Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português
  • Home
  • Resources
  • Blog
  • BeyondTrust and Jamf – Enhancing Security Across Your Apple Fleet current page
Link copied

BeyondTrust and Jamf – Enhancing Security Across Your Apple Fleet

Apr 18, 2023
Author:
Tay
Taylor Wiggins
Senior Partner Marketing Manager
Blog banner default
BeyondTrust and Jamf – Enhancing Security Across Your Apple Fleet
Tay
Taylor Wiggins
Senior Partner Marketing Manager

What is the value of a partnership between Jamf and BeyondTrust?

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

At BeyondTrust, we know the value our partnerships can bring to our clients. Today, BeyondTrust has more than 20,000 customers across more than 100 countries, and Jamf has helped over 71,000 organizations manage and secure more than 30 million Apple devices. Together, we are combining Jamf’s dedicated Apple device management and security with BeyondTrust’s industry-leading intelligent identity and access security solutions to allow our customers to increase end-user productivity while enforcing IT security policies and protecting their infrastructure.

In this blog, we’re sharing the details of our exciting partnership with Jamf. Read on to learn how a partnership between Jamf and BeyondTrust can help enable our customers with easy deployment of privilege management and application control capabilities across their fleet of Apple devices, powerful least privilege management and just-in-time application control, and increased visibility and reporting on Apple endpoints.

Why securing endpoints across Apple devices is becoming a growing concern for organizations

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

MacOS and Apple devices have seen increasing penetration into enterprise infrastructures. According to the IDC Vendor 2021 Assessment Report, average penetration of MacOS devices into U.S. enterprizes averaged 23%, up from 17% in 2019. In 2020, iPhones accounted for 49% of the smartphones installed in U.S. enterprises, and iPads still make up the majority of tablets used in business.

Bring-Your-Own-Device (BYOD) and Choose-Your-Own-Device (CYOD) policies that started as a result of the pandemic have acted as a major driver in the increase in MacOS and Apple device usage within enterprizes. Today, Apple platforms continue to grow in popularity, with a growing number of enterprise users declaring Apple their device of choice. One quarter of the employees at SAP now use Macs, and “Many of our developers ask for Mac specifically and feel more productive with it,” said Martin Lang, vice president for product engineering mobile experience, SAP.

Today’s enterprises need the flexibility to provision and deploy different devices to accommodate user preferences – increasingly macOS machines—but “The proliferation of Apple devices — macOS devices, as well as iPhones, iPads, and Apple TV — in business is causing many organizations to rethink their approach to overall endpoint provisioning, management, and security” (IDC).

How BeyondTrust and Jamf are enhancing deployment of Privilege Management to Mac endpoints with the Rapid Deployment Tool

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

BeyondTrust’s Privilege Management for Windows and Mac combines privilege management and application control technology in a single, lightweight agent. This scalable solution allows global organizations to eliminate uncontrolled admin rights throughout their business and provide just-in-time access for users to acess the applications they need to do their jobs.

The Rapid Deployment Tool is expressly designed to enable organizations to easily onboard an estate of distributed macOS endpoints that are managed by Jamf, properly configured with BeyondTrust’s Privilege Management for Mac. The tool provides Apple PKG files ready for rapid deployment, without the need for IT, security, or other responsible teams, to manually configure each endpoint directly.

The Rapid Deployment Tool can create three immediately installable deployment packages:

  • Base Platform: a package which deploys settings relevant only to Privilege Management for Mac.
  • Privilege Management Console: a package that deploys configuration settings for the Privilege Management for Mac management platform. You can also optionally include Base Platform settings in the same package.
  • BeyondInsight: a package that deploys configuration settings for the BeyondInsight management platform.

The Jamf integration includes connecting to a Jamf instance and creating a package record for the created settings package. A policy referencing that package can also be pushed to the endpoints. For efficiency, and consistency, you can automatically scope the newly created policy to an existing group in Jamf.

What are the benefits of providing additional security for macOS devices?

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

It is not uncommon for Mac users to use an admin account to run many functions. Yet, with more Mac devices connected to the enterprise network (and threats increasingly targeting macOS), this uncontrolled access represents a growing security risk to the enterprise.

Privilege Management for Windows and Mac allows organizations to achieve and enforce least privilege by removing local admin rights from the users in their estate, while continuing to allow users the flexibility they need to remain productive. With allowlisting you can preapprove the installation and use of specific, appropriate applications for users and groups. You immediately gain greater control and improve macOS security by preventing untrusted applications from executing.

Most importantly, Privilege Management for Windows and Mac allows you to dynamically elevate privileges for applications on an as needed basis, just-in-time. You can enable users to request access by creating your own customized authorization prompts. Privilege Management for Windows and Mac lets you set up access request reasons, challenge / response codes, or password protection to add additional layers of security. You can also suppress standard, restrictive messaging and improve access prompts to smooth the end user experience and reduce helpdesk inquiries.

Users can continue to execute approved tasks, run applications and installations as established by the rules of your corporate security policy, without compromising productivity or performance. Familiar firewall-style rules based on Application Groups make set up and management of policies simple. Privilege Management for Windows and Mac allows you to seamlessly manage your entire estate across Windows and macOS operating systems through one easy to use interface.

Where to look?

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

As the proliferation of MacOS and Apple devices in the workforce continues, the Rapid Deployment Tool for Privilege Management for Windows and Mac provides you the flexibility to offer Mac devices in compliance with corporate access policies. You gain visibility on your macOS endpoints, with actionable intelligence, real-time data dashboards, and reporting that aid in troubleshooting, and provide the information you need to proactively manage your policy – across your entire endpoint estate – on an ongoing basis.

If in pursuit of a Zero Trust security posture, incorporating all macOS endpoints is critical. The comprehensive elimination of uncontrolled admin rights and enforcement of least privilege across your macOS estate are “table stakes” for any effective implementation of a Zero Trust strategy.

The Rapid Deployment Tool and Privilege Management for Macs are available now on the Jamf Marketplace and from BeyondTrust. Jamf and BeyondTrust continue to work on providing Apple users with more comprehensive security and productivity solutions.

Learn More

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

As you join our team onsite in Miami, FL for Go Beyond on May 2nd – 5th, be sure to swing by the Partner Pitstop Expo Hall to visit Jamf’s booth. Jamf is a new sponsor this year and we are excited to show our customers what we are working on together. If Miami isn’t in your plans, join us in Austin at Jamf’s JNUC 2023 in September, where we are platinum level sponsors.

Latest Posts
  • Mapping Every Privilege Escalation Path in AWS AgentCore
    Jun 15, 2026 Mapping Every Privilege Escalation Path in AWS AgentCore
    Blog
    12m
  • Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta
    Jun 12, 2026 Hooked on Identity (Part 2): Abusing OAuth Trust Boundaries in Okta
    Blog
    7m
  • Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta
    Jun 9, 2026 Hooked on Identity: Abusing SAML Assertion Inline Hooks in Okta
    Blog
    6m
  • Joining Project Glasswing: Securing the Privilege Backbone of the AI Era
    Jun 8, 2026 Joining Project Glasswing: Securing the Privilege Backbone of the AI Era
    Blog
    5m
  • The Most Common & Most Dangerous Types of Shadow IT
    Jun 5, 2026 The Most Common & Most Dangerous Types of Shadow IT
    Blog
    19m
Related
  • National Cybersecurity Awareness Month – Words to Avoid
    Oct 20, 2017 National Cybersecurity Awareness Month – Words to Avoid
    Blog
    1m
  • Petya ransomware variant strikes on a global scale
    Oct 20, 2017 Petya ransomware variant strikes on a global scale
    Blog
    1m
Share this Article
  • Link
Stay up to Date
Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.