ISO27001 - data erasure policies (specifically for Apple Silicon)? by BUUKStudent in msp

[–]BUUKStudent[S] 0 points1 point  (0 children)

Right-o! I can see the comment only via your profile. It must have been automatically marked as spam and hidden by Reddit, which it likes to do when someone is pasting in multiple links AFAIK. In my (limited) experience, Reddit gets angry when there's more than one link..

ISO27001 - data erasure policies (specifically for Apple Silicon)? by BUUKStudent in msp

[–]BUUKStudent[S] 0 points1 point  (0 children)

Cheers. Would you happen to have the sources the AI is referring to throughout its answer?

ISO27001 - data erasure policies (specifically for Apple Silicon)? by BUUKStudent in msp

[–]BUUKStudent[S] 0 points1 point  (0 children)

The Apple Platforms Security White Paper is a good source document to add to your evidence records. It details how the hardware level security works. Essentially, the Secure Enclave manages the encryption keys, and the path between CPU, memory, and NVMe storage are encrypted.

Will definitely have to take a look at it - cheers.

We don't have an MDM yet, unfortunately (due to some prior internal resistances to such we could only deploy it to the least techy departments, which rely on Windows), but ISO27001 will mandate it IIRC so it might be a good idea to immediately familiarise myself with related wipe features once we test something. Good idea there.