Ensure separate enterprise workspaces are used on mobile end-user devices, where supported.
Example implementations include using an Apple® Configuration Profile or AndroidTM Work Profile to
separate enterprise applications and data from personal applications and data.
Arranging suitable equipment and storage for teleworking if the use of personal equipment beyond the control of the organization is not permitted.
If personal devices are used organization should utilize separate profiles (e.g. using Apple® Configuration Profile or AndroidTM Work Profile) to separate work data and apps from personal data and apps.
Mobile Device Management (MDM) helps secure and manage staff mobile devices, whether they are iPhones, iPads, Android devices, or Windows devices. E.g. a Microsoft 365 subscription includes the basics of mobile device management.
Mobile device management system can be used to e.g. configure device security policies, wipe remotely and get accurate device usage reporting.