Sectors

The same platform, different architectures depending on risk

Blindium works for defence and police, where requirements are at their most demanding, and applies the same rigour to intelligence services and critical infrastructure. Four sectors, one platform, no public cloud.

Team setting up a satellite communications antenna
Intelligence

Intelligence and national security

Mobility for intelligence services, information units and bodies handling classified information: strict compartmentalisation, devices that leave no trace with vendors and absolute control over what enters and leaves the organisation.

Challenges

  • Classified information compartmentalised by unit and mission
  • No management data or metadata in the hands of a third party
  • Devices that may be captured or analysed
  • System accreditation and application of CCN-STIC guides

Use cases

  • Isolated network with Private Push: management without public push services
  • Encrypted container with DualDAR for classified material
  • Separate profiles by unit, cover and classification level
  • Emergency wipe and certificate revocation within seconds
  • Double-tunnel VPN communications into classified networks

How the solution fits

  • On-prem EMM in your own enclave, with no Internet connection
  • No telemetry or support services outside the perimeter
  • Full traceability of every administrative action
  • Evidence for the accreditation process: NIAP CC, STIG, FIPS, ENS and CCN-STIC
Critical infrastructure

Utilities and critical infrastructure

Secure field force for energy, water, transport and industry: technicians, operations staff and distributed teams with access to OT systems.

Challenges

  • Mobile access to segmented OT networks
  • Rugged devices in hostile environments
  • Operational continuity during incidents
  • NIS2 regulation and protection plans

Use cases

  • Meter reading and field maintenance with remote support
  • SCADA access through per-app VPN
  • Control centres with an isolated network
  • Contractors with temporary access

How the solution fits

  • Per-app VPN to each OT segment
  • Rugged Android under locked-down policies
  • Remote support and kiosk mode
  • Hybrid or on-prem scenarios depending on risk
Cover frame of the Samsung SDS EMM video
The platform on video

Samsung SDS EMM in three minutes, told by the manufacturer

Official Samsung SDS video on its on-premise EMM solution for the highest level of security: architecture, Knox and operation on closed networks.

Video · YouTube · Samsung SDS Global

Watch the video on YouTube

Opens on YouTube in a new tab. This website loads no third-party content and embeds no players.

Silhouetted personnel during a night operation
Continuous operation

No coverage, and control still stays inside your network

Devices operate on the last policy received and synchronise when the link returns. No external service decides when a unit can work.

See the defence proposal

Implementation model

Four phases in any sector

  1. Assessment and architecture

    Current situation, constraints, deployment model and reference architecture.

  2. Pilot with real cases

    Representative group, policies, applications and integrations validated in limited production.

  3. Progressive roll-out

    Waves by unit or division, administrator training and stabilisation support.

  4. Alignment with security and compliance

    Control map, evidence and procedures for audit or accreditation.

Next step

Free MDM/EMM continuity assessment (45 minutes)

A technical session with a specialist to review your situation and return an actionable recommendation. No obligation.

  • Current architecture and number of devices
  • Data criticality and network constraints
  • Integration with Samsung Knox and mixed fleets
  • Transition options and deployment model (on-prem, private cloud or hybrid)

The assessment is a preliminary guidance session and does not constitute an audit, certification, accreditation, expert report or guarantee of compliance. Its conclusions depend on the information provided and must be technically validated within the scope of each project.