Hacker News new | ask | show | jobs
by quicklime 1135 days ago
A lot of enterprises need to comply with regulations and security standards (e.g. PCI-DSS or SOC2) which often require them to implement systems and processes over their "control environment". They need to demonstrate that they can do things like enforce password requirements, or disable your device/account remotely (via MDM) if needed. It's not enough that you use their VPN.