Register now to learn Fabric in free live sessions led by the best Microsoft experts. From Apr 16 to May 9, in English and Spanish.
Hi,
The latest Power BI Security Whitepaper (May '17) states that the Power BI Mobile App caches data and this data is not encrypted by the application.
The response to this seems to be to use InTune (or another MDM solution) to manage devices and enforce encryption of the device. While this would work for corporate managed devices there is nothing to stop a user downloading the app and then viewing their reports on a personal device that would not be controlled or encrypted.
When reporting on senstive data this poses a big risk and is currently a blocker for us rolling out Power BI.
Is it possible to confirm if there are there any plans on the product roadmap to mitigate this risk by:
1) Having the mobile app encrypt cached data on a device
or
2) Introduce the ability to limit users from using the mobile app, either completely (on \ off switch per user), or limit to known devices?
Thanks.
Solved! Go to Solution.
Hi,
This requirements is currently not on the roadmap. Most users that need higher security measures use either Intune MDM or MAM with the app or use Conditional Access to limit access to Power BI from corporate network.
Thanks,
Gabi
Hi @AFo,
>>Having the mobile app encrypt cached data on a device
Current power bi mobile not has this feature, perhaps you can post this requirement to ideas forum.
>>Introduce the ability to limit users from using the mobile app, either completely (on \ off switch per user), or limit to known devices?
For your requirement, you can refer to below links which about phone authentication:
Get started with Azure Active Directory device registration
Microsoft IT phone authentication
Regards,
Xiaoxin Sheng
Hi there,
Can you confirm that this is still the case today?
Hi Mshenhav,
Yes in our case its going to be hard. We are a non-profit agency facing budget cuts and need to comply with Hippa/hitech. We also have 1200 employees (many of them part time) which cause anything we buy to be expensive. I know that an MDM solution would help encrypt or block, but any application per user x1200 users per month, totals a lot of money that we don't have.
Carlos
Hi,
This requirements is currently not on the roadmap. Most users that need higher security measures use either Intune MDM or MAM with the app or use Conditional Access to limit access to Power BI from corporate network.
Thanks,
Gabi
Thank you, I will look into conditional access via Azure AD.
Covering the world! 9:00-10:30 AM Sydney, 4:00-5:30 PM CET (Paris/Berlin), 7:00-8:30 PM Mexico City
Check out the April 2024 Power BI update to learn about new features.