Beth Tschida - CEO of Jamf

Jamf Launches Native AI Governance Controls For Mac Fleets In Australia And New Zealand

Surprisingly Useful AI Article Enhancements

Coverage Powered By High Performance Laptops

Apple device management vendor, Jamf, has made its AI Governance capability generally available across Australia and New Zealand, giving enterprise IT and security teams a way to discover, control and audit AI tools running across managed Mac fleets.

The capability, built into Jamf’s existing Mac management platform, is designed to address a gap many organisations face: AI tools are being adopted faster than policies can keep up, and existing network- and cloud-based monitoring cannot fully see or govern AI applications that run natively on Apple Silicon.

Jamf claims to be the first vendor to deliver native, OS-level AI governance controls for Mac.

Shadow AI on the Mac

The core problem Jamf is targeting is visibility. Many organisations cannot confidently audit which AI tools are running across their device fleets, whether those tools have been sanctioned by IT or adopted by employees without approval.

AI Governance provides reporting on which AI applications are in use and how they behave on the endpoint. Because AI tools increasingly run as local processes on Apple Silicon rather than through a browser or cloud service, network proxies and cloud-based security tools have limited ability to monitor them.

The capability uses Jamf’s existing telemetry agent, built on native macOS frameworks, to surface AI tools, agents and large language model runtimes across the fleet. That includes command-line developer tools and background agents that would not show up in conventional application inventories. No additional agent is required.

What it covers at launch

At launch, AI Governance supports Anthropic’s Claude Code and Claude Desktop as well as OpenAI Codex, providing governance coverage across model access, tenancy, network permissions, file system controls and MCP (Model Context Protocol) server restrictions alongside other vendor-specific AI configurations.

A vendor control tracking engine continuously monitors supported AI platforms for new or updated controls, helping organisations keep governance policies current as tools evolve.

All policies are enforced offline and before a user’s first login to an AI agent, establishing what Jamf describes as a day-zero, tamper-resistant policy baseline.

IT teams can define which tools are sanctioned, deploy access policies at scale and scope different security postures to different teams or departments. Vendor-correct configurations can be applied automatically.

For reporting, the capability produces what Jamf calls an executive AI posture report for CIOs and CISOs, summarising AI usage at a given point in time. It offers SIEM compatibility and is designed to help companies report against existing compliance frameworks.

CEO frames the governance gap

CEO at Jamf, Beth Tschida (main image), framed the capability as a response to the speed at which AI adoption is outpacing governance.

“AI adoption across the enterprise is moving faster than existing technology policies can keep up,” Tschida explained. “Organisations need governance that matches the way AI tools actually operate on Mac. This means visibility into what’s running, policy controls enforced directly on the endpoint and reporting that helps security teams demonstrate compliance.”

“Our AI Governance capability delivers that natively from the same platform customers already trust to manage and secure Apple devices,” she added.

Eventbrite among early adopters

Ticketing platform, Eventbrite, is among the organisations that have adopted the capability.

Security Engineering and SOC Manager at Eventbrite, Sam Lalli, pointed to the speed of deployment and the absence of additional tooling as key factors.

“Like many organisations, we want to enable teams to use AI tools productively while maintaining appropriate governance and oversight,” Lalli noted.

“What impressed us about Jamf’s AI Governance was how quickly we could apply policy across our Mac fleet without adding another point solution or creating friction for developers. Having this critical capability built into the same device management platform we already use really simplifies AI governance for our team,” Lalli continued.

Beyond its own controls, Jamf has built an integration with Okta that connects device-level AI governance to identity and access management.

IT and security teams can use Jamf to discover AI tools running across macOS devices and register those agents directly with Okta for AI Agents. Each agent receives a managed identity and scoped access limited to authorised resources.

Under this model, Jamf controls which MCP servers can run on the device, while Okta controls what cloud resources those servers can reach. Agents use short-lived, vaulted credentials rather than long-lived static keys, and every action is authorised and logged from the endpoint to the cloud.

The Okta integration deploys directly from Jamf’s console without manual API setup or certificate management.

SVP and General Manager of AI Security at Okta, Harish Peri, described the integration as bridging two layers of AI security.

“While some enterprise AI agents run locally, they access data across a vast cloud ecosystem, requiring coordinated security between the endpoint and identity layers,” Peri observed.

“By anchoring Okta for AI Agents to Jamf’s endpoint enforcement, every agentic connection on a managed Mac is authenticated, authorised and fully visible from the device to the data. Together, we’re helping organisations become secure agentic enterprises by giving them more control over what AI agents can access and on whose behalf,” Peri added.

Amazon Bedrock AgentCore also supported

Organisations can also configure their preferred agent builder platform, such as Amazon Bedrock AgentCore, to ensure AI traffic is routed through and processed on sanctioned cloud infrastructure.

The combination of Jamf’s endpoint enforcement and Okta’s identity controls is intended to give organisations a full audit trail: which agents ran on which endpoints, what they were authorised to reach and what they did along the path from a macOS device to a SaaS application.

Research suggests governance is becoming urgent

Jamf’s own AI Governance Survey found that organisations with deeply integrated AI are 40 per cent more likely to report a security incident than those still in the exploration phase, suggesting AI governance is shifting from a planning exercise to an operational requirement.

Industry analyst firm, Gartner, has estimated that spending on AI governance is expected to reach $492 million in 2026 and surpass $1 billion by 2030 as organisations reassess the tools and strategies needed to manage regulatory and operational risk.

In its Top Cybersecurity Trends for 2026 report, Gartner also noted that cybersecurity leaders need to identify both sanctioned and unsanctioned AI agents, enforce controls for each and develop incident response playbooks to address potential risks.

Availability

Jamf’s AI Governance capability is available now within Jamf for Mac, with support for Claude Code, Claude Desktop and OpenAI Codex at launch. Further information is available at jamf.com/solutions/ai-governance.

Jamf is used by more than 78,000 organisations across 100 countries to manage and secure more than 35 million devices.

Last Updated on August 20, 2026 by Nick Ross

Surprisingly Useful AI Article Enhancements

Sign-up to the SMBtech Daily Newsletter

We will not spam you. You can easily unsubscribe any time. Read our privacy policy.