Skip to content

Feature Roundup: iOS, macOS, and tvOS – January 2026

Ene 21, 2026 | Nareddy Saivikas Reddy

Last Updated: Ene 22, 2026

Feature Roundup: iOS, macOS, and tvOS–January 2026

Apple device environments are evolving fast—and so are the tools required to manage them. SureMDM’s new features for Apple devices bring improvements in smarter security controls, richer configuration options, and seamless enrollment and update experiences. This blog highlights the latest features for Apple devices and how these enhancements empower IT teams every day.

Latest Features Implementation
Just-In-Time-Admin-Access-for-macOS

Just-In-Time Admin Access for macOS

SureMDM now supports Just-In-Time (JIT) Admin, providing IT teams a secure way to enforce the principle of least access privilege on managed Macs. Instead of granting users the admin access manually via Jobs or scripts, which often increases the risk of misuse or compromise—admins can now leverage JIT admin for granting admin access.

Seamless Third-Party App Management for macOS

Managing third-party macOS applications is now easier than ever. SureMDM streamlines app deployment, updates, and removal without requiring IT to package or handle PKG or DMG files manually. This automated, frictionless workflow saves time and reduces the IT burden for App Management errors across large fleets.

Seamless-Third-Party-App-Management-for-macOS
Enhanced-macOS-Service-Account-for-Advanced-Device-Control

Enhanced macOS Service Account for Advanced Device Control

The SureMDM Service Account for macOS is utilized for advanced user management functions, including enabling SecureToken access for users created through SureMDM, performing password resets, migrating from other MDMs, and overriding user-enabled FileVault.

RunScript Job Shortcut in the App Store

SureMDM now allows IT teams to push on-demand scripts to devices while giving flexibility to the end users to run them as required. Once deployed, scripts appear as shortcuts inside the SureMDM App Store on the device. This flexibility is ideal for workflows like troubleshooting, configuration updates, or optional feature enablement—without requiring admin intervention.

RunScript-Job-Shortcut-in-the-App-Store
DDM-Powered-macOS-OS-Updates

DDM-Powered macOS OS Updates

SureMDM now supports OS Updates using Apple’s Declarative Device Management (DDM) for macOS, enabling devices to autonomously download and install updates based on predefined schedules and conditions. This provides more reliable, low-latency update enforcement without requiring constant MDM polling.

Account-Driven User Enrollment for BYOD Macs

SureMDM now supports macOS Account-Driven User Enrollment, bringing a secure and privacy-first approach to BYOD scenarios. Users simply sign in with a Managed Apple ID, and Apple’s service discovery automatically routes the device to the SureMDM enrollment URL defined in a hosted JSON file. Work data stays managed and secure, while personal information remains private.

Account-Driven-User-Enrollment-for-BYOD-Macs
Payload Additions

DNS Configuration for Secure Name Resolution

SureMDM now supports Apple’s DNS Configuration payload, giving IT admins the ability to define per-device or per-network DNS settings. This ensures secure, policy-driven name resolution across all managed devices

DNS-Configuration-for-Secure-Name-Resolution
Login-Items-Management

Login Items Management

With the Login Items payload, SureMDM lets admins control which apps and background processes launch automatically at user login. This ensures essential tools are always available while preventing unauthorized or distracting applications from running.

Customizable macOS Login Window

SureMDM enables full customization of the macOS Login Window enabling admins to control display style, customizing allowed users in login screen, banners, and access permissions, providing a more secure and branded login experience.

Customizable-macOS-Login-Window
Safari-Extensions-Management

Safari Extensions Management

Admins can now deploy, enforce, and manage Safari extensions across macOS and iOS using Declarative configurations via SureMDM. This ensures users always have the necessary security or productivity extensions active, reducing risk and maintaining consistent workflows.

Disk Management Controls

The Disk Management payload allows IT teams to configure mount policies for external and network storage on macOS devices via DDM. This provides tighter control over storage access and helps enforce security policies across the organization.

Disk-Management-Controls
Payload Enhancements
FileVault-Enhancement

FileVault Enhancement

SureMDM can now override User-enabled FileVault, or FileVault enabled before MDM migration, allowing admins to take control of encrypted Macs and securely retrieve the Personal Recovery Key programmatically without any manual FileVault disable/enable actions.

Platform SSO

Platform SSO integration enables seamless single sign-on across macOS devices with corporate identity providers, reducing repeated login prompts and aligning desktop access with cloud-based identity.

Platform-SSO
Extensible-SSO-Shared-Device-Mode

Extensible SSO (Shared Device Mode)

SureMDM supports Microsoft Entra Shared Device Mode on iOS & iPadOS, allowing multiple SSO configurations for shared devices. The new interface and automated setup make sign-in/out secure and simple for shift-based or frontline workers.

Job Additions
FileVault-Enhancement

FileVault Enhancement

SureMDM can now override User-enabled FileVault, or FileVault enabled before MDM migration, allowing admins to take control of encrypted Macs and securely retrieve the Personal Recovery Key programmatically without any manual FileVault disable/enable actions.

Platform SSO

Platform SSO integration enables seamless single sign-on across macOS devices with corporate identity providers, reducing repeated login prompts and aligning desktop access with cloud-based identity.

Platform-SSO
Text-Message-Job

Text Message Job

SureMDM now supports sending messages to macOS devices with a Force Read option, requiring users to acknowledge messages before proceeding.

Feature Enhancements

ADE Enhancements

SureMDM redesigned the ABM integration workflow with new capabilities, including FileVault enforcement, setup assistant controls, primary/admin account provisioning, app installation and minimum OS version enforcement during enrollment. These enhancements streamline device onboarding and improve security compliance.

ADE-Enhancements

Final Thoughts

SureMDM’s latest updates for macOS, iOS, and tvOS demonstrate its commitment to making Apple Device Management smarter, more secure, and more efficient. From Just-In-Time Admin access and enhanced SSO capabilities to streamlined OS updates and flexible enrollment options, these features empower IT teams to manage Apple devices at scale with confidence.

Managing Apple Devices Gets Smarter with
SureMDM’s Latest Features

See SureMDM in Action

Subscribe for our free newsletter

Thank you! you are successfully subscribed.
newsletter

Exclusive News and Updates on Enterprise Mobility!

* I consent to receive newsletters via email from 42Gears and its Affiliates.
Please agree
* I have reviewed and agreed to 42Gears Privacy Policy and Terms of Use prior to subscribing and understand that I may change my preference or unsubscribe at any time.
Please agree
Please verify captcha
Please enter a valid official email

UEM Trends 2025

How Frontline Workforces Transformed Enterprise Mobility

Read More

MDM for Laptops: Top Challenges of Laptop Device Management

Read More