{"id":53756,"date":"2021-09-16T17:16:14","date_gmt":"2021-09-16T21:16:14","guid":{"rendered":"https:\/\/jumpcloud.com\/?post_type=resource&p=53756"},"modified":"2024-08-15T13:35:52","modified_gmt":"2024-08-15T17:35:52","slug":"how-an-organization-securely-manages-remote-users-and-endpoints-with-jumpcloud","status":"publish","type":"resource","link":"https:\/\/jumpcloud.com\/resources\/how-an-organization-securely-manages-remote-users-and-endpoints-with-jumpcloud","title":{"rendered":"How an Organization Securely Manages Remote Users and Endpoints with JumpCloud"},"content":{"rendered":"\n
Cellulant<\/a> uses technology to connect people and their resources, making it easier to do business across Africa. They are committed to creating prosperity and opportunity for the whole continent. They make commerce more streamlined and more reliable to ensure your hard work never goes to waste.<\/p>\n\n\n Before JumpCloud\u00ae<\/sup>, Cellulant used Active Directory (AD), but as time went on, AD was unable to keep up with the organization\u2019s changing needs. \u201cWe had Microsoft Active Directory, but it was limiting,\u201d said Michael Adesoba, former Cybersecurity Engineer at Cellulant. Because of these limitations, Adesoba began looking for alternatives, which is how he found JumpCloud. <\/p>\n\n\n\n After coming across JumpCloud, Adesoba said, \u201cI tried it out and it made sense.\u201d AD is primarily limited to on-prem infrastructure and Windows-based resources, whereas JumpCloud is cloud-based, flexible across operating systems, and includes a wide variety of features not found in AD.<\/p>\n\n\n\n \u201cOne of the main reasons I pushed for JumpCloud at the time was because it gave the information security team the flexibility to manage endpoints and users. So, the team could remotely sort out any end-user problem and\/or any identity and access problem, as long as we had internet access which we could not do with Active Directory at that time. Active Directory was a pain to be honest.\u201d<\/p>\n Michael Adesoba, Former Cybersecurity Engineer, Cellulant <\/cite><\/blockquote>\n\n\n\n Cellulant had a heterogeneous IT environment that needed to be managed more centrally, and Active Directory couldn\u2019t handle that very well. When discussing Cellulant\u2019s current environment and how JumpCloud fits into it, Adesoba stated, \u201cOn the user side of things, we have a mix of Windows and Mac. For Mac, we’re able to do things like full disc encryption, [and] we’re able to do logging because we’re able to see logs from all of those endpoints.\u201d This is a direct result of implementing JumpCloud over Active Directory.<\/p>\n\n\n\n Initially, Cellulant used a colocation facility to house its servers, storage, applications, and more, and that facility provided internet access for the organization. \u201cThe servers there are virtualized and mostly Linux,\u201d said Adesoba. \u201cAll our servers were mainly doing stuff around financial services. We were vending airtime, doing bank transfers, utility payments as well.\u201d<\/p>\n\n\n\n Cellulant needed a better cloud-based solution to manage users, endpoints, and data, which is what led them to JumpCloud. They initially used Active Directory which simply wasn\u2019t cutting it anymore \u2014 they needed more capabilities and flexibility within their chosen directory platform.<\/p>\n\n\n\n The primary challenges that Cellulant faced were:<\/p>\n\n\n\n With traditional Active Directory in place initially, Cellulant was having trouble managing all of its endpoints and remote users. They had a cross-OS IT environment and servers housed in a colocation facility, so their processes were not nearly as effective or efficient as they were after implementing JumpCloud.<\/p>\n\n\n\n In terms of JumpCloud making life more convenient at Cellulant, Adesoba said, \u201cConvenience for myself was a top priority then, because that goes a long way for me to benchmark what needs to be done.\u201d Active Directory was an inconvenient solution for the organization as a whole, but JumpCloud now provides them with one central pane of glass to view and manage their IT environment through, which is exactly what was needed. Efficiently managing remote endpoints and users saves massive amounts of time and money if you look at it from a bottom line perspective.<\/p>\n\n\n\n Onboarding and offboarding was another pain point that needed to be addressed at Cellulant. They needed a solution that streamlined these processes, provided automation capabilities, and connected to a wide variety of other tools, either on-prem or in the cloud. These needs also brought them to JumpCloud, because the modern, cloud-based platform makes onboarding and offboarding simple, efficient, and secure. <\/p>\n\n\n\n When discussing management buy-in for implementing JumpCloud, Adesoba told us how he convinced them that JumpCloud was a solution that they needed. \u201cI had to simply come up with proof. This is in the cloud, [and] it\u2019s easy to roll out. I showed samples of one or two rollouts, which means I just grabbed the JumpCloud setup, put it on a machine, installed it there, and boom, it came up on the console, and I showed them. Then I applied policies to it, then attached a user to it and removed the user, and did all of those processes [through a few] clicks. And from there they were sold.\u201d<\/p>\n\n\n\n After getting management buy-in, Adesoba said, \u201cI did the initial rollout for staff, at that time we were about 50 users in Nigeria. It was pretty much doing everything I wanted \u2014 password management, identity and access management, enforcement, and it helped me with PCI DSS compliance and ISO 27001.\u201d<\/p>\n\n\n\n As a JumpCloud user, we asked Adesoba what he would tell people that are on the fence about implementing JumpCloud. His response was, \u201cConvenience is one [thing]. People have the opportunity to tune JumpCloud to whatever they want. JumpCloud will do what all of the other competitors will do, and more. As much as they can imagine, they can do it on JumpCloud. They can extend it, which means they can connect it with many other applications that they have, maybe internal or not.\u201d<\/p>\n\n\n\n Regarding user lifecycle management, Adesoba mentioned, \u201cWe had G Suite for email management, and I tied G Suite into JumpCloud. So, onboarding is mostly seamless. So once staff come on board… it’s just a breeze. I provision their email, it connects to their computers, it connects to their JumpCloud access and all of their privileges, everything goes straight like that, then with multi-factor authentication on top of that.\u201d<\/p>\n\n\n\n JumpCloud simplifies onboarding and offboarding by allowing Cellulant to tie everything back to JumpCloud identities, thus automating privileges, access levels, and account creation through federation. When asked about offboarding, Adesoba stated that it works as smoothly as onboarding \u2014 he said, \u201cI get a notification from HR that staff X is leaving, then I go through that same offboarding process.\u201d<\/p>\n\n\n\n<\/figure><\/div>\n\n\n
\n
\n
Background<\/h2>\n\n\n\n
Challenge: Breaking Past the Limits of AD<\/h2>\n\n\n\n
\n
Solution: A Cloud-Based Directory Platform<\/h2>\n\n\n\n
Onboarding and Offboarding Seamlessly<\/h2>\n\n\n\n
Compliance Improvements<\/h2>\n\n\n\n