Bittium Tough Mobile™ 2 C - Dual Boot, Public Side: Google Services, Secure Side: Bittium OS, DEC Enterprise App Library & Yubikey, Certified for CONFIDENTIAL level (NCSA-FI, TL III)
Bittium Tough Mobile™ 2 C smartphone with DEC Secure™ device management and encryption software, provides the highest level of privacy and security for government agencies, authorities and professionals. Separately purchased DEC Secure Suite scales up from 10 to thousands, requiring installation of a client software and back-end server.

Smartphone’s unique hardware security solutions and multilayered security structure is based on the hardened Android™ 10 operating system and is reinforced with the dual-boot functionality, running two completely separate and hardened operating systems on a single platform: Confidential and Personal. Both operating systems also support Multicontainer feature, enabling the use of several secure, isolated work spaces within one operating system.

DEC Secure Suite enables remote management of devices and applications of the device fleet, protects sensitive data at rest on the smartphone, as well as encrypted IP-based data transfer.

Security Without Compromising Usability.
Keep Your Data Safe at All Times!

Security settings and other parameters of Bittium Tough Mobile 2 C operating systems can be configured with DEC Secure Suite to Restricted, Confidential and beyond. This makes it possible to meet the individual security needs of different organizations, further enhancing the smartphone usability.
-
Next generation tamper detection for preventing data theft and spying
-
Hardware-based privacy mode for disabling microphones, cameras, Bluetooth, and reducing sensor sensitivity
-
Trusted boot with hardware and software integrity validation
-
Two separated operating systems (dual-OS)
-
Designed to be certified for CONFIDENTIAL level
-
Device and data in transit secured with DEC Secure Suite™ device management and encryption software product
-
Data secured at all times with multilayered security integrated in hardware and software
This smartphone based solution is certified for CONFIDENTIAL level (NCSA-FI, TL III), and designed to be certified to CONFIDENTIAL level by national security authorities.


Bittium Dual Boot & Yubikey Secure Access
Dual-boot functionality provides two completely separate operating systems with full data separation within one device.
Personal use with hardened Android™ 10, where e.g. social media applications are freely available
Confidential use with hardened Bittium Secure OS, allowing demanding authority and use cases
User can quickly switch between the two operating systems with dual-boot functionality.
Excellent usability and quick two-factor authentication with NFC token* and admin configurable authentication interval.
*Yubikey 5 NFC by Yubico included in the sales package.
Android is a trademark of Google LLC

Security Highlights:
Bittium Secure Operating System
- Dual boot; full data and secure element separation
- Secure data folder for classified documents and other data files. Data available when screen lock is open.
- Excellent usability and quick two-factor authentication with NFC token and admin configurable authentication interval, available in Secure and Personal modes
- Hardened, configurable and restricted cellular network security (call, SMS/MMS, IMS, VoLTE, aGPS, SIM application toolkit
- Hardened Linux kernel
- Secured local connectivity (Bluetooth/WiFi/NFC/USB
- Automatic system cleanup of secure data
- Device can be configured to be used only in Bittium Secure OS Confidential mode, using full device storage capacity
- Always on VPN
- Secure shutdown after lost network connectivity based on configurable time
Advanced Security Features
- Hardened Android™ 10 (or newer) operating system
- Hardened DEC Secure operating system
- All data in the device is encrypted with AES-256 encryption (including the memory card, when used in adoptable storage mode)
- Dedicated secure element (chipset) for storing security keys and providing functionality for encryption and user authentication
- Backup battery allowing monitoring of the device security and tamper detection at all times, even when the main battery has ran out
- Hardware-based Privacy Mode preventing ambient listening and spying of user/user environment
- Hardware tamper detection preventing data theft and device implanting attempts
- Secure boot, device HW and SW integrity check during boot
- Disabled debug interfaces preventing attacks against device security
- Device OS rollback prevention – not possible to use older device firmware for attacking the device
- Die shield sensor in secure element to protect from physical intrusion and electromagnetic signal sniffing
- Environmental attack protection in secure element preventing e.g. cryo/cold attacks and power glitch attacks
- Application permission control – users can allow only trusted applications to access
- User originated fast wipe of device data
DEC Secure Suite™
- Configuration of security parameters and other settings
- Audit logs for security related events
- Remote wipe of device
- Remote attestation
- Application whitelisting support
- DEC Secure Management MDM support
- DEC Secure VPN Mobile VPN to encrypt data in transit
- Hardened password policy
- Both operating systems support Multicontainer feature
- Notifications between Secure and Personal modes
Free Delivery Free Delivery over $50
Secure Payment Encrypted Secure Checkout
Discreet Discreet Billing & Shipping
Returns Easy Return Policy
*Bittium nor DEC Secure collects or stores any identifying personal data on any servers. 100% true anonymity and privacy. No Identification is needed upon sign up. Location tracking disabled.
DEC Secure is a bundled package that enables Customers to secure their mobile hardware, software, data, and communications. The bundle consists of five (5) main elements:
1. DEC Secure Zone: Dedicated, protected container to isolate communications application, data, and network traffic;
2. DEC Secure Call: End-to-End Encrypted, private, closed loop communications;
3. DEC Secure VPN: Always-On, dedicated and encrypted IP Sec connection to DEC Servers;
4. DEC Secure Management: Remote management of the device;
5. DEC Global Network: Connected globally via the Discrete Community Network or a Private Node gateways in a user selected Data Centre;
DEC Secure Suite Subscription:
- Monthly Plan / Private Node / $149
- 6 Month Plan / Private Node / $894
- 12 Month Plan / Private Node / $1788
DEC Care Support, Maintenance & Extended Warranties:
- 1 Year DEC Care / Included
- 3 Year Extended DEC Care / $1348
- Bittium Tough Mobile 2C
- Yubikey 5 NFC
- Charger
- User Manual
- Bittium Desktop Stand Charger
- Bittium Vehicle Holder Charger
- Bittium Protective Case
- Bittium Vehicle Holder with Charger and Ext-Antenna
- Bittium Wired Remote Speaker Microphone EU
- Bittium Lite COM Wired PTT Headset, Hold to Talk
- Bittium Rugged Power Pack USB-C/USB-A
- Bittium PTT Voice Responder
- Bittium PTT Smart Button
- Bittium Wall Charger with USB Cable
- Bittium Charger with UK, EU and US Adapter
Two Operating Systems
- Hardened Bittium Secure OS for CONFIDENTIAL level use
- Hardened Android™ 10 (or newer) for Personal use
- Both operating systems support Multicontainer feature
- Qualcomm® Snapdragon™ 670
- 4GB RAM / 64GB eMMC. MicroSD expansion slot up to 256GB
- 5.2” Full HD sunlight readable
- Glove & wet usable capacitive touchscreen
- 12MP autofocus rear-facing and 5MP front-facing cameras
- 4K and Full HD video
- High-quality front-facing dual speakers (109dB@5cm SPL)
- Multi-microphone active noise cancellation
- Privacy mode activation
- Emergency button (programmable, use as emergency button requires a separate application providing the functionality)
- PTT/PTV (programmable, use as PTT/PTV button requires a separate application providing the functionality)
- Power/wake-up
- Volume up and down
- 3GPP Rel12
- Dual SIM dual VOLTE (DSDV)
- IMS, VoLTE, CA
- FDD bands: 1, 2, 3, 4, 5, 7, 8, 12, 13, 14, 17, 20, 25, 26, 28, 29, 30, 66
- TDD bands: 38, 39, 40 (34, 41 optional)
- B1, B2, B4, B5, B8
- 850/900/1800/1900 MHz
- Wi-Fi 802.11 a/b/g/n/ac (2.4 and 5Ghz) BT5.0, NFC *U-NII-3 Wi-Fi channels are not supported