Skip to content
arrow_back
search
ISM-0863 policy ASD Information Security Manual (ISM)

Prevent Installation of Unapproved Mobile Apps

Mobile devices block users from installing apps that are not approved by the organisation.

record_voice_over

Plain language

This control makes sure that once a mobile device is set up for work, no one can install apps that the organisation hasn't approved. This is important because apps that aren't checked and approved could have security risks, like stealing data or crashing the device, which could lead to losing important business information or disrupting operations.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Nov 2023

Control Stack last updated

19 Mar 2026

E8 maturity levels

N/A

Official control statement

Mobile devices prevent personnel from installing non-approved applications once provisioned.
policy ASD Information Security Manual (ISM) ISM-0863
priority_high

Why it matters

Unapproved apps on corporate mobiles can lead to data theft or disruptions, harming business continuity and exposing sensitive information.

settings

Operational notes

Use MDM to block non-approved apps after provisioning; alert on install attempts and review the approved app list regularly.

Mapping detail

Mapping

Direction

Controls