Jamf After Dark

Jamf After Dark

Download on the App Store

Jamf After Dark episodes

  • AI-Native Workforce Security: Amplifier Security and Jamf
    AI-native workforce security is how Amplifier Security and Jamf close the gap between security policy and employee action, without slowing anyone down.
    In this episode of Jamf After Dark, hosts Kat Garbis and Josh Thornton talk with Shreyas Sadalgi (Co-Founder & CEO) and Thomas Donnelly (Co-Founder & CTO) of Amplifier Security. Their AI agent AMP works alongside Jamf Pro, Jamf Protect, and Jamf Security Cloud to engage employees directly in Slack and Microsoft Teams, resolving vulnerabilities, standardizing operating systems, and supporting Jamf AI governance, without the friction of top-down enforcement.
    Meet the Guests:
    - Shreyas Sadalgi, Co-Founder & CEO, Amplifier Security https://www.linkedin.com/in/shreyassadalgi
    - Thomas Donnelly, Co-Founder & CTO, Amplifier Security https://www.linkedin.com/in/thomasdonnelly12
    *CHAPTERS:*
    0:00 Introduction: Meet the Jamf After Dark Hosts and Guests
    3:55 What Is Amplifier Security? Solving the Workforce Security Gap
    5:46 AI-Driven Cyberattacks and the Human-Speed Security Problem
    7:15 Partnering With Employees Instead of Enforcing Security
    9:07 Meet AMP: Amplifier's AI Security Agent
    10:51 Customer Wins: OS Standardization and Vulnerability Management
    16:46 How Amplifier Stands Out From Homegrown Security Tools
    18:47 Amplifier and Jamf: Integrating APIs and AI Governance
    21:16 The Combined Value of Jamf and Amplifier Security
    23:53 Agentic AI: What's New for Amplifier This Year
    28:33 JNUC 2026 Preview and Amplifier's Free Jamf Offer
    30:36 Case Study: Securing a Distributed Shipping Company's Fleet
    35:10 Real ROI: Faster Updates and Fewer Vulnerabilities
    *What You'll Learn:*
    - Why workforce security breaks down at *human speed* while AI-driven attacks move at machine speed
    - How AMP uses Jamf Pro smart groups and device data to have real, contextual conversations with employees about fixes — instead of just sending tickets
    - Real customer results: fleet updates 70% faster, vulnerability counts dropping from hundreds of thousands to single digits, and training compliance rising from 75% to 98.5%
    Resources Mentioned:
    Amplifier Security https://www.amplifiersecurity.com
    Jamf Support https://www.jamf.com/support
    #AmplifierSecurity #Jamf #AIGovernance #EndpointSecurity #WorkforceSecurity @AmplifierSecurity
    41 min
  • JNUC 2026: What the Jamf Events Team Wants You to Know
    JNUC 2026 moved to September and runs Wednesday to Friday for the first time. The two people who organize it explain what else changed.
    Join JNUC 2026! September 23–25 Kansas City https://www.jamf.com/events/jamf-nation-user-conference/2026/overview/
    Jeff Ovik runs JNUC registration. Kelsey Dahl builds the session catalog. Hosts Kat Garbis and Josh Thornton work through the questions people send in every year.
    Before you commit: you don't have to be a Jamf customer to attend. Your pass covers breakfast, lunch and the Jamf Nation party, and the registration site has a Convince Your Boss letter you can adapt if you need approval to travel. All the conference hotels sit within a short walk of the convention center, and Kansas City was chosen partly because a large share of attendees can reach it in a three-hour drive or less.
    Once you're there: breakout sessions run 45 minutes, with 10 to 15 minutes held back for questions. Every session is tagged 100, 200 or 300 so you can judge the depth before you walk in, and most sit at 200. The Focus Tracks page groups sessions by topic and includes an Intro to Jamf track if this is your first year. The 2026 catalog covers AI governance, platform APIs and Terraform, platform single sign-on (PSSO), declarative device management (DDM), Blueprints, Self Service+, Jamf Parent and Jamf School.
    *Things are new this year:*
    - AI session summaries appear in the session catalog as soon as a session ends, so a session you had to skip isn't lost.
    - The sessions expected to draw the biggest crowds move into larger rooms, called super session rooms.
    - Brain Dates are back as well: small-group conversations on a topic you choose, booked ahead of time and held in the exhibit hall.
    *CHAPTERS:*
    0:00 Welcome: JNUC 2026 in Kansas City
    1:45 Meet Jeff Ovik and Kelsey Dahl
    3:33 What's New: Sept 23–25, Wed to Fri
    6:44 Why Attend: Community and Hallway Track
    9:16 Why Kansas City? Location and Barbecue
    11:51 Which JNUC Hotel to Book
    12:25 Do You Have to Be a Jamf Customer?
    13:49 Brain Dates Explained
    16:22 Level Up Workshops: Two Options
    18:07 Cost, ROI and Convince Your Boss
    25:00 Global Partner Summit Tracks
    26:15 Session Lineup: AI, PSSO, DDM, APIs
    27:10 New: AI Session Summaries
    28:52 Keynote, State of the Union, Super Sessions
    30:20 Session Levels 100–300 and Focus Tracks
    33:17 Jamf Nation Party at CPKC Stadium
    38:03 How to Register for JNUC 2026
    #Jnuc #Jamf #Jnuc2026 #Macadmin #Apple
    41 min
  • Mac Threat Hunting as a Service: Inside Beacon by Jamf Threat Labs
    Most security teams know Windows inside out, but not macOS. Beacon by Jamf Threat Labs hunts the Mac malware and attacker activity your team misses.
    In this episode of Jamf After Dark, hosts Kat Garbis and Josh Thornton talk with Jaron Bradley, Director of Jamf Threat Labs, about the state of the macOS threat landscape in 2026, and a new service that brings dedicated Mac threat hunting to your environment. If you run a Mac fleet and your team's expertise is mostly Windows or Linux, this one's for you.
    What You'll Learn:
    - Why macOS is now a real target: info stealers, malicious search ads, and fake app installers
    - How Jamf Threat Labs researches malware like GhostClaw and builds detections into Jamf Protect
    - What Beacon is, how telemetry feeds the hunt, and why human analysts review every alert
    - Why dedicated macOS expertise matters when Windows-first tools fall short on Mac
    CHAPTERS:
    0:00 Mac Threats and the Jamf After Dark Crew
    1:21 Meet Jaron Bradley: From Incident Response to macOS Threat Hunting
    4:15 What Is Jamf Threat Labs? Team, Research and Mission
    6:51 The State of the macOS Threat Landscape
    7:33 Why Mac Is a Growing Target: Info Stealers and Malicious Ads
    9:24 How AI Is Changing Both Attack and Defense
    11:40 Jamf Threat Labs Research: GhostClaw, Predator and the Aftermath Tool
    13:57 Jamf Protect and MI:RIAM: Real-Time Mac and Mobile Detection
    14:43 How Attackers Masquerade Malware on macOS (DPRK Tactics)
    17:21 Introducing Beacon by Jamf Threat Labs: What It Is and How It Works
    19:37 Why Beacon Exists: macOS Threat Hunting as a Service
    25:05 What to Expect as a Beacon Customer: Alerts, Detections and Reports
    28:00 Real-World Story: Catching APT Activity on a Mac Fleet
    29:25 How to Get Started with Beacon
    30:47 Wrap-Up and Credits
    🔔 Subscribe for more Apple security content from Jamf:
    Who This Video Is For:
    - Endpoint security specialists and SecOps analysts responsible for macOS compliance and detection
    - Security stakeholders and CISOs building or scaling a Mac security program
    - IT and security teams whose strength is Windows or Linux but who now manage a growing Mac fleet
    Resources Mentioned:
    - Beacon by Jamf Threat Labs: jamf.com/blog/beacon-jamf-threat-labs-mac-threat-hunting-service/
    - Jamf Threat Labs: jamf.com/threat-labs/
    - Jamf Protect: jamf.com/products/jamf-protect/
    - Jamf Threat Labs on GhostClaw/GhostLoader: jamf.com/blog/ghostclaw-ghostloader-malware-github-repositories-ai-workflows/
    Jamf After Dark is a podcast from Jamf. Reach us at [email protected] with the subject line "attention to the podcast."
    #macsecurity #endpointsecurity #applesecurity #threatdetection #siem #endpointprotection #threathunting #Jamf
    33 min
  • Travis County: Why We Moved 1,900+ Apple Devices Back to Jamf

    Travis County's Senior Systems Engineer explains why his team migrated 1,900+ Apple devices back to Jamf after trying a competing MDM, and how Jamf tools caught phishing test emails before users ever saw them.

    Billy Roberts manages endpoints for Travis County government in Austin, Texas, a hybrid environment with 6,900 Windows devices and nearly 2,000 Apple devices including iPhone, iPad, and Mac computers. In this episode of Jamf After Dark, Billy shares why they left Jamf, what went wrong with their previous MDM, and what brought them back. He also walks through how Jamf Trust quarantined phishing emails before users could even open them, and how Jamf Security Center's detailed app reports eliminated the manual research from their technology assessment program.

    🎙️ Jamf After Dark, a podcast from Jamf introducing you to the people, products, and stories behind Apple device management and security. Hosted by Kat Garbis and Josh Thornton.

    What You'll Learn:

    • Why Travis County chose Jamf over a UEM for Apple device management
    • How Jamf Pro responds to configuration changes instantly compared to hours on a competing MDM
    • How Jamf caught internal phishing test emails before users could see them
    • How Jamf Security Center's app reports cut their technology assessment timeline by a third

    🔔 Subscribe for more device management content from Jamf

    Resources:

    MDM Migration Checklist https://www.jamf.com/blog/mdm-migration-checklist/

    Jamf Pro https://www.jamf.com/products/jamf-pro/

    Jamf Protect https://www.jamf.com/products/jamf-protect/

    45 min
  • K-12 Buying Season Is Here. It's Not Just About the Device
    One K12 school was blocking roughly 1,000 phishing attacks per day, and had no idea it was happening. EDU Buying season is here, and security, classroom tools, parent controls, and teacher adoption all need answers before a single device gets ordered.
    Mat Pullen, Jamf's Product Marketing Director for Education and a former classroom teacher, joins hosts Kat Garbis and Josh Thornton for a frank conversation about what K12 schools are dealing with in 2026.
    Subscribe for more Edtech content from Jamf:
    *CHAPTERS:*
    1:51 Meet Mat Pullen: Product Marketing Director for Education at Jamf
    2:51 Jamf Nation Live EDU: What Schools Are Actually Asking About
    4:22 Top K12 Challenges in 2026: Budget, Security and Screen Time
    6:57 Why Schools Are Easy Targets for Cyber Attacks
    8:10 Student Privacy vs. Surveillance: How Jamf Balances Both
    10:03 Jamf Parent: Giving Families Control of School Devices at Home
    12:42 Technology in the Classroom Is an Education Problem, Not an IT Problem
    14:58 MacBook Neo for K12: What It Changes for Schools on a Budget
    20:05 Jamf Safe Internet: Content Filtering and Network Threat Prevention
    22:12 Limited Privacy and Time-Based Policies: New Features Explained
    25:58 Jamf for K12: One Solution for IT, Security, Teachers and Parents
    29:05 Jamf Teacher in Action
    31:46 K12 Buying Season 2026: How to Think Beyond the Device
    37:23 Here's What Most Schools Are Missing
    41 min
  • Mobile Device Attacks: Jamf Mobile Forensics with Chris Deane and Harry Jenkins

    Mobile device security is the biggest blind spot in most organizations, and most IT teams have no way to investigate when something goes wrong.

    Chris Deane, Senior Sales Engineer for Jamf Security Products, and Harry Jenkins, Senior Sales Manager for Jamf Mobile Forensics, sit down with hosts Kat Garbis and Josh Thornton to talk through what actually happens when a mobile device gets attacked.

    They cover the full picture: why MDM alone isn't security, how mobile threat defense stops most attacks but not all, and where Jamf Mobile Forensics comes in for the ones that slip through. Plus a deep dive into spyware — Pegasus (NSO Group), Predator (Intellexa), zero-click attacks, why journalists are targeted just as often as executives, and how Jamf Threat Labs builds detection rules for threats that have never been seen before.

    CHAPTERS:

    0:00 Mobile devices are the #1 security blind spot

    1:50 Meet the guests: Chris Deane and Harry Jenkins, Jamf Security

    2:56 What makes Mobile Security different from endpoint security?

    5:08 MDM, Mobile Threat Defense, and Mobile Forensics: the three layers explained

    7:18 Why Only 15% of mobile devices are properly secured

    9:49 Personal vs. Work: why the blurred lines make mobile security hard to enforce

    15:36 Incident Response: what happens when an employee says their phone was attacked?

    17:43 What Mobile Forensics actually means, and what Jamf is not looking at

    19:57 iOS vs. Android CVEs: 90-120 Apple patches vs. 600-900 Android in 12 Months

    22:43 Spyware: What Predator and Pegasus actually do to your mobile device

    25:37 Targeted malvertising and the shift from One-Click to Zero-Click Attacks

    29:07 Who gets targeted: executives, journalists, and travelers in High-Risk countries

    33:20 How Jamf Threat Labs detects unknown threats using behavioral analysis

    36:43 AI Analysis in Jamf Mobile Forensics: deeper insights without Forensic skills

    Subscribe for Apple device management and security insights

    #MobileSecurity #Spyware #EndpointSecurity #mobileforensics #cybersecurity #Jamf

    40 min
  • Platform SSO and Okta: Identity Meets Jamf Device Management on Mac

    Okta's Dan Hefley (https://www.linkedin.com/in/dan-hefley), Senior Product
    Manager for Device Access, explains how Platform SSO brings enterprise identity
    to the Mac. From day-zero Setup Assistant enrollment in macOS 26 to device
    bound SSO using secure enclave keys, Dan covers what IT teams need to know
    about deploying Platform SSO with Okta and Jamf.
    Dan shares his perspective as a former MDM admin turned identity product
    manager, discusses how device bound SSO prevents session hijacking with
    hardware-backed keys, and explains why the Shared Signals Framework between
    Okta and Jamf creates layered security. Hosts Josh Thornton and Kat Garbis
    explore what this means for organizations managing Apple fleets.

    1:44 Meet Dan Hefley - Senior Product Manager at Okta
    5:00 What Is Okta? Vendor-Neutral Identity Provider Overview
    6:23 Why Identity and Device Security Go Hand in Hand
    7:21 What Is Platform SSO? Native macOS Framework Defined
    8:07 Evolution from Jamf Connect Basic to Platform SSO
    9:15 Why Platform SSO Was
    9:47 Platform SSO in Setup Assistant
    10:08 Day-Zero Enrollment Flow - ABM to Jamf to Okta MFA
    11:43 Solving Enrollment Friction with Separated Device and User Registration
    12:18 Password Syncing Benefits
    16:40 How Device Bound SSO Prevents Session Hijacking
    17:53 Identity Threat Protection and Continuous Authentication
    18:06 Shared Signals Framework - Okta and Jamf Working Together 20:40 Okta FastPass and Passwordless Authentication on Mac
    21:20 Device Bound SSO Completes the Day-Zero Story
    22:30 Getting Started - Requirements and Deployment Considerations
    26:26 Okta's Platform SSO Roadmap and Future Direction
    27:43 Key Takeaway - Identity and Device Teams Belong in the Same Room
    RESOURCES:
    - Mac Admins Slack - Platform SSO Channel: https://macadmins.slack.com
    - IAMSE Blog - Okta Integration Guides: https://iamse.blog
    - Jamf Learning Hub: https://learn.jamf.com/
    - Jamf and Okta integrations: https://www.jamf.com/integrations/okta/
    Subscribe for Apple device management and security insights
    WHO THIS IS FOR:
    IT administrators and security teams managing Mac fleets in enterprise
    environments. Relevant if you're evaluating Platform SSO with Okta, migrating
    from Jamf Connect Basic, or planning identity integration for zero-touch Mac
    deployment.
    #Okta #Jamf #macossecurity #AppleSecurity #DeviceBoundSSO #macOS
    #IdentityManagement #PlatformSSO #ZeroTouchDeployment #JamfAfterDark
    #EnterpriseSecurity #MacAdmin #TrustedAccess #podcast
    31 min
  • Let's talk App Catalog - Free iPad App Discovery Tool for Educators

    Educators: ever wonder why certain apps are on your classroom iPads? App Catalog shows you the why behind every app, plus how other teachers use them.

    We also discuss Jamf's Matter Innovation Hubs - free community learning centers operated in collaboration with Jamf in the US and internationally. These hubs focus on technology-enhanced, student-centered learning and serve educators, students, and communities through hands-on programs and the Matter Career Readiness Institute.

    GUEST:
    Kelly Watkins Conrad - Senior Program Engineer, Jamf Community Education (manages devices across all Matter Hub locations globally, 14 years at Jamf)


    CHAPTERS

    2:00 Meet Kelly Watkins Conrad: Jamf Senior Program Engineer
    3:20 What Are Matter Innovation Hubs?
    5:45 Matter Hub Global Locations
    9:24 The Problem - Teachers Can't Find Apps They Need
    16:51 Main Benefit - See Why Apps Were Chosen
    18:00 Sharing Teacher Use Cases Within Districts
    21:25 2026 Expansion - Stay tuned!


    #JamfSchool #AppCatalog #EdTech #matterngo 

    25 min
  • I Have No Idea What Terraform Is - Infrastructure as Code for Mac Admins

    If you're clicking through Jamf Pro configs manually, you're about to learn why that's becoming a problem. Security teams are starting to ban console access. MSPs are wasting hours rebuilding the same configs for each client. And organizations scaling to hundreds of Macs are drowning in manual changes with zero audit trail.

    Ryan Legg, Jamf's Solutions Engineer for Infrastructure as Code, breaks down how Terraform lets you manage your entire Jamf environment through code instead of clicking. Whether you're managing 50 Macs or 5,000, here's why this matters NOW.

    CHAPTERS

    4:45 What is Infrastructure as Code - Explained for Non-Coders

    8:15 What is Terraform and Why It Exists

    11:30 How Terraform Talks to the Jamf API (Without You Writing Scripts)

    14:45 Jamf Terraform Provider - 2+ Years in Development

    18:20 Version Control for Configs - Git, Testing, Rollback

    21:40 Why This Matters - Audit Trails, No Manual Errors, Scalability

    24:30 MSP Use Case - Deploy to Multiple Clients in Minutes

    27:15 Enterprise Use Case - Manage Hundreds of Configs with Code

    30:10 Small Team Use Case - Document Everything as You Build

    34:00 Why Every Admin Should Learn This NOW - The Future is Code

    37:13 Getting Started - Resources and Documentation

    39:09 Wrap-Up - Where to Get Help

    What You Learn:

    4:45 "Treating your Jamf config like a software project" - what that actually means

    18:20 Multiple admins can submit changes through pull requests - no more stepping on each other

    24:30 MSPs: Stop rebuilding configs manually - use one Terraform module across all clients

    30:10 - Small teams: Codify early so the next person doesn't start from zero

    34:00 - "Organizations are requiring admins OUT of consoles" - security trend you need to know

     

    RESOURCES:

    Jamf Concepts (Start Here): https://concepts.jamf.com

    Trusted by Jamf (Tutorials): https://trusted.jamf.com 

    Jamf Developer Portal: https://developer.jamf.com

    MacAdmins Slack: https://macadmins.org

     

    WHO NEEDS TO WATCH:

    Mac Admins who manually configure Jamf Pro (you're wasting time)

    MSPs managing multiple Jamf instances (you're rebuilding the same thing repeatedly)

    IT teams scaling past 500+ devices (manual configs won't scale)

     

    Jamf After Dark: A podcast about managing Apple devices, hosted by Kat Garbis and Josh Thornton.

    Guest: Ryan Legg, Solutions Engineer III at Jamf

    #JamfAfterDark #Terraform #JamfPro

    42 min
  • How WorkBrew Solves Homebrew Security & Compliance for Mac Developers

    John Britton, CEO of WorkBrew, joins Jamf After Dark to discuss how organizations can solve the security, compliance, and management challenges of using the open-source package manager Homebrew on macOS at scale.

    This episode is a must-listen for any IT or Security leader managing a fleet of Mac devices used by software engineers. Learn how WorkBrew provides visibility, governance, and automated security workflows for developer tools, all while integrating seamlessly with Jamf Pro.

    What You'll Learn:

    • The security and compliance risks of unmanaged Homebrew in the enterprise.
    • How WorkBrew provides visibility, remote management, and security for Homebrew.
    • The seamless integration between Jamf Pro and WorkBrew for deployment and device group management.
    • How to enable developers to use Homebrew as standard (non-admin) users on macOS.
    • Strategies for distributing and managing private, internal company tools via Homebrew taps.
    • The end-user experience for a developer when a company adopts WorkBrew.

    Featured Guest:


    John Britton: Co-founder and CEO of WorkBrew, a platform for securing and managing Homebrew in the enterprise. John is a software engineer with deep expertise in developer tools and experience. He is a contributor to the open-source Homebrew project and is passionate about enhancing developer productivity while meeting enterprise security standards.

    0:00:00 - Introduction: Managing Your Digital Tools
    0:04:01 - What is Homebrew? The "App Store for Developers" on Mac
    0:05:24 - The Challenge: Why Homebrew Creates Risk for IT & Security Teams
    0:08:12 - The Solution: What is WorkBrew and How Does it Help?
    0:12:19 - Core Features: Deployment, Visibility, Management & Security
    0:14:45 - How WorkBrew Benefits Engineers, IT Admins, and Security Teams
    0:17:35 - How WorkBrew Integrates with Jamf for Deployment & Policy Management
    0:22:55 - Advanced Use Case: Managing Private & Internal Company Packages
    0:25:41 - The Developer Experience: Migrating from Homebrew to WorkBrew
    0:28:58 - A Major Win: Enabling Homebrew for Standard (Non-Admin) Users
    0:32:33 - The Rise of Mac in the Enterprise & Employee Choice
    0:36:39 - How to Get Started with WorkBrew (Including the Free Plan)
    0:38:58 - Final Thoughts & Key Takeaways

    Read more:
    Get started with WorkBrew's free and paid plans: https://workbrew.com/
    Join the Mac Admins Foundation Slack Community: https://www.macadmins.org/
    Learn more about Jamf Pro: https://www.jamf.com/products/jamf-pro/

    #Jamf #WorkBrew #Homebrew #MacAdmins #EndpointSecurity

    42 min

About Jamf After Dark

From the publisher's feed

Device management is complex. Security threats are constant. Apple ecosystems are evolving fast. Who's managing these challenges? What does it actually take? And most importantly, how do you stay…

More shows like Jamf After Dark

Mac Admins Podcast by Mac Admins Podcast LLC

Mac Admins Podcast

100 Listeners