Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-260165 | GOOG-14-710300 | SV-260165r948700_rule | Medium |
Description |
---|
The Android work profile for employee-owned devices (BYOD) is the designated application group for the BYOAD use case. SFR ID: FMT_SMF_EXT.1.1 #47 |
STIG | Date |
---|---|
Google Android 14 MDFPP 3.3 BYOAD Security Technical Implementation Guide | 2024-02-20 |
Check Text ( C-63896r948698_chk ) |
---|
Review that managed Google Android 14 is configured for BYOD (work profile for employee-owned devices [BYOD]). This procedure is performed on both the EMM Administrator console and the managed Google Android 14 device. On the EMM console, configure the default enrollment as work profile for employee-owned devices (BYOD). On the managed Google Android 14 device: 1. Go to the application drawer. 2. Ensure a Personal tab and a Work tab are present. If on the EMM console, the default enrollment is not set for BYOD (work profile for employee-owned devices [BYOD]), or if on the managed Android 14 device, the user does not have a Work tab, this is a finding. |
Fix Text (F-63803r948699_fix) |
---|
Configure the Google Android 14 device for BYOD (work profile for employee-owned devices [BYOD]). On the EMM console, configure the default enrollment as work profile for employee-owned devices (BYOD). Refer to the EMM documentation to determine how to configure the device. |