By IDG Enterprise

Samsung bolsters BYOD management with a Fort Knox approach

February 25, 2013 9:48 AM via Computerworld
Credit: Ron MIller

BARCELONA -- Samsung Monday announced an improved version of its SAFE management and security system for popular Samsung-branded Android smartphones and tablets.

Samsung dubbed the updated tool set KNOX, after the famous Fort Knox in Kentucky, where much of the U.S. gold reserves are stored.

The KNOX technology, to be demonstrated at Mobile World Congress here this week, means that Samsung smartphone and tablet users will soon be able to take advantage of a dual persona or containerization approach, where corporate and personal data are kept in separate spaces on the Android OS.

The Huge BYOD Risk You're Probably Ignoring
FINAL WEEK to register for CITE! Don’t miss the Sunday interactive workshops.

Samsung said its new software is not a hypervisor, but runs in the BIOS (basic input output system) firmware of the Android OS with file system encryption, to protect against data leaks, viruses and malware.

The dozen security enhancements to the Samsung SAFE program (an abbreviation for Samsung For Enterprise) which include enterprise Single Sign-On, mean that users get "security enhanced Android" to "address all major [Android] security gaps," said Timothy Wagner, general manager of enterprise sales for Samsung in a briefing with reporters.

For instance, Samsung has written more than 700 APIs (application programming interfaces) that can be used to help IT shops customize Bring Your Own Device (BYOD) security policies in partnership with existing Mobile Device Management (MDM) vendors such as Mobile Iron, Juniper, AirWatch and Sybase.

The current version of SAFE supports fewer than half the APIs supported by KNOX.

The new APIs can be used in many ways. For example, an MDM system can be set to prevent a doctor from accessing sensitive patient data from a Samsung device once the GPS shows that he or she has left the grounds of a hospital.

"SAFE with KNOX is a comprehensive mobile security solution ... that will further harden Android," Wagner said. "We have systematically de-fragmented Android."

He conceded that Android has a reputation for lacking security, and is fragmented across different vendors, different devices and different carriers.

The KNOX container approach means that if a hacker were to exploit a Samsung device while in the personal mode, the phone could not be be shut down or rendered useless, Wagner said. The KNOX software monitors the entire phone, both the personal and work containers, he said.

KNOX will appear as an icon on the home page of Samsung smartphones coming in the second quarter.

It will require that users log-in to access work applications, email and other corporate functions. IT managers could customize KNOX to require additional log-ins after a set amount of time has expired.

BlackBerry recently announced Balance, which created dual personas in the BlackBerry 10 OS used in the new Z10 smartphone. But BlackBerry adds another layer of security by requiring that IT shops set up BlackBerry Enterprise Service 10 software on a server behind the corporate firewall.

Other mobile management companies offer hypervisor software to create dual personal containers. Red Bend Software said its approach will be trialed in the Galaxy S III for enterprise users.

Wagner said some existing Samsung devices could be retrofitted to include the KNOX features. More details are expected in the next month.

Some analysts have said that BlackBerry, with its new Balance approach and other measures, offers greater security than Samsung.

Originally published on www.computerworld.com. Click here to read the original story.
Reprinted with permission from computerworld.com. Story copyright 2013 computerworld.com communications. All rights reserved.
Latest Stories
May 24, 2013 4:14 PM

Excel: Microsoft's best weapon against Tableau and competitors

New data visualization apps for Excel 2013 could help Microsoft hang on to customers looking for better data visualization tools.

May 24, 2013 3:53 PM

Microsoft isn't crazy to think it could sell 25 million Surfaces next year

Surface has been a stiff so far, but Microsoft reportedly has big expectations for its next fiscal year. Here's why the company may not be crazy.

May 24, 2013 10:27 AM

How an internal social network helped one agency fight terrorism

Flickr by UNC-CFC-USFK

The global law enforcement agency needed a secure, global network where crime and terrorist information could be shared among its members. It found an answer with the enterprise social network, tibbr.

May 24, 2013 9:54 AM

IT must act like a fast-moving startup

Brandon Porco, the chief technologist for defense contractor Northrop Grumman, says that IT will have to try lots of different things and move quickly to keep abreast of evolving employee needs. "Google has it very well-patterned: Launch and iterate."

May 24, 2013 8:41 AM

Enough with the silly myth about Apple hating the enterprise

Although Apple is often accused of not being an enterprise company, it's only in the last few years that Apple has abandoned its enterprise-oriented products. The real story may be that Apple's discovered that making enterprise-focused efforts simply don't deliver a huge return on investment.

May 23, 2013 4:54 PM

Windows 8 users are mostly sticking with the traditional desktop

Majority of Windows 8 PC owners launch less than one app a day

FOLLOW US
Get CITEworld updates via email, RSS or social media