Writing a Device Policy People Will Accept
Most device policies are unreadable and unenforced. What a usable one contains, per ownership model.
Policy
For each restriction, ask what risk it addresses and what it costs the user daily. Most fail the first question.
7 notes
Most device policies are unreadable and unenforced. What a usable one contains, per ownership model.
The most-set policy and the one most often set too hard. What each setting costs the user, and what it buys.
The control most relied upon in compliance answers, what it actually protects against, and the three cases where it does nothing.
Platforms offer dozens of restrictions. Most are not worth the friction, and a few are. How to tell which.
Controlling which applications may be installed sounds obvious and works badly. Where it is appropriate and where it is not.
The quiet half of device management: credentials and connectivity delivered silently, and the failures that follow when they expire.
Device policy ages faster than most. What changes underneath it, and the review that keeps it from becoming fiction.