Classic On-Prem
EMM servers in your data centre with DMZ, own PKI and connectors to directory, mail, SIEM and ServiceNow.
Solution
Management, security and operation of Samsung, Android, iOS and Windows devices from infrastructure controlled by your organisation.
What it delivers
Samsung SDS EMM lets you manage devices, policies, applications, content and compliance in corporate and government environments. Bomontec deploys it with local architecture, integration services and support for the Spanish market.
Architecture
The platform installs in your data centre, respecting the existing topology, network segmentation and data governance controls. Changes to firewalls and access paths are minimal.
EMM servers in your data centre with DMZ, own PKI and connectors to directory, mail, SIEM and ServiceNow.
On-Prem console with selective notification services for highly distributed fleets.
Operation without Internet using SDS Private Push. For defence, public safety and classified environments.
For on-premise environments and isolated networks the proposal is based on Samsung SDS EMM (On-Prem) and SDS Private Push. For cloud scenarios, Samsung offers a differentiated cloud product (Knox Manage). Architecture and licences are selected according to customer requirements and the manufacturer's current documentation.
Samsung ecosystem
Samsung SDS EMM acts as the hub for Knox solutions, with advanced orchestration for Samsung hardware without losing multi-platform management.
Automatic bulk enrolment from first boot.
Firmware version control and update windows.
Dual-layer encryption of data at rest for classified information.
Tactical settings built into hardened Galaxy devices.
Offline local management and one-click STIG policies for deployed teams.
Specialised Samsung SDS support for tactical deployments and integrators.
Functional difference
MDM focuses on the device. EMM extends management to applications, content, identity, security and orchestration, and solves BYOD and COPE scenarios.
| Capability | Classic MDM | Samsung SDS EMM |
|---|---|---|
| Inventory, profiles and policies | ||
| App distribution and lifecycle | ||
| Identity, authentication and access | ||
| Content, containers and data separation | ||
| STIG hardening, encryption and detection | ||
| Orchestration and integration (SIEM, ITSM, Knox) | ||
| Operation in isolated (air-gapped) networks |
Security and compliance
The architecture combines a FIPS-validated cryptographic module with mutual TLS authentication. It fits NIS2, Cyber Resilience Act, ENS and GDPR requirements for regulated organisations.
How Bomontec deploys it
Current situation, fleet, integrations, constraints and security objectives.
On-Prem, hybrid or air-gap design; sizing, HA, PKI and segmentation.
4-6 weeks with real use cases, policies and representative user groups.
In waves, with assisted re-enrolment and validation by group.
Training, documentation, local support and escalation to Samsung SDS Europe.
Want to see it applied to your environment?
We validate Samsung SDS EMM with your devices, your policies and your integrations before you decide.