Feature Category | Feature | Mandatory | Expected/ Common | Details & Importance |
Licensing & Deployment | Single-License Product SKU | ✅ | ⬜ | Simplifies procurement, licensing, and overall management. |
| Turnkey SaaS (Vendor Hosted & Operated) | ✅ | ⬜ | Critical for rapid deployment and reduced operational burden (excludes IaaS/on-premises only). |
| Multitenant Support | ⬜ | ✅ | Allows one instance to serve multiple distinct organizations/departments (useful for MSPs, large enterprises). |
Core OS Management | Apple iOS & iPadOS Management | ✅ | ✅ | Foundational for managing Apple mobile devices; supports various management profiles. |
| Apple macOS Management | ✅ | ✅ | Crucial for organizations managing Apple desktops and laptops. |
| Google Android Management | ✅ | ✅ | Necessary for managing the diverse Android device ecosystem. |
| Linux Management <br> (Debian, RHEL, SUSE, Ubuntu) | ✅ | ✅ | Important for organizations utilizing Linux servers or workstations. |
| Microsoft Windows (Endpoint Versions) Management | ✅ | ✅ | Fundamental for managing the dominant Windows desktop and laptop environment. |
| Google ChromeOS Management | ⬜ | ✅ | Increasingly relevant for organizations deploying Chromebooks, especially in education and specific verticals. |
| Internet of Things (IoT) Device Management | ⬜ | ✅ | Addresses the growing need to secure and manage non-traditional connected devices. |
| Ruggedized Device Management <br> (Android OEMConfig or AOSP) | ⬜ | ✅ | Targets specialized devices built for harsh environments (logistics, field services). |
| Wearable Device Management <br> (e.g., AR/VR, Wrist-worn) | ⬜ | ✅ | Supports emerging enterprise use cases for wearables. |
Core OS Management Functions | Application Deployment | ✅ | ✅ | Ability to distribute, install, update, and remove software applications per OS. |
| Device Configuration & Policy Enforcement | ✅ | ✅ | Ensures devices comply with organizational security settings, restrictions, and operational standards. |
| Device Enrollment & Provisioning | ✅ | ✅ | Streamlines adding new devices to management and applying initial configurations. |
| OS Patching & Update Management | ✅ | ✅ | Critical for maintaining security posture and system stability via timely OS updates. |
Autonomous Endpoint Management (AEM) | DEX Measurements for Patch Success | ⬜ | ✅ | Provides Digital Employee Experience insights related to patch deployment success and impact. |
| Configurable Patching Rings | ⬜ | ✅ | Allows phased rollout of patches (e.g., IT > Pilot Users > General Users) to minimize disruption. |
| Customizable Patch Automation (Confidence Levels) | ⬜ | ✅ | Enables intelligent, risk-based automation of patching based on update reliability or testing. |
Extended Management Capabilities | Device Discovery & Inventory | ⬜ | ✅ | Provides comprehensive visibility of both managed and potentially unmanaged devices on the network. |
| Encryption Management | ⬜ | ✅ | Enforces and monitors device-level data encryption (e.g., BitLocker, FileVault). |
| Software Deployment | ⬜ | ✅ | Broader capability for distributing various software types beyond standard applications (e.g., scripts, packages). |
| Manage Nontraditional Devices (IoT, Wearables, Rugged) | ⬜ | ✅ | Offers unified management for diverse endpoint types beyond standard computers and mobiles. |
| Third-Party Application Patch Automation | ⬜ | ✅ | Automates patching for common non-OS software (browsers, productivity tools) – a major vulnerability vector. |
| Third-Party Application Package Repository | ⬜ | ✅ | Provides a curated, tested source for deploying and updating common third-party applications. |
| Role-Based Access Control (RBAC) | ⬜ | ✅ | Defines granular administrative permissions based on user roles or responsibilities. |
| Full Spectrum Mobile Management <br> (MDM, Supervision [iOS], Fully Managed [Android], MAM) | ⬜ | ✅ | Comprehensive options for managing mobile devices based on ownership (corporate vs. BYOD) and control needs. |
| Containerized Mobile Applications | ⬜ | ✅ | Secures corporate data within mobile apps by isolating it and controlling data sharing (MAM). |
| Remote Corporate Data Wipe (Employee Separation) | ⬜ | ✅ | Securely removes company data from devices (especially BYOD) upon employee departure. |
| Device Imaging & Reimaging | ⬜ | ✅ | Standardizes device setup using OS images and facilitates rapid device reset or recovery. |
| Enterprise App Store (Self-Service) | ⬜ | ✅ | Allows users to install pre-approved applications on demand, improving productivity and reducing IT workload. |
| CMT Integration (Agent/Prebuilt Connector) | ⬜ | ✅ | Facilitates interoperability or migration from legacy Client Management Tools (e.g., SCCM). |
| Customizable Reporting & Dashboarding | ⬜ | ✅ | Enables tailored views and reports on device inventory, compliance, security posture, and operational metrics. |
| Modern Enrollment Support <br> (Win Autopilot, Apple Business Mgr, Android Zero-Touch) | ⬜ | ✅ | Leverages vendor programs for streamlined, out-of-the-box device enrollment and provisioning. |
| Limited Use/Kiosk/Shared Device Configuration | ⬜ | ✅ | Configures devices for specific, restricted purposes (e.g., public kiosks, shared workstations). |
Extended Features & Integrations | Vulnerability Assessment & Prioritization | ⬜ | ✅ | Identifies endpoint security weaknesses (CVEs) and helps prioritize remediation efforts. |
| ITSM & CMDB Integration | ⬜ | ✅ | Connects endpoint data with IT Service Management platforms (e.g., ServiceNow) and Configuration Management Databases. |
No comments:
Post a Comment