Enterprise Mobile Security - Presenting to the IISP

by PaulSchwarz on 02-09-2012 09:52 AM - last edited on 02-10-2012 03:55 PM

by Paul Schwarzenberger, MSc, CISSP, Enterprise Security Architect, HP

 

Yesterday evening I gave a talk on the subject “Enterprise Mobile Security” to the London chapter of the Institute of Information Security Professionals – IISP for short. I talked about the business drivers towards the growing use of mobile devices and consumerisation, security risks, and the requirements for securely enabling the use of business apps.

 

Mobile Device Management Device Profile

Android smartphone with mobile anti-malware

 

I demonstrated a couple of example solutions which can address some of the security risks:

 

  • Application access from an iPad to a corporate network, using SSL VPN and certificate authentication, so that the connection experience is automatic and invisible to the user
  • Anti-malware solution for Android smartphones, combining the use of a mobile device management system to monitor and help identify malicious applications, with an anti-virus client for Android

The presentation (excluding the demos) can be viewed here:

http://www.slideshare.net/hpEnterpriseSecurity/enterprise-mobile-security

 

My talk was followed by “Defending your turf: what does it take to protect data in a mobile workforce” presented by Nader Henein from the Blackberry Security group at Research in Motion.

We encourage you to share your comments on this post. Comments are moderated and will be reviewed and posted as promptly as possible during regular business hours.

To ensure your comment is published, please follow our community guidelines.

Post a Comment
Be sure to enter a unique name. You can't reuse a name that's already in use.
Be sure to enter a unique email address. You can't reuse an email address that's already in use.
Type the characters you see in the picture above.Type the words you hear.

Find HP in Social Media

Facebook Twitter YouTube SlideShare Flickr
About the Author
  • After graduation from Oxford University, Paul developed laser technology for NASA satellites, before moving into IT Security at Cable & Wireless in 2000, where he led the development of Internet Security Services. In 2005, Paul joined Vistorm, now HP Enterprise Security Services, as a Security Architect, where he is technical lead for mobile device and endpoint security solutions. Paul is CISSP and ITPC certified, is a CLAS consultant and M.Inst.ISP. He has recently completed the MSc Information Security at Royal Holloway, University of London.
  • A business first, senior executive, with over 20 years of hands on experience in defending banks, governments and corporations against cyberwarfare. My career in security started when I was employed to crack a secure system, which had locked down the boot process, whitelisting of applications and encrypted disks. I linked TeamOffice (an ICL email and collaboration system) with Microsoft Word to send an email which allowed me to do anything the person reading the email could do and send the results back to me, all without there knowledge. Having proved this vulnerability, I worked with Peter Simpson to create Defuse, a tool that blocked inappropriate actions. This successfully blocked Winword Concept, the first known malicous code in the wild. From these begginings I have investigated all aspects of security to provide an holistic approach to security as a business enabler and currently advising organisations on the suitability of the cloud to their needs.