Knowledge hub

Shared Mobile Program

A shared mobile program is an IT-managed initiative that enables multiple users to securely use mobile devices and access the applications and data they need while supporting governance, compliance, and operational efficiency. Shared mobile device programs are increasingly used in healthcare, education, retail, and field service industries, where mobile devices are essential but not individually assigned. The program enables devices to be dynamically assigned to multiple authorized users through workflows such as quick authentication, device check-in/check-out, and rapid user switching, reducing the need for 1:1 device provisioning. This can reduce the number of devices required, lower device costs, and improve workforce flexibility.

A shared mobile program for enterprise environments can integrate multiple technologies and policies tailored to an organization’s devices, applications, workflows, and security requirements. Device provisioning establishes the applications, configurations, and security policies available on shared devices, while user profiles can help tailor access and settings to individual users or roles. Mobile security management and mobile content management can provide additional controls for protecting devices, applications, and organizational information. Depending on the technologies deployed, these controls can include features such as:

  • App blacklisting: Identifies applications that are prohibited by organizational policy, helping prevent users from accessing or using unapproved or potentially risky apps on managed devices
  • App whitelisting: Defines which applications are approved for use, allowing organizations to restrict managed devices or environments to authorized apps
  • App blocking: Prevents access to specified applications based on organizational security, compliance, or acceptable-use policies
  • Content blocking: Restricts access to specified websites, files, content categories, or other digital resources that an organization considers inappropriate, unsafe, or unauthorized
  • Data isolation: Separates organizational or user-specific data from other data and applications to help prevent unauthorized access or exposure, particularly when devices are shared among multiple users
  • Data retention: Defines how long organizational or user data is stored and when it should be archived or deleted according to business, security, compliance, and legal requirements
  • Automated sign-out: Automatically ends a user’s authenticated session based on predefined conditions, helping prevent subsequent users of a shared device from accessing the previous user’s applications or data
  • Selective data wipe: Removes specified data, applications, accounts, or configurations from a managed device without erasing all other information stored on the device

When appropriate to the deployment, these capabilities can help organizations establish boundaries between users and protect sensitive information as devices move through shared workflows.

Shared mobility programs can also encompass the connectivity, communication, and productivity capabilities employees need while working from shared devices. Depending on device capabilities and organizational policies, these functions may include secure file transfer, access to calendars and reminders, and mobile data connection and tethering for connectivity outside traditional Wi-Fi networks. Organizations may also use a shared data plan to manage a pool of cellular data across eligible devices. Fast swap support can minimize delays as devices move between users, while access to communication and productivity applications can support real-time collaboration.

Identity and access management and mobile device management (MDM) are particularly important for secure, scalable shared-device deployments. Shared devices can be configured with approved applications and security policies while identity and access controls help ensure that each user receives appropriate access after authentication. MDM systems commonly complement these capabilities by enforcing device configurations, application policies, operating system requirements, and other organizational controls across the device fleet. As devices transition between users, automated sign-out and session management controls can help prevent credentials, application sessions, and user-specific information from remaining accessible.

Protecting user-specific data and application sessions is a key consideration in secure shared mobility environments. Effective shared-device workflows should also account for the entire device-use cycle, including what happens when a user checks out, uses, and returns a device. Authentication, application access, session termination, and device check-in/check-out processes should work together so that devices can move efficiently between authorized users without carrying over access from a previous session. These controls help protect organizational data while reducing the administrative burden associated with repeatedly preparing shared devices for new users.

Maintaining a shared device fleet also requires routine physical device maintenance, including battery checks, damage inspections, operating system and application updates, and peripheral maintenance. Organizations should establish clear policies for device check-in and check-out, acceptable use, charging, storage, maintenance, and reporting lost or damaged devices. When shared devices are also used for voice, messaging, video, and other collaboration tools, a unified communications plan can help organizations coordinate how these communication services are made available across devices and workflows. Centralized device management and well-defined workflows can help IT teams standardize these processes, maintain visibility into device status and assignment, and reduce manual administrative work. This combination of technology and governance helps keep shared devices available for authorized users while improving operational efficiency and accountability.

The success of a shared mobile program lies in aligning technology rollouts with organizational goals. Devices must be easy to access, secure by design, and adaptable to different workflows, while IT teams need sufficient visibility into how shared devices are assigned and used. Imprivata Mobile Device Access (MDA) supports Android sharing with a Device Console and Dashboard that give administrators a centralized view of their MDA fleet, improving device fleet management and shared device accountability. Greater visibility into device assignments and usage can help organizations investigate misplaced or unreturned devices, determine who was assigned a device and when, and maintain a clearer record of device activity. IT teams can also manage administrative access, configure authentication to the MDA Console, and integrate MDA with mobile device management systems to simplify administration and support shared-device programs at scale. Together, these capabilities help organizations securely expand access to mobile technology while maintaining operational control and a streamlined user experience.

You are currently browsing

Product availability varies by region. Would you like to choose a different region?

No thank you, I'd like to continue