What is our primary use case?
Jamf Pro is designed to manage Apple devices. It allows you to oversee all your macOS, iOS, iPadOS and VisionOS devices from a single console. This unified dashboard simplifies device management, making performing various administrative tasks easier. Jamf Pro provides same-day support for new macOS releases, which helps avoid potential challenges when managing devices during updates. Unlike Intune, which supports multiple platforms, Jamf Pro focuses exclusively on Apple environments, except for WatchOS.
What is most valuable?
Jamf Pro is primarily a device management solution designed to manage and configure devices. It allows you to enforce restrictions, enable or disable features, and automate various tasks. While it does offer some basic security management options, like setting custom firewall rules at the device level, it isn't a comprehensive security solution. For broader security needs, other dedicated tools would be required.
What needs improvement?
Sometimes, the server gets slow. The dashboard is only getting loaded.
Jamf Pro offers many features, but some improvements could make it even more user-friendly. For example, streamlining authentication controls would enhance its security value. Too many complex settings on the dashboard make it hard for users to navigate. Simplifying the settings would make it easier to use. Adding a more interactive and cleaner UI design would also improve the user experience.
Additionally, automatically categorizing policies and configurations by type would be helpful, making the dashboard more organized. Introducing auto-filtering based on categories would streamline configuration management.
On the security side, enabling two-factor authentication for console login would provide better protection than single sign-on. Only authorized users can access sensitive data, like the asset inventory stored in the console. 2FA would help keep the system secure, preventing unauthorized access even if login credentials are compromised.
Device management needs automation, and Jamf is likely to integrate Apple's Apple Intelligence into its framework once it's available. This integration is expected to be a significant enhancement for the Jamf console, potentially transforming the way device management is handled.
For how long have I used the solution?
I have been using Jamf Pro for a year.
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
Jamf Pro offers value for money when onboarding new devices. When a device is added to Apple Business Manager, it automatically syncs with Jamf Pro, allowing zero-touch enrollment. This means the device can be enrolled without any IT interaction. It is useful for organizations transitioning Windows users to a Mac environment, making migrating and managing these devices seamless. The scalability features are excellent, making it easy to manage many devices.
How are customer service and support?
The size of the support team for managing Jamf depends on the number of devices in the organization. A team of three to four people is usually sufficient for a smaller organization with around 400 to 600 devices. For larger organizations with 12,000 to 13,000 devices, a team of about 15 members can effectively manage the workload. Supporting many devices doesn't require an overly large team; even with five to ten people, it's manageable. Teams can be structured based on roles and responsibilities to handle different tasks.
Support can be delayed, and the response times may not always align with the urgency of your needs. Often, support teams assign issues based on their availability and time slots, which can result in slower resolution. Face-to-face or direct calls might not always be an option, which can further impact the speed and effectiveness of support.
How would you rate customer service and support?
Which solution did I use previously and why did I switch?
Jamf Pro manages all your Apple devices, and Jamf Protect is an EDR solution.
How was the initial setup?
Deployment is easy and efficient. User-initiated deployment takes around two minutes, while automated device enrollment typically takes about five minutes, depending on the size of the packages and policies being deployed. It's designed to be so simple that anyone can easily handle it.
What was our ROI?
It offers time and cost savings by automating device deployment and management. IT professionals do not need to be physically present to deploy devices; once a user connects to the internet, Jamf handles the deployment remotely. Applications and configurations are automatically installed on the user's device without manual intervention. This streamlined process leads to a high return on investment, compared to other solutions that might require more hands-on management.
Which other solutions did I evaluate?
Intune is a solid platform, but when compared to Jamf, it lacks deep integration with Apple's ecosystem. Jamf is fully aligned with Apple’s compliance standards and frameworks, making it more effective for managing Apple devices. On the other hand, Intune has limitations in some regions of Apple device management, which can hinder its capability compared to Jamf.
Aside from Intune, other solutions like Jamf Cloud and Kanji are also popular. One standout feature of Jamf is the Self-Service app. This company-owned app acts as a customized app store for users, making all relevant applications, configuration profiles, and policies available. Users cannot access the regular App Store but can download what they need directly from the Self-Service app based on their team’s requirements or role in the company.
What other advice do I have?
If you’re using Jamf Pro, managing devices and integrating with Jamf Protect becomes easier. It simplifies device management and helps ensure compliance. You can easily configure the necessary settings regardless of your compliance standards.
Jamf provides an application called Jamf Compliance Editor, which allows users to manage and implement compliance standards such as NIST, CIS Level 1 and Level 2, or Jamf's compliance benchmarks. Users can create projects based on these compliance frameworks, and the tool automatically generates the required baseline policies in a separate folder within the Jamf Compliance Editor. The workload can be updated, or the Compliance Editor can be integrated directly with the Jamf Pro console. Once integrated, it automatically imports the compliance policies into Jamf Pro, allowing users to scope them to all devices and easily check their compliance against the baseline benchmarks.
Jamf is a device management solution that requires regular maintenance. You'll need to hire staff to support users when issues arise. It also has commercial considerations, as the licensing can be quite expensive.
Overall, I rate the solution a nine-point five out of ten.
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller