
Sign up to save your podcasts
Or


Travis County's Senior Systems Engineer explains why his team migrated 1,900+ Apple devices back to Jamf after trying a competing MDM, and how Jamf tools caught phishing test emails before users ever saw them.
Billy Roberts manages endpoints for Travis County government in Austin, Texas, a hybrid environment with 6,900 Windows devices and nearly 2,000 Apple devices including iPhone, iPad, and Mac computers. In this episode of Jamf After Dark, Billy shares why they left Jamf, what went wrong with their previous MDM, and what brought them back. He also walks through how Jamf Trust quarantined phishing emails before users could even open them, and how Jamf Security Center's detailed app reports eliminated the manual research from their technology assessment program.
🎙️ Jamf After Dark, a podcast from Jamf introducing you to the people, products, and stories behind Apple device management and security. Hosted by Kat Garbis and Josh Thornton.
What You'll Learn:
🔔 Subscribe for more device management content from Jamf
Resources:
MDM Migration Checklist https://www.jamf.com/blog/mdm-migration-checklist/
Jamf Pro https://www.jamf.com/products/jamf-pro/
Jamf Protect https://www.jamf.com/products/jamf-protect/
Mobile device security is the biggest blind spot in most organizations, and most IT teams have no way to investigate when something goes wrong.
Chris Deane, Senior Sales Engineer for Jamf Security Products, and Harry Jenkins, Senior Sales Manager for Jamf Mobile Forensics, sit down with hosts Kat Garbis and Josh Thornton to talk through what actually happens when a mobile device gets attacked.
They cover the full picture: why MDM alone isn't security, how mobile threat defense stops most attacks but not all, and where Jamf Mobile Forensics comes in for the ones that slip through. Plus a deep dive into spyware — Pegasus (NSO Group), Predator (Intellexa), zero-click attacks, why journalists are targeted just as often as executives, and how Jamf Threat Labs builds detection rules for threats that have never been seen before.
CHAPTERS:
0:00 Mobile devices are the #1 security blind spot
1:50 Meet the guests: Chris Deane and Harry Jenkins, Jamf Security
2:56 What makes Mobile Security different from endpoint security?
5:08 MDM, Mobile Threat Defense, and Mobile Forensics: the three layers explained
7:18 Why Only 15% of mobile devices are properly secured
9:49 Personal vs. Work: why the blurred lines make mobile security hard to enforce
15:36 Incident Response: what happens when an employee says their phone was attacked?
17:43 What Mobile Forensics actually means, and what Jamf is not looking at
19:57 iOS vs. Android CVEs: 90-120 Apple patches vs. 600-900 Android in 12 Months
22:43 Spyware: What Predator and Pegasus actually do to your mobile device
25:37 Targeted malvertising and the shift from One-Click to Zero-Click Attacks
29:07 Who gets targeted: executives, journalists, and travelers in High-Risk countries
33:20 How Jamf Threat Labs detects unknown threats using behavioral analysis
36:43 AI Analysis in Jamf Mobile Forensics: deeper insights without Forensic skills
Subscribe for Apple device management and security insights
#MobileSecurity #Spyware #EndpointSecurity #mobileforensics #cybersecurity #Jamf
Okta's Dan Hefley (https://www.linkedin.com/in/dan-hefley), Senior Product
Manager for Device Access, explains how Platform SSO brings enterprise identity
to the Mac. From day-zero Setup Assistant enrollment in macOS 26 to device
bound SSO using secure enclave keys, Dan covers what IT teams need to know
about deploying Platform SSO with Okta and Jamf.
Dan shares his perspective as a former MDM admin turned identity product
manager, discusses how device bound SSO prevents session hijacking with
hardware-backed keys, and explains why the Shared Signals Framework between
Okta and Jamf creates layered security. Hosts Josh Thornton and Kat Garbis
explore what this means for organizations managing Apple fleets.
Educators: ever wonder why certain apps are on your classroom iPads? App Catalog shows you the why behind every app, plus how other teachers use them.
We also discuss Jamf's Matter Innovation Hubs - free community learning centers operated in collaboration with Jamf in the US and internationally. These hubs focus on technology-enhanced, student-centered learning and serve educators, students, and communities through hands-on programs and the Matter Career Readiness Institute.
GUEST:
Kelly Watkins Conrad - Senior Program Engineer, Jamf Community Education (manages devices across all Matter Hub locations globally, 14 years at Jamf)
CHAPTERS
2:00 Meet Kelly Watkins Conrad: Jamf Senior Program Engineer
3:20 What Are Matter Innovation Hubs?
5:45 Matter Hub Global Locations
9:24 The Problem - Teachers Can't Find Apps They Need
16:51 Main Benefit - See Why Apps Were Chosen
18:00 Sharing Teacher Use Cases Within Districts
21:25 2026 Expansion - Stay tuned!
#JamfSchool #AppCatalog #EdTech #matterngo
If you're clicking through Jamf Pro configs manually, you're about to learn why that's becoming a problem. Security teams are starting to ban console access. MSPs are wasting hours rebuilding the same configs for each client. And organizations scaling to hundreds of Macs are drowning in manual changes with zero audit trail.
Ryan Legg, Jamf's Solutions Engineer for Infrastructure as Code, breaks down how Terraform lets you manage your entire Jamf environment through code instead of clicking. Whether you're managing 50 Macs or 5,000, here's why this matters NOW.
CHAPTERS
4:45 What is Infrastructure as Code - Explained for Non-Coders
8:15 What is Terraform and Why It Exists
11:30 How Terraform Talks to the Jamf API (Without You Writing Scripts)
14:45 Jamf Terraform Provider - 2+ Years in Development
18:20 Version Control for Configs - Git, Testing, Rollback
21:40 Why This Matters - Audit Trails, No Manual Errors, Scalability
24:30 MSP Use Case - Deploy to Multiple Clients in Minutes
27:15 Enterprise Use Case - Manage Hundreds of Configs with Code
30:10 Small Team Use Case - Document Everything as You Build
34:00 Why Every Admin Should Learn This NOW - The Future is Code
37:13 Getting Started - Resources and Documentation
39:09 Wrap-Up - Where to Get Help
What You Learn:
4:45 "Treating your Jamf config like a software project" - what that actually means
18:20 Multiple admins can submit changes through pull requests - no more stepping on each other
24:30 MSPs: Stop rebuilding configs manually - use one Terraform module across all clients
30:10 - Small teams: Codify early so the next person doesn't start from zero
34:00 - "Organizations are requiring admins OUT of consoles" - security trend you need to know
RESOURCES:
Jamf Concepts (Start Here): https://concepts.jamf.com
Trusted by Jamf (Tutorials): https://trusted.jamf.com
Jamf Developer Portal: https://developer.jamf.com
MacAdmins Slack: https://macadmins.org
WHO NEEDS TO WATCH:
Mac Admins who manually configure Jamf Pro (you're wasting time)
MSPs managing multiple Jamf instances (you're rebuilding the same thing repeatedly)
IT teams scaling past 500+ devices (manual configs won't scale)
Jamf After Dark: A podcast about managing Apple devices, hosted by Kat Garbis and Josh Thornton.
Guest: Ryan Legg, Solutions Engineer III at Jamf
#JamfAfterDark #Terraform #JamfPro
John Britton, CEO of WorkBrew, joins Jamf After Dark to discuss how organizations can solve the security, compliance, and management challenges of using the open-source package manager Homebrew on macOS at scale.
This episode is a must-listen for any IT or Security leader managing a fleet of Mac devices used by software engineers. Learn how WorkBrew provides visibility, governance, and automated security workflows for developer tools, all while integrating seamlessly with Jamf Pro.
What You'll Learn:
Featured Guest:
John Britton: Co-founder and CEO of WorkBrew, a platform for securing and managing Homebrew in the enterprise. John is a software engineer with deep expertise in developer tools and experience. He is a contributor to the open-source Homebrew project and is passionate about enhancing developer productivity while meeting enterprise security standards.
0:00:00 - Introduction: Managing Your Digital Tools
0:04:01 - What is Homebrew? The "App Store for Developers" on Mac
0:05:24 - The Challenge: Why Homebrew Creates Risk for IT & Security Teams
0:08:12 - The Solution: What is WorkBrew and How Does it Help?
0:12:19 - Core Features: Deployment, Visibility, Management & Security
0:14:45 - How WorkBrew Benefits Engineers, IT Admins, and Security Teams
0:17:35 - How WorkBrew Integrates with Jamf for Deployment & Policy Management
0:22:55 - Advanced Use Case: Managing Private & Internal Company Packages
0:25:41 - The Developer Experience: Migrating from Homebrew to WorkBrew
0:28:58 - A Major Win: Enabling Homebrew for Standard (Non-Admin) Users
0:32:33 - The Rise of Mac in the Enterprise & Employee Choice
0:36:39 - How to Get Started with WorkBrew (Including the Free Plan)
0:38:58 - Final Thoughts & Key Takeaways
Read more:
Get started with WorkBrew's free and paid plans: https://workbrew.com/
Join the Mac Admins Foundation Slack Community: https://www.macadmins.org/
Learn more about Jamf Pro: https://www.jamf.com/products/jamf-pro/
#Jamf #WorkBrew #Homebrew #MacAdmins #EndpointSecurity
From the publisher's feed
Device management is complex. Security threats are constant. Apple ecosystems are evolving fast. Who's managing these challenges? What does it actually take? And most importantly, how do you stay…

100 Listeners