MBS Debug
Mac Business Solutions

Working from Anywhere using Apple devices

Work has changed. It’s time to adapt

The days of a 9 to 5 workday — exclusively from the office — are ending as work is no longer confined by place and time. In fact, 66% of organizations allow remote workers and 16% of employees work remote full time.

What’s making this possible is the evolving role of digital technology to improve business processes and enhance employee experiences. But what makes this successful is the evolving responsibility of IT.

In today’s climate, more organizations than ever before are examining their remote employee and work-from-home policies — be it for employee retention or employee productivity reasons.

In this Document:

  • Successfully onboarding staff.
  • Securely connecting employees.
  • Fully supporting remote employees.
  • Remote Collaboration Tools.
  • Apple® Financing.

Better onboarding experience for all

The speed at which organizations must empower employees to be productive is directly correlated to the retention rate and level of productivity of new hires. When organizations deliver a strong onboarding experience, they can improve employee retention rates by 82% and employee productivity by over 70%.

So, it is paramount that organizations are offering the right technology and leveraging the right tools to facilitate a streamlined onboarding process for remote and on-site employees. But when it comes to choosing how to best support those goals, not all technology and tools are created equal.

Apple devices are becoming much more common place in enterprise organizations around the world. The ease of use and growing employee demand are opening the eyes of many organizations to support and offer Mac®, iPad® and iPhone®. And, this trend has tremendous benefits for employees, IT and the entire organization.

Apple Mobile Device Onboarding with Jamf

Efficient onboarding for IT

IT only gets one chance to make a good first impression. They can nail theirs by leveraging Apple Business Manager to institute a company-wide zero-touch device deployment strategy. When a new device is unboxed and powered on, Apple Business Manager tells the Mac, iPad or iPhone to automatically enroll into the organization’s mobile device management (MDM) solution.

Jamf Pro — the gold standard for Apple enterprise management — is built from the ground up to deeply support Apple Business Manager and take it to the next level. With powerful technology like Smart Groups — which help intelligently manage environments without any interaction — Jamf Pro is the best platform to support a growing remote workforce. For small businesses, Jamf offers Jamf Now — mobile device management built for anyone.

Apple Business Manager — a free service from Apple — also helps streamline the process of Apple IDs, when paired with a management solution like Jamf Pro or Jamf Now. Leverage Managed Apple IDs and be fully in charge of the set up and management of the Apple ID. Employees benefit from an Apple ID strategy that is clearly designated for work, eliminating any confusion about whether they should use their personal Apple ID in the workplace. Admins will enjoy fewer support tickets as end users are empowered to manage and reset their own passwords without needing IT support.

This workflow completely eliminates the process of unboxing each device and physically touching it to get it personalized and configured for each employee. Gone are the days of IT needing to be buried under a mountain of new hardware. With Jamf and Apple Business Manager, deploying a new device is as easy as ordering it via the Apple Business Manager portal and shipping it directly to an end user’s desk or home.

Easy onboarding for employees

First days are inherently stressful for employees. Alleviate their concerns by getting the tools they need (and want) in their hands on day one through a zero-touch deployment.

For a remote employee, productivity is literally a few taps or clicks away. They simply look for their new Apple devices in the mail, unbox it and power it on. That’s it! Employees become instantly connected to their work resources, including mail, VPN and productivity apps in the same exact manner as their on-site counterparts. Your device management solution should also allow for flexible configuration of the Enrollment Customization workflow, making it easy for you to provide video, documentation or other information as a new employee clicks through the enrollment screens on their device.

Once online, remote employees are able to quickly find and take advantage of their favorite apps or other critical resources thanks to Self Service, a free curated app portal available to every end user in the organization.

Connecting employees through zero-trust access

To further differentiate and customize the device deployment process and ongoing lifecycle management for remote and on-site staff, organizations are turning to modern authentication and security measures.

Through an authentication and identity management solution such as Jamf Connect, organizations can implement a “never trust, always verify” strategy. This is crucial for remote staff who are potentially accessing secure information and resources over unsecure networks.

Jamf Connect and cloud-identity providers — such as Okta and Microsoft Azure Active Directory — offer organizations a high level of user and device trust, while also ensuring a seamless and uninterrupted experience for employees.

This is accomplished through three areas:

  • Account provisioning and authentication
  • Identity management
  • User identity and device credential synchronization
Mobile Device Provisioning

Account provisioning and authentication

IT administrators can provision a Mac with all of the business-critical applications needed to be productive based solely on an employee’s cloud-identity credentials. This takes zero-touch deployment one step further as the user can login with a single set of credentials, complete with multifactor authentication, so the organization knows the right person is accessing the right machine and the right resources.

Identity management

Because Jamf Connect requires a cloud-identity username and password, IT administrators are able to monitor what devices are being accessed, from where and by whom. This is a powerful security measure to keep remote employees protected as they may be logging into their device from an unsecure network or if a device is lost or stolen.

User identity and device credential synchronization

Jamf Connect empowers employees to keep their corporate identity (cloud-based identity) in sync with their local Mac account password at all times. This means employees can access everything they need without having to input a password multiple times.

Ongoing support for remote employees

Onboarding and instant, secure connection to resources are the first two steps in promoting a productive remote workforce. But, just as important is the ongoing management of the device.

Jamf Pro and Jamf Now communicate with devices through Apple’s Push Notification service (APNs) and tell them how to behave. This maintains a constant connection to devices, so IT doesn’t have to.

When IT wants to modify a device (remote or on-site), they simply send a configuration profile or management command via APNs. VPN, email, Wi-Fi and countless more settings can automatically be applied to an employee’s device — without requiring any interaction from them.

Sophisticated app management

The business world runs on apps, so an organization’s management strategy needs to adequately accommodate. Through the integration with Apple Business Manager, Jamf Pro can purchase and deploy apps from the App Store (or your company’s app directory) directly to devices. Again, these apps can be pushed to devices or made available via Self Service.

Support for MDM Remote Users

Better Mac protection

As more employees leverage Mac to do their jobs, the need for purpose-built Mac security amplifies. With employees using their computers at home, there’s a whole new risk of attacks against company assets. Employees may become more comfortable visiting websites they may not normally do on a company network, personal email on devices, or trusting their child to play a game on a website. And when that inevitable piece of malware finds its way onto a device, security teams and IT face the additional challenge to remediate that attack remotely.

By leveraging native security tools — like Apple’s new Endpoint Security framework and on-device analysis of macOS system events — Jamf Protect creates customized telemetry and detections that give enterprise security teams unprecedented visibility into their macOS fleet, no matter where the devices are.

With Jamf Protect and Jamf Pro, you have some of the best tools available to identify and remediate incidents on macOS without the devices ever touching the corporate network:

  • Receive real-time alerts of malicious activity
  • Investigate activity on devices
  • Set up proactive blocks for known bad applications
  • Isolate a device from sensitive resources
  • Eradicate malicious files on the device
  • Redeploy macOS and installed applications

Apple Financial Services

With new financing solutions, it's easier than ever to bring Apple products into your organization or institution in a way that is simple and cost-effective.

Apple Family

Innovative payment structures.

Apple products are built to last, and with a high residual value they are a smart investment. Apple Financial Services builds in the future value upfront, to create compelling financial structures.

Straightforward contracts.

You can get the technology you need to run your organization or institution, with an experience that is simple, flexible and friendly – exactly as you would expect from Apple.

Flexible terms.

Apple Financial Services offers you the flexibility to change as your organization or institution needs change. With customer-friendly end-of-term options, you have complete control of your refresh. You decide the right time to upgrade.

Remote Collaboration Tools

The App Store has curated a collection of apps including Cisco Webex, Microsoft Teams, and Slack to help coworkers work together while remote.

These are among the many business apps available from Apple and third parties to enable employees to stay connected, collaborative, and productive while working from home.

See the List

iOS Apps for Remote Collaboration, Work from Home