Phones and tablets hold huge amounts of sensitive data and access, making mobile security essential — especially with BYOD (bring your own device).
Mobile Device Security
How a phone goes from personal handset to a managed, secure work device.
Tap or hover a part to learn more.
First barrier.
A PIN, password or biometric lock is the first defence against a lost or stolen device being accessed.
Check your understanding
1. What lets an organisation remotely wipe a lost device?
2. What protects data if the device is stolen but powered off?
Keep learning
The essentials
- Threats — malicious apps, sideloading, phishing/smishing, unpatched OS and device loss/theft.
- MDM / MAM — Mobile Device Management controls the whole device; Mobile Application Management secures just the corporate apps/data (better for BYOD privacy) — see Microsoft Intune.
- App permissions — least privilege applies to apps too; review what they can access.
- Jailbreaking/rooting removes built-in protections and should be blocked on managed devices.
- Encryption & remote wipe protect data if a device is lost.
Mobile is a front-line endpoint — the same endpoint security and zero trust principles apply.
