---
# source: src/content/solutions/en/omnissa/workspace-one/workspace-one-uem.md
# route:  /en/solutions/omnissa/workspace-one/workspace-one-uem/
title: Workspace ONE UEM
tags: [modern-workplace, endpoint-security]
vendors: [omnissa]
summary: Device management and access for laptops, phones and tablets. A device is managed because it reaches data, not because the company bought it.
photoNeed: "A Horizon or Workspace ONE session in use: a virtual desktop on a real screen, or a thin client on a real desk"
stub: false
draft: false
kind: product
addon: false
vendorName: Omnissa Workspace ONE UEM
status: current
practice: >
  Draft, not yet reviewed. The technical half of a UEM project is rarely the problem. The hard half is what may be enforced on someone's personal phone, and no console answers that. We settle it with HR and data protection before the first policy exists.
practiceReview: true
---

## What it is

Workspace ONE manages endpoints across their whole life: enrolment, configuration,
software, policy and wipe. Windows, macOS, iOS and Android run through one console.

There is an access side to it as well. Whether a device may reach an application depends
on the state of that device, not only on the password of the person holding it.

## What it is for

Estates where devices leave the building. A laptop in the field and a phone with company
mail on it are the same problem: data on hardware that is not on the company network.

For desk-bound machines already running under group policy, the benefit is smaller and the
change is not.

## What changed

Workspace ONE has belonged to Omnissa since the end-user computing business was spun out
of VMware. If your paperwork still says VMware, find out where you stand.
