What are the essential features of Trend Micro Mobile Security?
Central management – Android and iOS devices managed from on-premises web console.
Malware scanning – Detects malicious, modified and privacy-leaking apps on devices.
Device control – Enforces passwords, feature locks and compliance checks per group.
Lost-device response – Locates, locks or wipes lost phones remotely.
Exchange control – Blocks or wipes ActiveSync devices accessing corporate mail.
Important note – No cloud console; needs your own Windows server.
Management Server – On-premises web console for policies, groups, updates and reports.
Communication Server – Local server or Trend-hosted cloud relay connects devices to console.
Mobile Device Agent – Android and iOS app that executes policies and security scans.
Exchange Connector – Lists ActiveSync devices and allows blocking or wiping them.
Security scanning – Checks apps, certificates, iOS profiles, Wi-Fi and root status.
Important – No cloud console or EDR; server runs on your own Windows host.
Trend Micro Mobile Security for Enterprise (TMMS), now part of the TrendAI enterprise portfolio, combines mobile device management with malware and risk scanning for Android and iOS. It is managed from a self-hosted web console and can alternatively run in Security Scan mode next to an existing MDM such as AirWatch or MobileIron.
MDM plus threat scanning – Replaces separate device management and mobile antivirus tools with one server.
Works beside existing MDM – Security Scan mode adds threat detection to AirWatch or MobileIron.
Zero-touch iOS enrollment – Apple DEP enrolls company iPhones bought from Apple during first setup.
Selective corporate wipe – Removes corporate mail or MDM profiles without a full factory reset.
Active Directory import – Imports users and groups and limits admins to their groups.
Scheduled reporting – Generates on-demand or scheduled reports and emails them to administrators.
Trend Micro Mobile Security suits organizations that keep device management in-house and already operate Windows servers and Microsoft SQL Server. A company without IT staff will find the setup demanding, because managing iPhones requires an Apple push certificate and a public SSL certificate in addition to the server itself. Medium-sized and larger organizations benefit most, especially those already running Trend Micro Control Manager or Apex Central, where mobile policies and the mobile dashboard appear alongside endpoint management.
| Requirement | Small business | Medium-sized company | Large company |
|---|---|---|---|
| Reporting obligation Switzerland | By sector | By sector | By sector |
| NIS 2 in the European Union | Mostly exempt | By sector | By sector |
| Security questionnaire from large customers | Occasional | Common | Common |
| Own server for mobile management | Often impractical | Feasible | Standard |
| This product fits | ✕ | Until 2028 | Until 2028 |
Since 1 April 2025, the revised Information Security Act has required operators of critical infrastructure in Switzerland, such as energy suppliers, hospitals, transport companies and public authorities, to report cyberattacks to the Federal Office for Cybersecurity (BACS) within 24 hours of discovery. Most private companies outside these sectors are not directly obliged, although critical-infrastructure customers may pass security requirements on to their suppliers. Trend Micro Mobile Security supports the detection side on phones and tablets: agent logs on the server record malware, policy violations, device vulnerabilities and network threats, and administrator notifications can alert the responsible team. It does not prepare or submit the report to BACS, it does not analyze how an attacker moved beyond the device, and it does not cover Windows or Mac computers, so the incident process and wider detection must come from other tools and procedures. This information does not constitute legal advice; have your specific obligations checked by a qualified specialist.
No product makes an organization compliant with the NIS 2 Directive, because the directive requires risk-management measures that are organizational as well as technical. Its measure categories include risk analysis and security policies, incident handling, business continuity, supply-chain security, access control and asset management, cryptography, basic cyber hygiene and multi-factor authentication. For mobile devices, Trend Micro Mobile Security maps to several of them: the inventory of enrolled devices and installed apps supports asset management, password and feature-lock policies support cyber hygiene, and the compliance check shows which devices are unencrypted. Remote lock and wipe support incident handling when a device is lost or stolen. Gaps remain for multi-factor authentication, business continuity, supply-chain assessment, staff training and incident reporting to authorities, and the product protects only Android and iOS devices.
Yes, for the mobile section of a questionnaire, but only that section. The product provides evidence for questions on mobile device inventory, enforced screen-lock passwords, detection of rooted or jailbroken devices, device encryption status, malware scanning on phones and the ability to lock or wipe lost devices. It provides no answers on Windows or Mac endpoint protection, email filtering, backup, multi-factor authentication, patch management for computers or detection and response, and it does not generate a ready-made questionnaire response. Because the manufacturer lists this version with end of sale in December 2026, questions about vendor-supported software beyond 2028 need a documented migration plan. The most direct route is TrendAI Vision One Mobile Security, which keeps mobile protection with the same vendor instead of adding a second supplier to your own supply chain.
The manufacturer's lifecycle table lists Mobile Security for Enterprise 9.8 with end of sale and renewal in December 2026 and end of life in December 2028, naming TrendAI Vision One Mobile Security as the migration path. Coverage is limited to Android and iOS/iPadOS; Windows, macOS and Linux devices need a separate product. Several Android controls, including feature locks and Wi-Fi provisioning, are documented only for Android 5 to 9, so current Android fleets receive fewer device restrictions than iOS fleets. The Management Server runs on your own Windows machine with Microsoft SQL Server, and iOS management additionally requires an Apple push certificate and a public SSL certificate. No region-restricted features appear in the manufacturer documentation, and the English version is listed as available in all regions.
Yes. The manufacturer documents that the deployment mode can be switched from Full Version to Security Scan at any time. Security Scan mode is intended for companies that keep AirWatch or MobileIron for device management and only want the threat scanning, and it offers QR-code enrollment for faster agent rollout.
No. You can install a Local Communication Server or connect the Management Server to the Cloud Communication Server that Trend Micro operates. The cloud option removes one installation but supports only enrollment-key authentication, while the local server also supports Active Directory authentication.
Control Manager administrators can create, edit and deliver mobile security policies and view the Mobile Security dashboard from their central console. Policies created there are synchronized every 24 hours, and since version 9.8 SP5 the mobile app reputation pattern can also be updated from Apex Central.
The web console is reachable over HTTPS, and recent critical patches for 9.8 SP5 closed an authentication bypass, a remote code execution flaw and several cross-site scripting issues. Running an unpatched Management Server therefore exposes the system that controls every enrolled device, so patching belongs in the rollout plan from day one.
Manages and secures Android and iOS devices from a self-hosted console and scans apps for malware. Suits firms running their own Windows servers.
Trend Micro Mobile Security, Trend Micro Mobile Security for Enterprise, TMMS, Trend Micro, TrendAI, mobile device management, mobile threat protection, android and ios security, remote wipe, exchange activesync control
By continuing to browse our site you agree to our use of cookies, revised Privacy Policy and Terms of Service.
More information about cookies