SlideShare a Scribd company logo
Mobile Security
David Mann – CIO & EVP
david.mann@atmecs.com
(714) 606-9356
May 6, 2014
© ATMECS
Agenda
• About ATMECS
• Why Mobile Security?
• Mobile Security Challenges
• Mobile Security Strategy
• Gartner’s Magic Quadrant
• References
Let's Partner
Let's Partner
ATMECS is a trusted technology partner providing real business solutions.
• Application Development
• Systems Integration
• Database Solutions
• Data Monetization
• Big Data
• Behavior Insight
• Predictive Analytic
• BI & Data Warehouse
• Data Security
• Quality Assurance
• QA Manual Testing
• QA Automation
• Service Oriented Architecture
• SOA Assessment
• SOA Implementation
• Expert Offshore Resources
• Maintenance and Support
What is ATMECS?
ATMECS VISION
Trusted Partnership
Let's Partner
ATMECS MISSION
To Improve Our Clients’ IT Projects Success
Let's Partner
Let's Partner
What’s in the name?
A – Aspire
T – Think
M – Manage
E – Engage
C – Create
S – Succeed
ATMECS – Passionate Minds
Let's Partner
PEOPLE
(Users, Employees,
Contractors, Customers,
Partners)
DEVICES
(Mobile Phones, IOTs,
Servers, Laptops, Tablets)
DATA
(Unstructured &
Structured)
Network is no longer point of
control. So security is no
more single point of control.
Why Mobile Security ?
Let's Partner
Mobile Usage Statistics
As per Google ThinkInsights, mobile search is of 48%.
As per Consumer Preference Q4 2013, 89% of time is spent on Mobile App
Let's Partner
Mobile
Threats
Loss / Stolen Devices Mobile Malware / Phishing
Too many
mobile
platforms
Traversing
insecure
networks
Overlap of
Personal and
Official Usage
Outside enterprise
network, mobile access of
Cloud based data storage
IoT devices with gateway
Any other
threats
Mobile Security Threats and Challenges
Mobile Threats
Let's Partner
Lost & Stolen Mobile Devices
• As per The Huffington Post,
• In San Francisco, record rose 23%
in 2013
• In New York, iPhones/iPads stolen
reported 8% increase in 2013
• In Washington D.C, 6% increase in
2013
• In Philadelphia, 6% increase from
2012, 44% increase from 2011
Let's Partner
0
5
10
15
20
25
San Francisco New York Washington D.C Philadelphia
Percentage Increase in Thefts - 2013
Mobile Security Strategy
Let's Partner
Mobile Security
StrategyMobile Device
Management
(MDM)
Mobile
Application
Management
(MAM)
Mobile Device
Security
Mobile Data
Protection
Mobile Virtual
Desktop
Infrastructure
Mobile App
Risk
Management
Always-On-
VPN
Trusted
Execution
Environment
Mobile Device Management
• MDM software secures, manages, controls
smartphones and tablets.
• MDM tools include the ability to enforce
policies, track inventory and perform real-
time monitoring and reporting.
• Keeping Track of Assets
• Corporate Owned
• BYOD (Bring Your Own Device)
• Onboarding Procedure, Training
• Ownership (who has them)
• Configuration (software & hardware)
Let's Partner
• Keeping Devices Safe
• Password Protection
• Numeric & Alphanumeric
• Biometric (face detection, voice, fingerprint)
• Virus & Malware
• Lost Devices – Remote Wipe, Remote Lock, Locators (ex:
Find My iPhone)
• Backup & Restore
Let's Partner
Mobile Device Security
Mobile Device Data Protection
• Decide what Corporate Data is allowed on the Device
• Email, File Sharing, App Data Access
• Protect the Data
• Secure Application Development Guidelines
• Encryption (data at rest, data in transition, data in use)
• Local Password Protection for Accessing the Data
• Minimal Data on User’s Device
• Wipe the Data when we lose physical control
Let's Partner
Mobile Virtual Desktop Interface
• Vendors have begun offering
VDI clients for mobile
platforms
• Remote Access, Organizations
at low risk
• Protect the Data
• Data access is on server, no
download to mobile
Let's Partner
Mobile App Risk Management
Let's Partner
• Enterprise can use private
clouds for their apps
• Instead of downloading app
from App Store, enterprise
apps can be available in
private clouds
• Protect as per Enterprise
Policy
• It ensures risk based policy
and apps downloaded from
private clouds are risk free
from malicious attacks
Always-On-VPN
Let's Partner
• It involves routing all data traffic to company/organization
• Use encrypted tunnel, traffic load on corporate usage
• Ensures organizations centrally implemented
countermeasures apply to mobile as well
Trusted Execution Environment
(TEE)
• GlobalPlatform is standardizing TEE technology
• It offers separate execution space alongside of OS
• It offers high level of security
• Protects Every Data
• Protects user input entered on screen through touch or
keyboard
• Protects data displayed on screen
• Protects sensitive data such as encryption keys, and PINs
Let's Partner
Magic Quadrant (Mobile Device
Management Software)
Let's Partner
Gartner’s Magic Quadrant (2012)
Top Five Vendors of 2012
1. MobileIron
2. AirWatch
3. Fiberlink
4. Zenprise
5. Good Technology
Gartner’s Magic Quadrant (2013)
Top Three Vendors of 2013
1. AirWatch
2. MobileIron
3. Citrix
Magic Quadrant (Mobile Data
Protection products)
Let's Partner
Gartner’s Magic Quadrant (2013)
Top Three Vendors of 2013
1. McAfee
2. Sophos
3. Check Point
ATMECS’ Experience
(Neoforma)
Let's Partner
Q & A
www.atmecs.com
References
• http://searchconsumerization.techtarget.com/feature/Mobile-device-
management-vs-mobile-application-management
• https://www.owasp.org/index.php/OWASP_Mobile_Security_Project
• http://appleinsider.com/articles/14/02/27/apple-touts-secure-design-of-ios-as-
google-chief-admits-android-is-best-target-for-malicious-hackers
• http://www.slideshare.net/jay123min/report-on-mobile-
security?qid=8b57be79-a610-4290-8a51-
a9f34e94c1d7&v=qf1&b=&from_search=5
• http://globalplatform.org/aboutus.asp
• http://www.slideshare.net/OracleMKTPR20/oracle-id-m-mobile-security-
overview
• http://blog.cygnet-infotech.com/2013/06/mobile-device-management-mdm-
essential.html
• https://codeproof.com/PressRelease/Mobile_Security_Infographics_2013
Let's Partner

More Related Content

PDF
MT81 Keys to Successful Enterprise IoT Initiatives
PDF
MT85 Challenges at the Edge: Dell Edge Gateways
PPTX
Building A Cloud-Ready Security Program
PPTX
Leveraging Identity to Manage Change and Complexity
PPTX
Service Delivery Beyond IT - Customer Case Study Webinar
PDF
MT82 IoT Security Starts at Edge
PDF
Keep Up with the Demands of IT Security on a Nonprofit Budget
 
PDF
Key Security Insights: Examining 2014 to predict emerging threats
MT81 Keys to Successful Enterprise IoT Initiatives
MT85 Challenges at the Edge: Dell Edge Gateways
Building A Cloud-Ready Security Program
Leveraging Identity to Manage Change and Complexity
Service Delivery Beyond IT - Customer Case Study Webinar
MT82 IoT Security Starts at Edge
Keep Up with the Demands of IT Security on a Nonprofit Budget
 
Key Security Insights: Examining 2014 to predict emerging threats

What's hot (19)

PPTX
The Changing Role of IT Staff
 
PDF
Mobile Workspaces Go Where You Go [Infographic]
PPTX
Bt idc event cloud adoption in ireland
PPTX
BYOD (Bring Your Own Device) Risks And Benefits
PDF
Manage risk by protecting apps, data and usage
PPTX
The ROI of Collaboration featuring research from Forrester
PPTX
Security For Business: Are You And Your Customers Safe
PDF
Rethinking Data Availability and Governance in a Mobile World
PDF
Mobile Security in 2013
PDF
7 Best Practices to Protect Critical Business Information [Infographic]
PDF
Enterprise Case Study: Enabling a More Mobile Way of Working
PPTX
Bring Your Own Device (BYOD)
PPTX
The ROI Global Forum on Enterprise Social Networking
PDF
MT99Dell OCIO: How we're integrating IT for the largest merger in tech history
PPTX
Business Case Of Bring Your Own Device[ BYOD]
PPTX
An Introduction on Design and Implementation on BYOD and Mobile Security
PDF
Bring your own device
PPTX
Mobile device management and BYOD – simple changes, big benefits
ODP
The Changing Role of IT Staff
 
Mobile Workspaces Go Where You Go [Infographic]
Bt idc event cloud adoption in ireland
BYOD (Bring Your Own Device) Risks And Benefits
Manage risk by protecting apps, data and usage
The ROI of Collaboration featuring research from Forrester
Security For Business: Are You And Your Customers Safe
Rethinking Data Availability and Governance in a Mobile World
Mobile Security in 2013
7 Best Practices to Protect Critical Business Information [Infographic]
Enterprise Case Study: Enabling a More Mobile Way of Working
Bring Your Own Device (BYOD)
The ROI Global Forum on Enterprise Social Networking
MT99Dell OCIO: How we're integrating IT for the largest merger in tech history
Business Case Of Bring Your Own Device[ BYOD]
An Introduction on Design and Implementation on BYOD and Mobile Security
Bring your own device
Mobile device management and BYOD – simple changes, big benefits
Ad

Viewers also liked (7)

PDF
NODE JS OC Meetup 1
PDF
Surviving the Mobile Phenomenon: Securing Mobile Access with Risk-Based Authe...
PPTX
2013 Security Threat Report Presentation
PPTX
Mobile roadmap & maturity model
PPT
Enterprise Mobility Strategy
PDF
Build a successful enterprise mobility strategy
PDF
Building a successful enterprise mobility roadmap
NODE JS OC Meetup 1
Surviving the Mobile Phenomenon: Securing Mobile Access with Risk-Based Authe...
2013 Security Threat Report Presentation
Mobile roadmap & maturity model
Enterprise Mobility Strategy
Build a successful enterprise mobility strategy
Building a successful enterprise mobility roadmap
Ad

Similar to Mobile Security (20)

PPTX
MoMobile Device Management (MDM) - Copy.pptx
PDF
MTL Australia 2016 - The 3rd Wave of Security
PPTX
Mobile Security for the Enterprise
PPTX
IBM Mobile Security: A Comprehensive Approach to Securing and Managing the Mo...
PPTX
Develop and Enforce a Bring-Your-Own-Device (BYOD) Policy
PPTX
Mobile DAta
PPTX
Embracing secure, scalable BYOD with Sencha and Centrify
PDF
Empower Enterprise Mobility- Maximize Mobile Control- Presented by Atidan
PPTX
Managing BYOD Conference: Mobile Enterprise Data
PPTX
Appsecurity, win or loose
PPTX
Gestión de identidad
PPTX
Outside the Office: Mobile Security
PPTX
Enterprise Mobility+Security Overview
PDF
Why You'll Care More About Mobile Security in 2020
PDF
Why You’ll Care More About Mobile Security in 2020 - Tom Bain
PDF
WSO2Con Asia 2014 - Embracing BYOD Trend Without Compromising Security, Emplo...
PDF
WSO2Con Asia 2014 - Embracing BYOD Trend Without Compromising Security, Emplo...
PDF
Top 10 tech trends 2014
PDF
Wso2 con byod-shan-ppt
PDF
Smarter Commerce Summit - IBM MobileFirst Services
MoMobile Device Management (MDM) - Copy.pptx
MTL Australia 2016 - The 3rd Wave of Security
Mobile Security for the Enterprise
IBM Mobile Security: A Comprehensive Approach to Securing and Managing the Mo...
Develop and Enforce a Bring-Your-Own-Device (BYOD) Policy
Mobile DAta
Embracing secure, scalable BYOD with Sencha and Centrify
Empower Enterprise Mobility- Maximize Mobile Control- Presented by Atidan
Managing BYOD Conference: Mobile Enterprise Data
Appsecurity, win or loose
Gestión de identidad
Outside the Office: Mobile Security
Enterprise Mobility+Security Overview
Why You'll Care More About Mobile Security in 2020
Why You’ll Care More About Mobile Security in 2020 - Tom Bain
WSO2Con Asia 2014 - Embracing BYOD Trend Without Compromising Security, Emplo...
WSO2Con Asia 2014 - Embracing BYOD Trend Without Compromising Security, Emplo...
Top 10 tech trends 2014
Wso2 con byod-shan-ppt
Smarter Commerce Summit - IBM MobileFirst Services

More from James Sutter (20)

PDF
Future of intelligent transportation CIO Roundtable 080214
PDF
Security in the News
PPT
3-D Printing_feb_13_2014
PDF
Scrum Agile by David Mann
PPT
It Governance OC CIO Nov,2013
PDF
CIO evolution 10102013
PPT
OC CIO BYOD
PPTX
CIO RoundtableIot IOT
PDF
Technology business management_7.13
PDF
Oc cio roundtable mooney management imperatives for realizing value from clou...
PDF
Erp governance methodology and case studies v rjt
PDF
Controlling project costs
PDF
CIO Branding
PPT
Google apps CIO Peer Group presentation
PDF
CIO Roundtable 10-12
PDF
CIO presentation aug 2012
PDF
Mobile security v2
PDF
Peer group itsm presentation 6.12
PPT
CIO Value Issue
PPT
Google apps cio peer group presentation
Future of intelligent transportation CIO Roundtable 080214
Security in the News
3-D Printing_feb_13_2014
Scrum Agile by David Mann
It Governance OC CIO Nov,2013
CIO evolution 10102013
OC CIO BYOD
CIO RoundtableIot IOT
Technology business management_7.13
Oc cio roundtable mooney management imperatives for realizing value from clou...
Erp governance methodology and case studies v rjt
Controlling project costs
CIO Branding
Google apps CIO Peer Group presentation
CIO Roundtable 10-12
CIO presentation aug 2012
Mobile security v2
Peer group itsm presentation 6.12
CIO Value Issue
Google apps cio peer group presentation

Recently uploaded (20)

PDF
cuic standard and advanced reporting.pdf
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Encapsulation_ Review paper, used for researhc scholars
PPT
Teaching material agriculture food technology
PPTX
Big Data Technologies - Introduction.pptx
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
PDF
Approach and Philosophy of On baking technology
cuic standard and advanced reporting.pdf
Chapter 3 Spatial Domain Image Processing.pdf
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
The Rise and Fall of 3GPP – Time for a Sabbatical?
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Network Security Unit 5.pdf for BCA BBA.
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
Spectral efficient network and resource selection model in 5G networks
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Encapsulation_ Review paper, used for researhc scholars
Teaching material agriculture food technology
Big Data Technologies - Introduction.pptx
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
Reach Out and Touch Someone: Haptics and Empathic Computing
Mobile App Security Testing_ A Comprehensive Guide.pdf
Bridging biosciences and deep learning for revolutionary discoveries: a compr...
Approach and Philosophy of On baking technology

Mobile Security

  • 1. Mobile Security David Mann – CIO & EVP david.mann@atmecs.com (714) 606-9356 May 6, 2014 © ATMECS
  • 2. Agenda • About ATMECS • Why Mobile Security? • Mobile Security Challenges • Mobile Security Strategy • Gartner’s Magic Quadrant • References Let's Partner
  • 3. Let's Partner ATMECS is a trusted technology partner providing real business solutions. • Application Development • Systems Integration • Database Solutions • Data Monetization • Big Data • Behavior Insight • Predictive Analytic • BI & Data Warehouse • Data Security • Quality Assurance • QA Manual Testing • QA Automation • Service Oriented Architecture • SOA Assessment • SOA Implementation • Expert Offshore Resources • Maintenance and Support What is ATMECS?
  • 5. ATMECS MISSION To Improve Our Clients’ IT Projects Success Let's Partner
  • 6. Let's Partner What’s in the name? A – Aspire T – Think M – Manage E – Engage C – Create S – Succeed ATMECS – Passionate Minds
  • 7. Let's Partner PEOPLE (Users, Employees, Contractors, Customers, Partners) DEVICES (Mobile Phones, IOTs, Servers, Laptops, Tablets) DATA (Unstructured & Structured) Network is no longer point of control. So security is no more single point of control. Why Mobile Security ?
  • 8. Let's Partner Mobile Usage Statistics As per Google ThinkInsights, mobile search is of 48%. As per Consumer Preference Q4 2013, 89% of time is spent on Mobile App
  • 9. Let's Partner Mobile Threats Loss / Stolen Devices Mobile Malware / Phishing Too many mobile platforms Traversing insecure networks Overlap of Personal and Official Usage Outside enterprise network, mobile access of Cloud based data storage IoT devices with gateway Any other threats Mobile Security Threats and Challenges
  • 11. Lost & Stolen Mobile Devices • As per The Huffington Post, • In San Francisco, record rose 23% in 2013 • In New York, iPhones/iPads stolen reported 8% increase in 2013 • In Washington D.C, 6% increase in 2013 • In Philadelphia, 6% increase from 2012, 44% increase from 2011 Let's Partner 0 5 10 15 20 25 San Francisco New York Washington D.C Philadelphia Percentage Increase in Thefts - 2013
  • 12. Mobile Security Strategy Let's Partner Mobile Security StrategyMobile Device Management (MDM) Mobile Application Management (MAM) Mobile Device Security Mobile Data Protection Mobile Virtual Desktop Infrastructure Mobile App Risk Management Always-On- VPN Trusted Execution Environment
  • 13. Mobile Device Management • MDM software secures, manages, controls smartphones and tablets. • MDM tools include the ability to enforce policies, track inventory and perform real- time monitoring and reporting. • Keeping Track of Assets • Corporate Owned • BYOD (Bring Your Own Device) • Onboarding Procedure, Training • Ownership (who has them) • Configuration (software & hardware) Let's Partner
  • 14. • Keeping Devices Safe • Password Protection • Numeric & Alphanumeric • Biometric (face detection, voice, fingerprint) • Virus & Malware • Lost Devices – Remote Wipe, Remote Lock, Locators (ex: Find My iPhone) • Backup & Restore Let's Partner Mobile Device Security
  • 15. Mobile Device Data Protection • Decide what Corporate Data is allowed on the Device • Email, File Sharing, App Data Access • Protect the Data • Secure Application Development Guidelines • Encryption (data at rest, data in transition, data in use) • Local Password Protection for Accessing the Data • Minimal Data on User’s Device • Wipe the Data when we lose physical control Let's Partner
  • 16. Mobile Virtual Desktop Interface • Vendors have begun offering VDI clients for mobile platforms • Remote Access, Organizations at low risk • Protect the Data • Data access is on server, no download to mobile Let's Partner
  • 17. Mobile App Risk Management Let's Partner • Enterprise can use private clouds for their apps • Instead of downloading app from App Store, enterprise apps can be available in private clouds • Protect as per Enterprise Policy • It ensures risk based policy and apps downloaded from private clouds are risk free from malicious attacks
  • 18. Always-On-VPN Let's Partner • It involves routing all data traffic to company/organization • Use encrypted tunnel, traffic load on corporate usage • Ensures organizations centrally implemented countermeasures apply to mobile as well
  • 19. Trusted Execution Environment (TEE) • GlobalPlatform is standardizing TEE technology • It offers separate execution space alongside of OS • It offers high level of security • Protects Every Data • Protects user input entered on screen through touch or keyboard • Protects data displayed on screen • Protects sensitive data such as encryption keys, and PINs Let's Partner
  • 20. Magic Quadrant (Mobile Device Management Software) Let's Partner Gartner’s Magic Quadrant (2012) Top Five Vendors of 2012 1. MobileIron 2. AirWatch 3. Fiberlink 4. Zenprise 5. Good Technology Gartner’s Magic Quadrant (2013) Top Three Vendors of 2013 1. AirWatch 2. MobileIron 3. Citrix
  • 21. Magic Quadrant (Mobile Data Protection products) Let's Partner Gartner’s Magic Quadrant (2013) Top Three Vendors of 2013 1. McAfee 2. Sophos 3. Check Point
  • 23. Let's Partner Q & A www.atmecs.com
  • 24. References • http://searchconsumerization.techtarget.com/feature/Mobile-device- management-vs-mobile-application-management • https://www.owasp.org/index.php/OWASP_Mobile_Security_Project • http://appleinsider.com/articles/14/02/27/apple-touts-secure-design-of-ios-as- google-chief-admits-android-is-best-target-for-malicious-hackers • http://www.slideshare.net/jay123min/report-on-mobile- security?qid=8b57be79-a610-4290-8a51- a9f34e94c1d7&v=qf1&b=&from_search=5 • http://globalplatform.org/aboutus.asp • http://www.slideshare.net/OracleMKTPR20/oracle-id-m-mobile-security- overview • http://blog.cygnet-infotech.com/2013/06/mobile-device-management-mdm- essential.html • https://codeproof.com/PressRelease/Mobile_Security_Infographics_2013 Let's Partner