How Microsoft s Enterprise Mobility Suite Provides helps with those challenges

Similar documents
Phil Schwan Technical

Go mobile. Stay in control.

905M 67% of the people who use a smartphone for work and 70% of people who use a tablet for work are choosing the devices themselves

Windows ierīces Enterprise infrastruktūrā. Aris Dzērvāns Microsoft

Use Microsoft EMS. to Protect your Mobile Data and Mobile Apps. Chris Nackers Nackers Consulting

WHITE PAPER AIRWATCH SUPPORT FOR OFFICE 365

Use EMS to protect your mobile data and mobile app

Office 365: Modern Workplace

MD-101: Modern Desktop Administrator Part 2

Tech Dive: Microsoft Azure Identity Management and Office 365

Microsoft: What s new and cool FY16

Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On-Premises Tools

Google Identity Services for work

The Device Has Left the Building

Identity as the Entrée to the Microsoft Cloud

Speaker Introduction Who Mate Barany, VMware Manuel Mazzolin, VMware Peter Schmitt, Deutsche Bahn Systel Why VMworld 2017 Understanding the modern sec

Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) & On- Premises Tools

Managing Microsoft 365 Identity and Access

At Course Completion After completing this course, students will be able to:

Mobile device management at Microsoft

Related Labs: Introduction to Universal Access and F5 SAML IDP (Self-paced)

33% 18% 66% President Convergent Computing

Secure Access for Microsoft Office 365 & SaaS Applications

Microsoft Intune App Protection Policies Integration. VMware Workspace ONE UEM 1811

Hybrid Identity de paraplu in de cloud

Thomas Lippert Principal Product Manager. Sophos Mobile. Spring 2017

Planning for and Managing Devices in the Enterprise: Enterprise Management Suite (EMS) & On-Premises Tools

WORKPLACE Data Leak Prevention: Keeping your sensitive out of the public domain. Frans Oudendorp Ronny de Jong

Crash course in Azure Active Directory

IT Security Training MS-500: Microsoft 365 Security Administration. Upcoming Dates. Course Description. Course Outline $2,

Identity as the core of enterprise mobility

Microsoft 365 Business FAQs

RHM Presentation. Maas 360 Mobile device management

PLATFORM CONVERGENCE JOURNEY

Top. Reasons Legal Teams Select kiteworks by Accellion

Jay Ferron. CEHi, CISSP, CHFIi, C)PTEi, CISM, CRISC, CVEi, MCITP, MCSE, MCT, MVP, NSA-IAM blog.mir.

Identity & Access Management

20398: Planning for and Managing Devices in the Enterprise: Enterprise Mobility Suite (EMS) and On- Premises Tools

Microsoft licensing for the Consumerization of IT

Demystifying Microsoft Desktop Licensing

Adaptacyjny dostęp do aplikacji wszędzie i z każdego urządzenia

ENABLING AND MANAGING OFFICE 365

MCSA Office 365 Bootcamp

Zero Trust with Okta: A Modern Approach to Secure Access from Anywhere. How Okta enables a Zero Trust solution for our customers

Windows 10 Management Technologies: What s New. Michael Niehaus Senior Product Marketing Manager, Windows Microsoft

REVISED 4 JANUARY 2018 VMWARE WORKSPACE ONE REFERENCE ARCHITECTURE FOR SAAS DEPLOYMENTS

Adnan Cloud Solutions Architect. SAFFA living in Netherlands, work globally. Microsoft Trainer +25y (xrl MSLearning)

Licensing Microsoft Office 365 ProPlus Subscription Service in Volume Licensing

ForeScout Extended Module for VMware AirWatch MDM

Centrify Identity Services for AWS

Securing Today s Mobile Workforce

News and Updates June 1, 2017

Enterprise Product Guide

Quo vadis? System Center Configuration Manager Full managed desktop. Mobile device management Light managed device policies, inventory,

SECURING AWS ACCESS WITH MODERN IDENTITY SOLUTIONS

Six steps to control the uncontrollable

Citrix XenMobile and Windows 10

Course Outline. Enabling and Managing Office 365 Course 20347A: 5 days Instructor Led

Quick Heal Mobile Device Management. Available on

Overview What is Azure Multi-Factor Authentication? How it Works Get started Choose where to deploy MFA in the cloud MFA on-premises MFA for O365

Enabling and Managing Office 365

CONDITIONAL ACCESS FROM A TO Z

ManageEngine ADSelfService Plus

VMware AirWatch and Office 365 Application Data Loss Prevention Policies

Microsoft Security Management

Introducing KASPERSKY ENDPOINT SECURITY FOR BUSINESS

Securing Data in the Cloud: Point of View

ARCHITECTURAL OVERVIEW REVISED 6 NOVEMBER 2018

Overview. Premium Data Sheet. DigitalPersona. DigitalPersona s Composite Authentication transforms the way IT

The Economics of Office YTD Net Promoter Score. Microsoft Office365 10/20/2017. Paul Hoffman, CPA, CITP, CGMA CEO/President of SouthTech

Maximize your investment in Microsoft Office 365 with Citrix Workspace

MaaS360 Secure Productivity Suite

White Paper Securing and protecting enterprise data on mobile devices

Mobile Security Overview Rob Greer, VP Endpoint Management and Mobility Product Management Dave Cole, Sr. Director Consumer Mobile Product Management

XenApp, XenDesktop and XenMobile Integration

OFFICE 365 GOVERNANCE: Top FAQ s & Best Practices. Internal Audit, Risk, Business & Technology Consulting

ForeScout Extended Module for MobileIron

Licensing Microsoft Office 365 ProPlus Subscription Service in Volume Licensing

Enhancing and Extending Microsoft SharePoint 2013 for Secure Mobile Access and Management

Office 365: Fact Sheet

Mastering the Move to Modern Management using ConfigMgr

Service Description VMware Workspace ONE

Symantec Endpoint Protection Family Feature Comparison

HOW TO UNLOCK EMS. 3 Things You Need to Know to Capitalize on Enterprise Mobility Suite

Partner Center: Secure application model

Citrix ShareFile Share, store, sync, and secure data on any device, anywhere

SharePoint 2019 and Extranet User Manager

VMware Workspace ONE Quick Configuration Guide. VMware AirWatch 9.1

Deploying VMware Workspace ONE Intelligent Hub. October 2018 VMware Workspace ONE

Microsoft IT deploys Work Folders as an enterprise client data management solution

GLOBALPROTECT. Key Usage Scenarios and Benefits. Remote Access VPN Provides secure access to internal and cloud-based business applications

EXPERTS LIVE SUMMER NIGHT. Close your datacenter and give your users-wings

Extranets in SharePoint 2010 and 2013

Cloud Print Migration Step-by-Step Deployment Guide

Configuration Guide. BlackBerry UEM Cloud

[ Sean TrimarcSecurity.com ]

Welcome to the. Migrating SQL Server Databases to Azure

Course 10993A: Integrating On-Premises Identity Infrastructure with Microsoft Azure

Mobile Device Management: A Real Need for the Mobile World

Centrify for Dropbox Deployment Guide

Transcription:

2 Agenda Enterprise challenges for mobility How Microsoft s Enterprise Mobility Suite Provides helps with those challenges Hybrid identity With Azure Active Directory and Azure Active Directory Premium Mobile Device Management with Microsoft Intune Data Protection with Azure Rights Management Services Enterprise Mobility Suite Offering

The time to address enterprise mobility is now 29% of today s global workforce use 3+ devices, work from multiple locations and use many apps. 80%+ employees admit to using nonapproved software-as-a-service (SaaS) applications in their jobs 67% of people who use a smartphone for work and 70% of people who use a tablet for work choose the devices themselves Data leakage resulting from device loss or theft is a top smartphone security risk European Union Agency for Network and Information Security

Today s challenges Users Devices Apps Data Users expect to be able to work in any location and have access to all their work resources. The explosion of devices is eroding the standards-based approach to corporate IT. Deploying and managing applications across platforms is difficult. Users need to be productive while maintaining compliance and reducing risk.

Introducing the Enterprise Mobility Suite -Microsoft.com/EMS Microsoft Azure Active Directory Premium security reports, and audit reports, multifactor authentication Self-service password reset and group management Connection between Active Directory and Azure Active Directory Mobile device settings management Microsoft Intune Mobile application management Selective wipe Microsoft Azure Rights Management service Information protection Connection to onpremises assets Bring your own key Enterprise Agreement (EA) prices starting at $4 per user per month Limited time EA Level A promotion pricing. Requires 250 seat minimum purchase and underlying CAL Suite license (Core CAL Suite and Enterprise CAL Suite)

EMS and Office 365 Cloud and hybrid identity management Mobile device management Information protection Enterprise Mobility Suite Single Sign on for all cloud apps Advanced MFA for all workloads Self Service group management and password reset with write back to on premises directory Advanced security reports FIM (Server + CAL) PC Management Mobile Device Management Mobile App Management Certificate Provisioning Selective wipe Protection for on-premises Windows Server file shares Single Sign on for O365 Basic Multifactor Authentication (MFA) for O365 Basic Mobile Device Management via EAS PIN enforcement Device wipe Protection for O365 content Protection for on premises Exchange SharePoint content Access to RMS SDK Bring your own Key

Enterprise Mobility Suite Microsoft Azure Active Directory Premium Group management, security reports, and audit reports Self-service password reset and multi-factor authentication Connection between Active Directory and Azure Active Directory Mobile device settings management Microsoft Intune Mobile application management Selective wipe Microsoft Azure Rights Management service Information protection Connection to onpremises assets Bring your own key

Hybrid identity Bridging on-premises and Azure Active Directory Enable your users Provide users with self-service experiences to keep them productive Enable single sign-on for users across the resources they need access to Unify your environment Create a centralized identity across on-premises and cloud environments Use identity federation to maintain centralized authentication, and share and collaborate with external users and businesses more securely Protect your data Enforce strong authentication when users access resources and apply conditional access controls to sensitive company information Configure single sign-on across all company applications Ensure compliance with governance, attestation, and reporting

Azure Active Directory Premium Built on top of a free offering Robust set of capabilities for empowering enterprises with demanding identity and access management needs Usage rights for Microsoft Forefront Identity Manager server licenses and CALs Take advantage of a directory in the cloud Group-based application access assignment and provisioning to thousands of software-as-a-service (SaaS) applications for single sign-on Company branding Enterprise SLA of 99.9 percent Monitor and protect access to applications Security reports based on machine learning Application usage reports Multi-factor authentication Empower users Self-service password reset Delegated group management

Synchronizing your active Directory

Company Portal - Sign-In Experience

Company Portal - SSO to Applications

Company Portal Profile Password Reset

Group Management

Self Service Password Reset

Multi-Factor Authentication

Advanced Reporting

Enterprise Mobility Suite Microsoft Azure Active Directory Premium Group management, security reports, and audit reports Self-service password reset and multi-factor authentication Connection between Active Directory and Azure Active Directory Mobile device settings management Microsoft Intune Mobile application management Selective wipe Microsoft Azure Rights Management service Information protection Connection to onpremises assets Bring your own key

Manage and Secure PCs and Devices Anywhere Simple web-based Administration Console and a richer experience for Information Workers Help protect PCs from malware Manage updates Distribute software Proactive monitoring and alerts Provide remote assistance Inventory hardware and software Monitor & track licenses Increase insight with reporting Set security policies Richer Mobile Device Management

Mobile Device Management with Microsoft Intune Direct management (Windows RT, Windows Phone 8.x, ios, Android) EAS based management

Microsoft Intune Standalone service

Microsoft Intune integrated with System Center 2012 R2 Configuration Manager Windows PCs (x86/64, Intel SoC), Windows to Go Windows Embedded Mac OS X Windows RT, Windows Phone 8.x ios, Android

Company Portal Consistent self service experience for end user across mobile platforms Windows Windows Phone Android ios Available in the Windows Store Side-loaded during enrollment Available in the Google Play Store Available in the Apple App store

Mobile Device Settings in Microsoft Intune Category Win 8.1 PC & RT WP8.1 ios Android Password Encryption Malware System Settings Cloud Windows Server Work Folders Browser Applications & Gaming Device restrictions Store access Roaming * Subset of settings Note: Table applicable to direct MDM and not EAS

Mobile Device Settings in Microsoft Intune * Subset of settings Note: Table applicable to direct MDM and not EAS

Mobile device wipe and retire Category Windows 8.1 (x86/rt OMA-DM managed) Windows 8 RT Windows Phone 8.1 ios Android (EAS) Full Wipe Email (Email through EAS) (Email through EAS) Retire (Selective wipe) Company apps and associated data installed by Microsoft Intune. Apps originally installed through the company portal are uninstalled and sideloading keys are removed. Apps using Windows Selective Wipe will have the encryption key revoked and data will no longer be accessible. Sideloading keys are removed but apps remain installed. Apps originally installed through the company portal are uninstalled. Company app data is removed. Apps are uninstalled. Company app data is removed. Apps and data remain installed. Settings Requirements removed Requirements removed Requirements removed Requirements removed Requirements removed Management Client Not applicable. Management agent is built-in Not applicable. Management agent is built-in Not applicable. Management agent is built-in Management profile is removed Device Administrator privilege is revoked.

Selective Wipe

Enterprise Mobility Suite Microsoft Azure Active Directory Premium Group management, security reports, and audit reports Self-service password reset and multi-factor authentication Connection between Active Directory and Azure Active Directory Mobile device settings management Microsoft Intune Mobile application management Selective wipe Microsoft Azure Rights Management service Information protection Connection to onpremises assets Bring your own key

What is Azure Rights Management? Data Loss Prevention through the use of a cloud based encryption/decryption solution Allows you to secure data regardless of location, enabling you to share data securely internally and externally Secures content on Windows Server File Shares Access Secure content on mobile devices

What problems does Azure RMS solve? Protect All File Types Protect Files Anywhere Share Files Securely by Email Auditing and Monitoring Support for all commonly used devices, not just windows computers Support for business to business collaboration 37

Protect data with rights management Take advantage of hybrid options across Windows Server and Azure Rights Management service Integrate Microsoft SharePoint and Microsoft Exchange Server Automatically identify and classify data based on content with automatic encryption More securely share documents with colleagues and business partners Improve ease of use through integration with Office 2010/13, Windows Shell extensions, and crossplatform clients

Protecting Files Locally 39

Sharing Protected Files 40

RMS Integration with SharePoint Online 41

Simplified procurement Other options in the market Cloud and hybrid identity management Mobile device management Information protection Okta Salesforce Identity Ping Identity Google AirWatch Symantec MobileIron Kaseya Adobe LiveCycle Seclore Fasoo Amazon Web Services Good Centrify Why Microsoft? EMS: One Vendor, One Contract, One SKU Azure Active Directory Premium Microsoft Intune Azure Rights Management service

Microsoft solution value People-centric IT with one license suite and one vendor 60-percent discount and introductory promotion Enterprise Mobility Suite add-on promotion 4 *60-percent discount over list pricing with limited time promotion if purchased before 12/31/2014 Add-on SKU requires Core CAL, ECAL, or Bridge CAL $4.50 1. Seclore assumes blended cost across 500 authors ($7 per user), 1000 consumers (no cost). 2. AirWatch per device per month Cloud Hosted MDM Suite List pricing. Management of multiple devices per user requires additional licensing. 3. Salesforce Identity per user per month list pricing, included for existing Salesforce customers.. Okta list price $10 per user per month. 4. Per user per month Open NL price $4.5/u/m. EA pricing starts at $4/u/m. Promo requires 250 minimum purchase and qualifying CAL Suite license.

Questions? Microsoft Confidential 46

Appendix

Support options http://www.windowsazure.com /en-us/support/plans/ https://support.microsoftonlin e.com/default.aspx?productke y=intunesupp&scrx=1 http://office.microsoft.com/en -us/support/contact-us- FX103894077.aspx