Mobile Device Management (MDM) Policy
1. Introduction
PagerTree is committed to protecting company and customer data across all devices used to access corporate systems.
Mobile Device Management (MDM) enables PagerTree to enforce security controls, ensure device compliance, and reduce the risk of data loss or unauthorized access.
This MDM Policy outlines the requirements for managing, securing, and monitoring mobile devices used for PagerTree business purposes.
2. Scope
This policy applies to:
- All PagerTree-managed mobile devices (phones, tablets, laptops)
- Personal devices enrolled in PagerTree’s optional BYOD program (if applicable)
- All employees, contractors, or third parties who use devices to access PagerTree systems, networks, or data
This policy covers access to PagerTree email, cloud applications, internal resources, and any system containing company data.
3. MDM Enrollment Requirements
All company-owned mobile devices must be enrolled in PagerTree’s MDM solution before accessing company systems.
Enrollment enables PagerTree to:
- Enforce security configurations
- Manage device compliance
- Revoke access in case of loss, theft, or termination
- Remove company data when necessary
Personal devices (BYOD) may be required to enroll in a limited MDM profile when accessing company systems, depending on job responsibilities.
4. Security Requirements for Managed Devices
4.1 Authentication Controls
All MDM-managed devices must:
- Require a strong device passcode, PIN, or biometric authentication
- Automatically lock after a period of inactivity
- Prevent unauthorized users from bypassing device security
4.2 Encryption
All devices must use:
- Full-device encryption (native OS encryption such as FileVault, BitLocker, or iOS/Android encryption)
- Encrypted communication channels for accessing company resources
4.3 Operating System & Patch Compliance
Devices must:
- Run a supported, up-to-date operating system
- Apply security patches promptly
- Not use outdated, unsupported, or insecure OS versions
Devices out of compliance may have access automatically restricted.
4.4 Device Restrictions
To maintain security:
- Rooted or jailbroken devices are strictly prohibited
- Unauthorized software installations (third-party app stores, unknown sources) are not permitted
- MDM policies may restrict certain device features where necessary
- Only approved applications may access company data
5. Corporate Data Protection
5.1 Separation of Personal & Corporate Data
MDM ensures that:
- PagerTree data is stored in managed, secure containers
- Personal applications cannot access PagerTree data
- PagerTree cannot access an individual’s personal photos, messages, contacts, or private apps
5.2 Data Loss Prevention (DLP)
PagerTree uses MDM to enforce:
- Prevention of data copy/paste into personal apps
- Controlled file sharing and download permissions
- Automatic wiping of corporate data upon device unenrollment, compromise, or termination
6. Lost, Stolen, or Compromised Devices
If a device accessing PagerTree systems is lost, stolen, or suspected to be compromised:
- The user must notify security@pagertree.com immediately
- PagerTree may remotely revoke access or wipe corporate data
- Password resets or credential revocation may be required
- A security assessment will be performed by the PagerTree Security Team
Timely reporting is critical to minimizing risk.
7. Monitoring and Privacy
PagerTree uses MDM solely to protect company data and systems.
MDM may collect the following information about managed devices:
- Device type, OS version, and security posture
- Installed corporate apps
- Compliance with security requirements
- Location of company-owned devices (if enabled for loss/theft recovery)
PagerTree does not access:
- Personal emails, photos, messages, or files
- Personal app usage
- Personal browsing history
8. Enforcement
Devices that do not comply with this policy may have access to PagerTree systems automatically restricted or removed.
Violations of this policy may result in:
- Loss of BYOD privileges
- Revocation of system access
- Disciplinary action for employees
- Contract termination for vendors or contractors
9. Review and Maintenance
This policy is reviewed at least annually or whenever significant changes occur in mobile device technology, security requirements, or company operations. Updates are approved by PagerTree Executive Management.
For questions regarding this Mobile Device Management Policy, please contact security@pagertree.com.