Skip to main content
CISSP-ISSAP · 20+ Years · #10 OnCon Icon, 2022
Back to Case Studies
HealthcareSecurity Architecture

Intune MAM for 5,000+ Devices During the Landmark and Optum Integration

Designed, implemented, tested, and rolled out Microsoft Intune mobile application management for 5,000+ Landmark devices during the Optum Health integration, so corporate apps could be used without opening unmanaged BYOD risk.

Optum Health / Landmark HealthNamed client
6 months
Optum integration

The Challenge

Landmark Health was integrating with Optum and needed a single mobile application management standard before clinicians and staff could use corporate apps on a mixed device fleet.

  • 1Optum integration required a consistent MAM standard across Landmark's mobile fleet
  • 25,000+ devices, including BYOD, needed corporate app access
  • 3Unmanaged devices could not be given a free path into corporate applications
  • 4Design, implementation, testing, and production rollout had to finish inside a 6-month engagement
  • 5A stalled mobile program would have blocked Landmark's integration work with Optum

Our Approach

Owned the Intune MAM program end to end: policy design, implementation, test, and production rollout, so Landmark could meet Optum's integration bar without treating every phone as a managed corporate endpoint.

1

MAM Policy Design

Defined a single Intune app protection policy set for Landmark: which corporate apps were in scope, how data could move, and what an unmanaged or BYOD device was allowed to do.

2

Implementation

Built the Intune MAM service Landmark would run: app protection policies, enrollment and access rules, and the operational path to put those controls on the existing fleet.

3

Testing

Validated that corporate apps stayed usable while data protection held on both managed and BYOD devices before any production wave.

4

Production Rollout

Took the tested policy set to production across 5,000+ devices, completing design through rollout inside the 6-month engagement.

The Results

Landmark reached a single Intune MAM standard in 6 months. 5,000+ devices could use corporate apps without opening unmanaged BYOD risk, and the mobile work no longer sat in the way of the Optum integration.

5,000+
Devices Under Intune MAM
6 Months
Design to Production
One Policy Set
Landmark MAM Standard
Unblocked
Optum Integration Work

I wish we could have kept Adil longer. He led Landmark's mobile application management rollout on Microsoft Intune through design, implementation, testing, and production as we integrated with Optum. I would recommend him without concern.

John Skinner - Optum Health

Ready to Achieve Similar Results?

Thirty minutes is enough to see if the same approach fits your next audit, raise, or AI rollout.

See if I should be in the room