# What is Unified Endpoint Management (UEM)?

> Unified endpoint management (UEM) is an industry category for administering endpoint types through a management plane and policy model.

- Canonical URL: https://yellowcube.eu/glossary/unified-endpoint-management/
- Publisher: Yellow Cube
- Language: en
- Contact: hello@yellowcube.eu

## Content

Scope commonly includes smartphones, tablets, laptops, and desktops across operating systems, and may extend to connected devices. Typical functions include enrollment, inventory, configuration, applications, credentials, updates, compliance reporting, and remote actions.

UEM evolved from mobile and enterprise mobility management, but it has no universal feature threshold. “Unified” should mean operationally consistent governance and evidence across supported endpoints, not identical controls on platforms with different management interfaces.

### Key points

- **Define coverage:** Identify required device types, operating systems, ownership models, management modes, locations, applications, and lifecycle stages; verify actual support for each combination rather than relying on a platform list.
- **Coordinate policy:** Establish common outcomes for identity, configuration, encryption, updates, applications, data handling, access, and retirement while allowing platform-specific implementations and justified exceptions.
- **Operate the service safely:** Protect administrators and integrations, monitor enrollment and policy health, handle offline devices and failed commands, test high-impact changes, and retain evidence for response and oversight.
- **Important limitation:** A single console does not create complete coverage or equivalent assurance. Unsupported versions, partial enrollment, stale inventory, platform restrictions, conflicting tools, management-plane compromise, and unsafe automated actions can leave gaps or cause disruption.

### Related terms

[Mobile device management (MDM)](<https://yellowcube.eu/glossary/mobile-device-management/>) · [Endpoint security](<https://yellowcube.eu/glossary/endpoint-security/>) · [Device control](<https://yellowcube.eu/glossary/device-control/>) · [Identity and access management (IAM)](<https://yellowcube.eu/glossary/identity-and-access-management/>) · [Zero trust network access (ZTNA)](<https://yellowcube.eu/glossary/zero-trust-network-access/>)

### Sources

[NIST SP 800-215, Guide to a Secure Enterprise Network Landscape](https://csrc.nist.gov/pubs/sp/800/215/final) · [NIST SP 800-124 Rev. 2, Guidelines for Managing the Security of Mobile Devices in the Enterprise](https://csrc.nist.gov/pubs/sp/800/124/r2/final) · [UK NCSC, Mobile Device Management](https://www.ncsc.gov.uk/collection/device-security-guidance/getting-ready/mobile-device-management)

## Attribution and scope

This Markdown representation is generated from the same approved content records as the canonical HTML page. Cite the canonical URL above when referencing this material. Product and service descriptions are informational; confirm project-specific requirements with Yellow Cube.

