This message was posted by a user wishing to remain anonymous
Any experience can share for the end point only can access via VPN without direct access to a private cloud IaaS host in the client data center. From the client perspective, how to ensure the UEM compliance for their service providers (eg. L1 Cloud monitoring Service Center; Security operation center) as those machines are not connect to the client network.
The questions for UEM of the managed service providers laptops which belongs to the managed service providers ; or the staff work from home from the client, the following control might have questions in the implementation of unmanaged devices. There will be no questions over the company provided device with network access for sure.
1) End Point inventory
2) Geo locate; remote wipe
3) Application store to control the provision of application
4) malware detection and protection
5) DLP
6) Encryption
7) Push for patches