Blog Post

Product news & info
4 MIN READ

[Product Update] Introducing Device Trust from Android Enterprise

Rose's avatar
Rose
Google Team
7 days ago

In today's world, our smartphones and tablets have become essential tools for getting work done, wherever we are. This "mobile-first" reality means that keeping company data secure on these devices is more critical than ever. Traditional security methods, like just having a firewall around the office network, aren't enough anymore.

 

That's why Android Enterprise supports a Zero Trust security model. Think of it like this: instead of automatically trusting everyone inside the network, Zero Trust assumes nothing and verifies everything before granting access to sensitive information.  With 63% of organizations worldwide having partially or fully implemented a Zero Touch strategy, and 96% of organizations favoring this approach, Zero Trust has become the standard for security across organizations.

 

Android is making it easier than ever to bring this Zero Trust framework to your mobile workforce with Device Trust from Android Enterprise.*

 

What exactly is Device Trust from Android Enterprise?

Simply put, Device Trust from Android Enterprise helps organizations verify the security status of Android phones and tablets before allowing access to work apps and data. It works across all device ownership models (company-owned or  BYOD), and at any level of device management (enrolled to an EMM or completely unmanaged), acting as a constant security validation for all Android devices used for work.

 

How does it work?

Device Trust from Android Enterprise uses a comprehensive set of over 20 different trust signals to assess a device's security posture. These signals look at things like:

  • The security patch level
  • The security status of the network the device is connected to
  • Whether the OS version is up to date

By bundling all these checks together, Device Trust from Android Enterprise provides a reliable way to understand how trustworthy a device is. This makes it simpler for your IT team to manage mobile security while providing a smooth experience for your employees. Plus, it's designed to protect both user and company privacy.

 

What does this mean?

 

1. Security you can trust:

Protect your data with intelligent and adaptable device security.

  • Device Trust from Android Enterprise works effectively whether company owned and managed by an EMM, employee personal devices are managed by an EMM, using an Android Work Profile, or are unmanaged but utilize a partner security app. Device Trust from Android Enterprise allows businesses to secure the full management spectrum of Android devices used for work.
  • Align with the latest industry standards and best practices around Zero Trust and mobile security, including including ISO/IEC 27001, 27002, 27005, to stay ahead of evolving threats.
  • Ensure ongoing protection with continuous, real-time evaluation and validation of device health at multiple access points.

2. Flexible solutions for diverse use cases:

Embrace a security approach that adapts to the diverse ways your employees work.

  • Get direct access to reliable trust signals, empowering you to make informed access decisions and react swiftly to potential risks.
  • Unify and simplify your security management by integrating Android mobile devices into your existing mobile threat defense (MTD), endpoint detection response (EDR), identity provider (IdP), and security information and event management (SIEM) workflows.
  • Leverage our rich ecosystem of security partners, whose solutions integrate seamlessly with Device Trust from Android Enterprise, to create layered protection across different access needs and tailor security to specific use cases.

3. An uninterrupted employee experience:

Empower your team to work effectively without unnecessary security hurdles.

  • Enable instant productivity without needing to formally enroll the device - ideal for flexible and casual work arrangements that don’t require full EMM management.
  • Deploy a security solution built with user privacy in mind, utilizing vetted partners and secure data interfaces.
  • Maintain seamless access with continuous, behind-the-scenes security checks that won't disrupt workflows or require constant user interaction.

 

Who can benefit from Device Trust?

Built to be flexible, Device Trust from Android Enterprise benefits businesses of all sizes. 

 

  • For Large Enterprises: Strengthen your Zero Trust approach with continuous validation of device security, that accommodates varied access requirements, including full-time staff, contractors, and those in casual work scenarios. By seamlessly integrating with your existing security ecosystem (MTD / EDR, IdP, SIEM), you gain comprehensive visibility and can enforce consistent security policies across your diverse fleet of managed and unmanaged Android devices, enhancing your overall security posture at scale.
  • For Small to Medium Businesses (SMBs): Achieve robust, enterprise-grade security without the typical complexity or extensive IT resources. You don't need a full EMM solution to benefit from Device Trust from Android Enterprise. This allows you to cost-effectively protect sensitive business data on employee devices and enable secure remote work, even on personal devices.

In a world where mobile devices are our primary work hubs, Device Trust from Android Enterprise offers a robust and reliable way to unify security tools on mobile, and fortify your defenses.

 

Ready to learn more? 

For a more detailed overview, explore our Keyword blog. Don't miss our upcoming digital episode, ‘Android Talks Device Trust,’ where we'll take a deep dive into Device Trust from Android Enterprise and our partner solutions. Register here.



Let’s keep the conversation going, we’d love to hear your initial thoughts in the comments below. 👇 How does your organization currently approach securing mobile devices, and where do you see Device Trust potentially fitting in?

 

 

 

*Device Trust from Android Enterprise solutions are built and offered by third-party providers integrating into the Android Management API. Exact features may vary depending on third-party integrations. Access on unmanaged devices requires user consent to use the Android Device Policy app. Device Trust from Android Enterprise is supported on Android 10 and above.
Published 7 days ago
Version 1.0
  • Michel's avatar
    Michel
    Level 3.0: Honeycomb
    6 days ago

    Sounds good but a bit disappointed to hear that it needs 3rd party tooling for this. When seeing the header, I hoped to read that this would be embedded in Android OS for EMM to utilize. 

    • jasonbayton's avatar
      jasonbayton
      Level 4.0: Ice Cream Sandwich
      6 days ago

      Absolutely nothing stops your EMM from implementing this. It pulls almost all of the data from Android Device Policy and the programme is open to basically all partners across idp, emm, mtd, etc.

      • Michel's avatar
        Michel
        Level 3.0: Honeycomb
        6 days ago

        Thanks for clarifying this!

         

        I think I misinterpreted the following sentence: *Device Trust from Android Enterprise solutions are built and offered by third-party providers integrating into the Android Management API.