Our Story

Who we are and how we solve complex IT challenges.

Our Certifications

Microsoft certifications and partnerships validating our technical expertise.

Leadership

Meet the Experienced Leadership Team Driving WME’s Success

Advisory Updates

Expert guidance on Microsoft, security, and compliance developments.

Case Studies

Real-world outcomes from complex Microsoft-focused IT engagements.

Financial Industry

Secure technology solutions for regulated banks and financial institutions.

Healthcare

Secure Microsoft solutions for compliant, connected, and modern healthcare organizations.

Manufacturing

Cloud and security solutions supporting modern manufacturing operations.

Non-Profit

Cost-efficient Microsoft solutions for mission-driven organizations.

Public Sector

Microsoft-based IT services for secure public sector modernization.

High Tech

Scalable cloud, security, and staffing for fast-growing technology companies.

SMBs

Scalable cloud, security, and staffing for fast-growing technology companies.

Cloud Migration Services

Transition your workloads to the cloud securely for greater scalability and performance.

Data Migration Services

Securely transfer your business data with minimal downtime and maximum integrity.

Application Migration Services

Move your applications seamlessly to modern platforms with minimal business disruption.

Identity & Security Migration Services

Strengthen identity management and security while transitioning to modern Microsoft solutions.

IT Staffing

Connect with skilled IT professionals to strengthen your team and accelerate project delivery.

Accounting & Finance

Connect with experienced accounting and finance professionals to support your business goals.

Licensing Support

Discover the benefits of both CSP and On-premises licensing options and find the best fit for your unique business needs. From cost savings to flexibility, we’ve got you covered.

Power Platform

Unlock the full potential of the Microsoft Power Platform Suite to streamline operations, automate repetitive tasks, and gain real-time insights that drive business growth.

Sharepoint Solutions

Supercharge your business productivity and enhance visibility through our proven SharePoint expertise.

Security Solutions

Protect your business with proactive cybersecurity, compliance, and risk management solutions.

Endpoint Management

Secure, manage, and monitor every device with modern endpoint management solutions.

Mobile Device Management: Advanced Considerations for IT Directors

March 22, 2021

U.S. job growth is seeing an uptick as millions of Americans are getting vaccinated and states are loosening operating restrictions. Considering that businesses are hitting their stride in this new reality, let’s visit an important conversation for IT directors at every organization. 

With basic understanding of enterprise mobility and mobile device management, and a look at what options are available, companies should be able to move forward with confidence. This article sheds further light on some of the most important and complex decisions IT executives will need to make regarding enterprise mobility. 

How Are BYOD Policies Vulnerable?

In today’s economy, and across many industries, working from home has become ubiquitous. As access to company data expands beyond the office, employees can expose the network to security threats with use of their personal devices. Whether employees are using a mobile phone or laptop, it is likely your company now has more exposure to new cyber threats. With the cybersecurity landscape evolving, it’s more important than ever to put smart policies in place.

While there are several ways companies can choose to organize mobile device management, each one has its limitations. Our advice is to research them all thoroughly before investing in any policy. 

“Bring your own device,” or BYOD, policies can be implemented with complete MDM (mobile device management) control, limited MAM (mobile application management) policies, or simple MFA (multi-factor authentication). MFA allows for user authentication, but doesn’t provide the added security of device authentication. Keep in mind that MFA is no longer enough to ensure security, as bad actors and hackers can change a user agent string to make their Linux or Windows computer emulate the iOS or Android device of your employee. 

The Evilginx attack of 2017 proved the vulnerability of MFA-only policies. This major event showed corporations and organizations around the world that MFA can be cracked with man-in-the-middle proxy attacks and other advanced phishing scams. 

Pros and Cons of Bring Your Own Device (BYOD) Policies

When you are determining the best solution for your company, you should consider your company’s size, the type of information you need to store, and how many employees need remote access, among other factors.

There are three ways that companies can implement personal device security policies. Each policy has its own unique benefits and drawbacks, specifically when it comes to expense and employee morale.

No BYOD

In a structure where employees are forbidden from using personal devices for work, the company is providing all necessary computing and communications devices, including laptops, smartphones, and tablets. 

Pros: This is the most secure option. When the company owns all the devices being used, it also has complete liberty and rights to enroll employees in a fully mobile device management platform, such as Microsoft Intune. The company will have full administrative control over all the devices, including the ability to track locations and remotely wipe devices. 

Cons: While you get the most protection managing a company-owned fleet of mobile devices, security has its price. To execute this strategy, the company needs to provide identical devices to all employees and cover the administrative overhead of enrolling all the devices. Depending on your company size and budget, the cost may rule out this policy as a viable option for now.

Allow BYOD and Require MDM Enrollment

Under this hybrid policy, employees are allowed to access work data using personal devices, but they are required to enroll the device into a MDM platform. This policy gives the employer the most control over the security of off-campus data with personal devices. 

Pros: It’s more affordable. This option saves the company the expense of managing inventory of company-issued devices for every employee. Security will be just as solid as maintaining a company-owned device library, as long as employees comply with the device management enrollment. 

Cons: Because this policy requires full enrollment in a mobile device manager, as opposed to a mobile application manager, employers will have the ability to track the locations and remotely wipe an employee’s personal device. As a result, this policy may be met with staff pushback and concern. Given that so many white-collar Americans are working from home at least part-time, employee privacy and employer surveillance are hot-button issues. 

In addition, employees who use older devices may not be able to comply with the enrollment of the MDM platform. If not all employees are able to comply, the company may struggle to fairly and consistently apply policy.

Allow Personal Devices but Prevent Use of Mobile Apps with Company Data

In this scenario, employees are allowed to use their own devices but are prohibited from installing or using mobile apps to conduct business. In other words, employees would not be permitted to install their work email on their smartphone. 

Pros: This policy is the most affordable option because it costs basically nothing and implementation is easy.

Cons: This strategy greatly reduces security because users are forced to use their device’s web browser to access company email or other documents. On smartphones, accessing email within a web browser can reduce usability, discouraging employees from checking their email while they are away from a computer. Most of the Office 365 apps used in Microsoft Teams would also be inaccessible, and users would not receive notifications for Teams chats or tags. 

Secure Your Business Now

Like most business and enterprise technology decisions, choosing a method for securing company data will be unique to your company. There isn’t a “one-size-fits-all” solution to security for businesses, so it’s important to be thorough with your research. 

Choose wisely! Windows Management Experts has the knowledge and experience to guide you through the mobile device management process. Contact us today for your enterprise mobility consultation and cybersecurity assessment to uncover your company’s most pressing vulnerabilities.

Share:

Facebook
Twitter
LinkedIn

Get Microsoft Updates Before They Cost You Downtime

Retirement dates, licensing changes, and security updates from a Microsoft-exclusive team, sent when they matter, not on a filler schedule.

More Posts

Copilot Cowork: Credit-Based Billing

Until now, Copilot Cowork has been included with M365 Copilot Premium licenses. Now that Cowork has moved out of public preview, Cowork is introducing a ...
Read Full Article
SharePoint OTP Retirement Is Coming in July 2026

SharePoint OTP Retirement Is Coming in July 2026 — What IT Admins Need to Do Before Access Breaks

Starting July 2026, external users who access OneDrive and SharePoint files through legacy SPO OTP links will start receiving access denied — silently, with no ...
Read Full Article
Power Virtual Agents Is Gone. Here's What Replaced It and Why It Matters.

Power Virtual Agents Is Gone. Here’s What Replaced It and Why It Matters.

If someone on your team still calls it “Power Virtual Agents,” they’re working from an outdated map. Microsoft retired the product on November 15, 2023 ...
Read Full Article

Get Microsoft Updates Before They Cost You Downtime

Retirement dates, licensing changes, and security updates from a Microsoft-exclusive team, sent when they matter, not on a filler schedule.
Subscription Form email