https://store-images.s-microsoft.com/image/apps.54248.3c74b4a3-fbcb-41f2-a915-ebe5586113ba.e6c03b02-f5f3-4112-8b40-98c3ae98c26a.27a73345-2c86-4709-8269-b0f665546788

Secure Access from Unmanaged Devices

ITC Secure Ltd

Secure and protect your unmanaged/BYO device estate with Microsoft Defender for Cloud Apps Application Control, Microsoft Entra Conditional Access and Intune Mobile Application Management policies.

Microsoft Defender for Cloud Apps (MDA) is an industry-leading, cloud-powered cloud access security broker that enables the discovery and protection of cloud-based application and identities. Within MDA, session control polices can be implemented to secure and manage access to integrated browser-based cloud applications ensuring flexible access but controlled session to secure and protect corporate resources.

Mobile Application Management (MAM) helps secure mobile applications by deploying app protection policies to work profiles in supported applications (such as Microsoft 365). Managing the work profile enables enforcement restrictions to keep corporate data in managed locations by blocking saving, printing or copying actions. During this engagement, ITC will provide guidance on configuring and scoping MDA and MAM policies to ensure all scoped users can be managed when accessing resources from unmanaged devices.

Key activities with timeline:

  • Week 1 - Discovery Workshops
  • Week 2 - Low-level design documentation
  • Week 3 - Configuration
  • Week 4 - Testing
  • Week 5 - Staged Roll out - up to 100 users

Key deliverables:

  1. Workshop to gather configuration and additional customer information
  2. Low-level design documentation

Customer pre-requisites:

  • Access to relevant the Customer’s team members.
  • All users in scope for Microsoft Entra, Intune and MDA have the correct licences assigned.
  • Remote access to Microsoft Entra, Intune and Defender XDR (Security Center) portals (via B2B with PIM is used or, a dedicated account within the Microsoft 365 tenant or secure remote access tooling such as CyberArk).
  • Security administrator Microsoft Entra role required to manage MDA, Conditional Access and Microsoft Entra groups.

At a glance

https://store-images.s-microsoft.com/image/apps.21794.3c74b4a3-fbcb-41f2-a915-ebe5586113ba.e6c03b02-f5f3-4112-8b40-98c3ae98c26a.f92e7e52-3c74-4d7d-b592-a85b92e272ed
https://store-images.s-microsoft.com/image/apps.60321.3c74b4a3-fbcb-41f2-a915-ebe5586113ba.e6c03b02-f5f3-4112-8b40-98c3ae98c26a.4a37c0e2-8c30-4c81-b936-9d99d94d1e82