The explosion of consumer devices like smart-phones, tablets & other similar devices into enterprise computing is making IT security pros very nervous.

So, what do you think is the best way to deal with this situation?
Smartphones & ipads: Should it be allowed @ work?

Thanks

Ramy Stuart
IT Consultant, Allied Worldwide

Dani AI

Generated

Good thread, . Several useful perspectives already: favours using the tech, argues for standardization, for company-supplied devices, and rightly calls out the patch/update headache. Below is a concise, practical approach that blends those views into an actionable BYOD/corporate-device strategy.

Adopt a hybrid policy: supply corporate-owned devices where access is high-risk or regulated; allow BYOD for lower-risk roles under strict boundaries and technical controls. That keeps support predictable while letting people use familiar tools.

  1. Inventory and classify — map who needs what data and which apps access sensitive systems.
  2. Policy and consent — publish acceptable-use, support limits, and a clear privacy/remote-wipe consent signed by users; involve HR/legal.
  3. Minimum requirements — list supported OS versions, forbid rooted/jailbroken devices, require device encryption and screen-lock.
  4. Technical controls — use MDM for corporate phones, or MAM/containerization for personal devices to isolate corporate data; enforce passcode, encryption, and remote-wipe for the container only when BYOD.
  5. Network segmentation — put unmanaged devices on a guest VLAN with limited access; require VPN and posture checks for corporate resources.
  6. Patch and lifecycle — define supported device models and refresh cycles to avoid chasing every new release; automate updates where possible.
  7. Pilot and support — run a pilot, document helpdesk procedures, train users, and roll out in phases with monitoring and an incident response plan.

This gives the productivity wins mentions, the predictability / want, and addresses ’s update concern. Final caution: don’t enable broad remote-wipe or intrusive controls on personal devices without legal review and explicit employee consent.

Recommended Answers

All 5 Replies

I'm not sure what rock you've been living under, but smartphones have been used heavily in businesses for well over a decade. Note that the explosion of affordable laptops made IT security pros very nervous too. Technology evolves and so do the ways of using it. I think the best way to deal with the situation is coming up with ways to use the new technology instead of reasons to ban it.

As for tablets, I'm not convinced that they're mature enough to be useful except in niche areas.

Thanks for your comment. Narue!

I do know that smartphones are heavily used in enterprise computing but the question was more towards the explosion of consumer devices into enterprise setup. It becomes increasingly difficult for IT pros to support different type of mobile devices which comes with varied platforms. It can do more harm than good for the enterprise environment if appropriate measures are not taken care of.

As few companies are coming with "Bring your own device" policy to make sure that these consumer devices are scanned and monitored under corporate network. It would be great if you can comment on the ways to deal with it.

Thanks

Ramy Stuart

It becomes increasingly difficult for IT pros to support different type of mobile devices which comes with varied platforms. It can do more harm than good for the enterprise environment if appropriate measures are not taken care of.

that's true I agree. We jus approved Iphone4 and waiting for approval on Android phones now. Because the constant updates and security patches and so on and so forth.
So it can be a hassle.

I think this is alot more simple than it may seem on the surface.

I think the key is to standardize. Pick one type of phone and go with it. And dont allow people to use their personal cell phones for work purposes.

a well developed corporate strategy will see specific devices approved for use by employees, and those specific devices supplied to employees.
It will NOT allow employees to connect just any old (or new) smartphone or whatever to corporate resources.

And it will certainly not jump on the iPhone upgrade bandwagon and replace a thousand perfectly good iPhone Mk.1s with Mk.2s, then Mk.3s and Mk.4s as soon as Apple releases a new model.
The company should approve a single model (or maybe 2 competing models to give employees a choice in case one of them doesn't match all requirements), and purchase enough of them to last the desired period until they're economically written down.
That might mean purchasing 1000 phones at once to hand out 500 to employees and have another 500 in spare for future expansion and replacement of lost, stolen, or damaged devices.
Employees who complain about not having the latest gadgets can go fchk themselves.

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.