Datasheet (PDF)

Jamf Installation Documentation

Installing the Sensor manually, device by device, does not scale and is not supported for production. This guide walks IT and security teams through deploying the macOS Sensor with any MDM, including a full Jamf walkthrough, so every Mac stays configured and protected from day one.

Get the datasheet
Instant access · No wait
Any MDM Platform
Deploy the Sensor with Jamf or your existing MDM solution.
Token Lifecycle
See how install tokens authenticate and refresh automatically.
Locked-In Protection
Set the Sensor as a login item so users can't disable it.
Trusted by enterprise security teams

What's inside

01

Prerequisites and MDM Setup

  • Download the macOS sensor installer and the MDM configuration profile from the Cyberhaven Console before you start.

  • Check whether your Cyberhaven version predates 23.02, which may require additional configuration profiles.

  • Understand why manual, per-device installs are not supported for production environments.

02

How Install Tokens Work

  • See how the Sensor reads the install token from the MDM profile to request an AccessToken via the 'authorize' API.

  • Learn why install tokens expire every six months and why refreshing your MDM profile every four months prevents disruptions.

  • Understand how the AccessToken is stored in the Keychain-backed SecureStore and refreshed daily.

03

Step-by-Step Jamf Deployment

  • Upload the ready-made Cyberhaven profile to create the privacy preferences policy control in Jamf.

  • Configure Application & Custom Settings and verify the uploaded package before scoping.

  • Scope the profile and policy to computers and users, then deploy the Cyberhaven package.