Management and endpoint security purpose-built for Apple
GNS Gesellschaft für Nuklear-Service mbH is Germany's leading provider of nuclear casks and technology as well as waste management and decommissioning services for nuclear power plants. With around 1,000 employees in a highly sensitive industry, security and compliance are at the heart of its IT strategy.
The company had been using management and security tools for its Windows devices but recognized the need for a separate solution to manage and secure its Apple devices. The differing requirements for macOS and iOS made it essential to implement a solution fully focused on Apple’s operating system and security framework. “We have deliberately set up the Apple platform separately so that we can achieve the best possible results in terms of administration and security in both environments”, explains Jan Heinen, System Engineer IT-Infrastructure at GNS Gesellschaft für Nuklear-Service mbH.
The company chose Jamf Pro, Jamf Connect, and Jamf Protect to provide optimal administration and endpoint security for its Apple devices, whether it’s a Mac or one of over 500 iPhones and iPads used in the field. Jan Heinen sums it up: “Jamf gives us the right comprehensive approach to administration, security, and deployment of the Apple platform that we need at GNS Gesellschaft für Nuklear-Service mbH.”
Zero Trust with Jamf
Through the implementation of Jamf, GNS Gesellschaft für Nuklear-Service mbH achieved a Zero Trust outcome for their Apple devices to ensure only authorized users on registered, secure, and compliant devices can access company data. “The direct integration of the security solutions and the holistic approach for trusted access were key factors in our decision to test these applications.”
This is achieved through the deployment and integration of three key solutions:
- Device management with Jamf Pro: Jamf Pro is used to deploy and manage all devices, ensuring administrators are aware of all devices and their status. Automated configurations and software deployments ensure devices are always secure and ready for use.
- Endpoint Security and Compliance with Jamf Protect: Jamf Protect secures GNS Gesellschaft für Nuklear-Service mbH’s Apple devices against threats, proactively mitigating security risks while controlling aspects such as mobile data usage. Incident response processes and insight into the security status of the fleet ensure continuous compliance. GNS Gesellschaft für Nuklear-Service mbH adheres to industry standards. Automating configuration, app deployment, and threat detection not only ensures compliance but also reduces the administrative workload.
- Authentication and Access Management with Jamf Connect: The integration of Jamf Connect with Microsoft’s identity provider Entra ID and the Device Compliance integration guarantees that conditional access policies are enforced, ensuring only verified users with authorized devices can access protected resources such as M365 Services, and internal web applications. This is central to the zero-trust strategy and ensures that access to company data is granted based on the device’s security posture and status.
Jamf Security Cloud gives us detailed insights and protection for our Apple platform, and Jamf Pro allows us to securely provision iPhones, iPads, and Macs for our employees.
Benefits
In daily operations, the use of these solutions provides clear benefits:
- A comprehensive overview of the security of the Apple fleet and the enforcement of security policies.
- Increased user-friendliness of devices, thus enhancing end-user productivity without disrupting operations.
- The ease of use of Jamf products means they are simple to operate and require no extensive onboarding for administrators.
Not only have the Jamf solutions made a significant impact, but “the Professional Support from Jamf left a lasting, positive impression,” according to Jan Heinen. GNS Gesellschaft für Nuklear-Service mbH sees Jamf as a solution that scales flexibly and securely with their growing needs in their Apple platform.