mobile device management for credit unions
DESCRIPTION
Credit Union Mobility-Balancing Security and Success Credit unions have been leery to embrace the enterprise mobility wave. Rightly so, regulations from Sarbanes-Oxley (SOX) to the Financial Industry Regulatory Authority (FINRA) and the Payment Card Industry Data Security Standard (PCI DSS) have given financial IT professionals extra concern for caution. From BYOD to Corporate-Owned, Every Mobile Device Protected The good news is that with Mobile Device Management (MDM) iPhones, iPads and the slew of Androids on the market, you can meet the balance of open access for employees while ensuring adherence to the financial industry’s stringent requirements for compliance with regulations. Fiberlink’s Director of Mobile Technology Solutions, Clint Adams, outlines: • Where mobility is making its biggest impact in credit union productivity • Top mobility concerns for credit unions • How to enable secure mobile access to corporate resources like email and Wi-Fi • App distribution and file sharing-security and management considerations • Air-tight protection of mobile content with containerization • Real world examples of MDM in financeTRANSCRIPT
Mobile Device Management for Credit Unions
Clint Adams | Director of Mobile Technology Solutions | [email protected]
Agenda1. Mobile Device Management (MDM) for
Credit Unions2. Secure mobile access to corporate
resources3. Secure file sharing and app distribution4. Data Loss Prevention (DLP) and
containerization5. Enterprise Mobility Management
(EMM)
2
Poll question
What is the level of concern regarding the destruction of personal data on BYOD devices?a) Noneb) Somewhat concernedc) Very concerned d) Not sure
3
Mobility Impact on Credit Union Productivity
• Organizations and employees are benefiting from anytime, anywhere access to corporate systems
• Common use cases• Secure Document Management• Safe Mobile Enablement and BYOD• Block and auto-quarantine new devices• Comply with financial audits for Data Leakage
Protection (DLP)
4
Real World Use Cases
• Board Packets • Securely edit/annotate
PDFs• Secure access to apps and
data for loan officers• Secure corporate email and
docs/attachments
5
Top Mobility Concerns for Credit Unions
6
• How to support BYOD and COPE• Who has which device?• Device use and user compliance• Regulatory mandates and
information security regulations/policies
General Mobility Concerns for Credit Unions
• Controlling access to certain smartphone features
• Tracking device usage• Managing software licenses• Tracking assets• Preventing professionals from
going over the limit on their voice and data plans
7
Security Risks Specific to Credit Unions
• Complying with local, state and federal regulations• Preventing data loss• Enforcing security policy on mobile devices• Ensuring the use of passwords on mobile devices
8
Financial Services Regulatory Challenges
• FINRA (Financial Industry Regulatory Authority
• SEC Regulation S-P (Privacy rules by the Gramm-Leach-Bliley Act)
• SOX (Sarbanes-Oxley Act)• FRCP (Federal Rules of Civil Procedure)• PCI DSS (Payment Card Industry Data
Security Standard)• US Patriot Act
9
Poll question
Have you developed success criteria and quantified the benefits BYOD provides your organization?a) Have not started yetb) No need – already have full exec supportc) I have started to measure impact and benefitsd) I have a clear understanding of the impact and benefits
already
10
Challenges Added by BYOD
• Personal and professional data and applications sit on the same device– How to control and manage while respecting the employees privacy, private
data and applications– How to remove corporate data, but not risk personal and leave private data
intact
• Devices from different manufacturers and running different operating systems have different built-in features– How to enforce a consistent set of configurations and policies across diverse
and fragmented set of devices
11
EMM is Foundational for BYOD/COPE
• Supports BYOD/COPE with self-service enrollment
• Configure devices and protect employee privacy
• Enforce security policies and meet regulations
• Push content, apps and docs and provide workspace separation
Simplify User Enrollment
• Keep the enrollment simple, fast & low touch– Email & SMS text– Simple URL or QR code– Over the air (OTA)– Notification when
complete– Corporate credentials vs.
passcode for authentication
13
or
Configure Policies Over the Air (OTA)
• Configure devices with enterpriseprofiles, credentials & settings– Email, contacts & calendar– Wi-Fi & VPN– App catalog with public &
enterprise apps– Corporate content & documents– Device restrictions– Data container settings– Data expense limits
14
Help Users Help Themselves
• An end user self service portal will help cut down on the number of calls to your IT teams
• Enable user to take basic actions– Lock device– Reset passcode– Locate device– Wipe device
• View information– View hardware & network
information– View security & compliance state 15
Protect Personally Identifiable Information (PII)
• PII is a hot topic as of late– Privacy laws– Personal safety
• Are you allowed or should you be allowed to? (e.g. regulatory or corporate policy)– Locate a personal device– View location history– View a list of apps installed
for personal use
16
Automate Policy Enforcement• Continuously monitoring for your
non-compliant events
• Automate your enforcement actions accordingly
• Enforce MDM management• Minimum OS version• Remote wipe support• SIM change
• Encryption support• Application management• Jailbreak/root detection• Roaming state change
Manage and Secure Mobile Apps
• Separate business apps from personal apps with an on-device Enterprise App Catalog
• Centralize app distribution and management• Set app security policies including required (whitelist)
and disallowed (blacklist)• Authenticate and authorize access to apps
Manage and Secure Content
• Create a separate on-device Doc Catalog App for users• Centralize distribution and management of corporate docs• Control edit, copy/paste, share or open files in unauthorized
applications• Integrate with MDM policies and compliance state
Protection of Private Content with Containerization
• Containing & managing corporate data is the probably the biggest concern of allowing personal devices
• MaaS360 Secure Productivity Suite – our Dual Persona approach to separate personal & work data– Secure Mail– Application Security– Secure Browser– Secure Document Sharing
• Trusted Workplace container & selective wipe– Today, of all “wipes” of personal devices in MaaS360, 86% are selective wipes
20
Poll question
What is the most important feature for your organization as it relates to mobile enterprise management/mobile security?a) Not sureb) Containerization/DLPc) Application managementd) Remote device lock/wipee) Policy enforcement
21
A Different Mobile Technology Company
• 20 Years of Experience• Focused on Enterprise Mobility• High Customer Success Rate• 100% Cloud• Over 1M Devices
Diverse Range of Financial Firms
22
Solution• Chose MaaS360 over alternative solutions due to rapid, cost-efficient
deployment and ease of use• MaaS360 provides the visibility, agility and automated controls to easily
manage all iPhones and iPads from a single, web-based console.
MaaS360 Customer Capsule –
Benefits• Efficient mobile application management, resulting in 92% time savings
for IT• 50% cost savings through the transfer of device management
responsibilities from Level 2 Engineers to service desk employees• Rapid deployment in the cloud – from signed agreement to device
enrollment in a single afternoon• Centralized control to ensure device and network security• Mobile Intelligence to support audit and governance requirements
About Desert Schools Federal Credit Union• Arizona’s largest credit union with $3 billion in assets, 370,000
members and more than 50 locations• Not-for-profit cooperative serving members for more than 70
years• Located in Arizona• Industry: Financial Services
Challenges• The expansion of its mobile device landscape to include iPhones and
iPads resulted in the need for control over and visibility into the devices• Wanted an easy-to-use, affordable mobile device management solution
that could be deployed quickly to secure devices
“MaaS360 really stood out for us because the solution not only met all of our selection criteria, but it was also offered in a cloud model — offering dramatic cost and time savings. We hadn’t defined a specific budget for this project; we just needed the devices managed, and we needed it done right away.”
- Marty Rios, Director, Enterprise Services, Desert Schools Federal Credit Union
23
MaaS360 Delivers an Integrated Approach
24One Platform for All Your Mobile Assets
Secure Content Collaboration
Secure MobileContainers
ComprehensiveMobile Management
Seamless Enterprise Access
Why Customers Love MaaS360
Powerfulfeatures to address the full mobility lifecycle
25
Seamless integration with all of your existing infrastructure
Simpleand fast with an exceptional experience
Provenapproach to mobile management
Securecontainers to separate work from play
The MaaS360 Customer Experience
26
Fastest Time to Trust60% deployed MaaS360 in less than 4 hours
75% deployed MaaS360 in less than 8 hours
0% 100%
Reference customers consistently praise MaaS360 for ease of use at the end-user and administrator levels.
”“–
Included sales and customer support at no additional charge
Customer support available 24 x 7 by phone, chat or email
Community, forums, blogs, on-demand webinars
Recognized Industry Leadership
“Winner” of 2013 SIIA CODiE Award for Best Mobile Device Application for Enterprises
27
“Leader” in the 2014 Magic Quadrant for Enterprise Mobility Management Suites
“Best-in-class cloud” among ranked EMM vendors
Named an “Innovator” for Cloud-Hosted Mobile Device Management Solutions
Identified as a “Champion” in the Mobile Device Management Vendor Landscape Report
Get Started Now
28
maas360.com/ibm
InstantAccess a free, fully functional trial for 30 days
MobileManage and secure your devices, emails, apps and docs
EasySet up and configure your service in minutes
1 2 3
Poll question
Would you like more information?a) Yes, please have MaaS360 reach outb) No, not at this time
29