Skip to main content
Guidance

Device security principles for manufacturers

Principles to guide manufacturers in the design of secure, enterprise-connected devices.

Page 10 of 12

9. Allow robust device management

Devices should be flexible in the way they are managed so that administrators can configure them to adhere to their organisation’s security frameworks. For example, a corporately managed device will be managed differently to a Bring Your Own Device (BYOD). Whichever approach is taken, implementing effective device management ensures that crucial security features can’t be modified or disabled by unauthorised users or malware.

Note:

The guidelines below are not always the complete responsibility of the device manufacturer, and in certain situations will depend on the implementation approach taken by a device management platform provider and the endpoint software it provides. In addition, some manufacturers will provide a proprietary management platform that the device is required to use. However, providing APIs would allow their integration into a generic device management service.






Published

Reviewed

Version

2.1