Context-aware, data-driven policy enforcement for smart mobile devices in business environments
The popularity of smart mobile devices, initiatives such as "bring your own device", and the increasing overlap of private and business areas are changing the IT landscape and its security requirements. This poses challenges in terms of data security, the adherence to privacy laws, and the protection of business assets. To tackle the problem, we developed a data-driven usage control infrastructure that enables integration of smart mobile devices into business environments. For policy evaluation, our solution comprises the use of fine-grained context information by exploiting the full capabilities of today's mobile devices. The combination of integrated usage control and context awareness promotes the secure application of mobile business apps. In this paper, we present our proof-of-concept implementation and its underlying concepts.