Corporate and Personal Data

How can data loss prevention (DLP) be applied to corporate documents but not personal ones?

Microsoft has baked the concept of multi-use (employees use devices for both work and personal use) into its security platform. For example, built-in intelligence identifies what is corporate or personal data and restricts users from sharing corporate information via a personal email or copying and pasting it.

By protecting the apps, not the device itself, you’re able to apply policy to corporate apps without taking over device.

Here are a few ways EMS promotes smart data loss prevention when managing data transfer across partners and employees:

Tech Tips built into Office: By identifying sensitive data such as credit card numbers, EMS provides pops-up Tech Tips to help users make smarter decisions when handling sensitive data.

  • Access embedded into documents: Files inherently understand who can open it and what rights particular users have.
  • Integration with Azure RMS: When users share a document, it actually contains names of users who can access it and the rights they have. Users can share information and track how the data is being used — who is accessing documents, attempts to open from unauthorized users, etc. — all by time and location.
  • Easy open/send for RMS-protected documents: In the past, it wasn’t possible to read, edit and send RMS-protect documents with devices. Now, EMS makes it simple to read, create and edit these files.

The core belief behind EMS is that data should be self-protecting and inherently understand who can open it and what rights those users have.

If you have any questions about the Enterprise Mobility Suite or want to learn how it can protect your corporate assets in the cloud, contact an Agile IT rep today!

This post has matured and its content may no longer be relevant beyond historical reference. To see the most current information on a given topic, click on the associated category or tag.

Related Posts

Screen Capture Protection in Windows 365

How to Enable Screen Capture Protection in Windows 365 for Enhanced Security

Learn how to enable and use screen capture protection in Windows 365 to secure sensitive information and prevent unauthorized captures, enhancing your organization's data security.

Jan 21, 2025
7 min read
Office 365 Collaboration Tools

Office 365 Collaboration Tools: Are They Right for Your Organization?

Explore how Office 365's collaboration tools can enhance your organization's productivity and security.

Jan 12, 2025
6 min read
NIST 800 171 vs NIST 800 53

NSA Cybersecurity Collaboration: No-Cost Services Available to DoD Contractors

Learn how NSA cybersecurity collaboration provides no-cost services to DoD contractors, helping enhance security and compliance with advanced cyber protections.

Jan 10, 2025
6 min read
When is a New CMMC Assessment Needed

Understanding When and Why You Need a New CMMC Assessment

Learn when to schedule a new CMMC assessment, what triggers reassessments, and how changes in scope, contracts, or compliance impact your certification process.

Jan 6, 2025
9 min read
How Does VDI Solve the CU./I and CMMC Conundrum?

How Does VDI Solve the CUI and CMMC Conundrum?

Explore how VDI for CUI helps businesses meet compliance requirements, ensuring secure data access while simplifying CMMC certification.

Dec 30, 2024
9 min read
Disaster Recovery Plan Enough

Is your disaster recovery plan enough?

Strengthen your Office 365 disaster recovery plan with granular backup, retention policies, and solutions to prevent data loss.

Dec 18, 2024
7 min read

Ready to Defend and Secure Your Data
So Your Business Can Thrive?

Fill out the form to see how we can protect your data and help your business grow.

Loading...
Secure. Defend. Thrive.

Let's start a conversation

Discover more about Agile IT's range of services by reaching out.

Don't want to wait for us to get back to you?

Schedule a Free Consultation

Location

Agile IT Headquarters
4660 La Jolla Village Drive #100
San Diego, CA 92122

Secure. Defend. Thrive.

Don't want to wait for us to get back to you?

Discover more about Agile IT's range of services by reaching out

Schedule a Free Consultation