CIO Today

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
Daily Briefing for Technology's Top Decision-Makers
Sunday, April 20th 
24/7/365 Network Uptime!
Trending Topics:   Security Heartbleed Big Data Cloud Computing Windows XP Data Centers OS X Mavericks
Home
Enterprise Software
Enterprise Hardware
Big Data
Network Security
Cloud Computing
CRM Systems
Data Storage
Operating Systems
Communications
CIO Issues
Mobile Tech
Chips & Processors
World Wide Web
Business Briefing
After Hours
Press Releases
 
Free Newsletters
Top CIO News
 
Mobile Tech Today
 

Communications

BYOD Trend Opens Companies to Security Breaches

BYOD Trend Opens Companies to Security Breaches
September 4, 2012 6:23AM

Bookmark and Share
The simple security measure of remote resetting or wiping a mobile device is notably absent on mobile workers' devices. Only 55 percent of mobile workers told iPass they had remote wipe enabled on their smartphones and only 30 percent activated this security feature on their tablets. The BYOD trend brings enterprise security isues with it.

Your Next Generation Data Center Is Here! Vblock™ Systems: the world's most advanced converged infrastructure are built on the Cisco Unified Computing System with Intel® Xeon® processors. Vblock™ Systems deliver extraordinary time to market, ROI and TCO, and flexibility to meet your continually changing demands with 5X faster deployment, 96% less downtime, and 1/2 the cost. Click here to learn more.

"Bring your own device" is all the rage in the enterprise today, but could companies that tap the mobile trend be compromising security? They may indeed be, according to the latest quarterly iPass Mobile Workforce Report.

It's not difficult to see why companies would shift to BYOD. According to the iPass report, 18 percent of mobile workers say they now pay for their smartphone service plan. That's up 6 percent from a year ago.

But in many cases, iPass reports, corporate security measures haven't kept pace with BYOD changes. For example, only 74 percent of mobile workers said their company required security features on their mobile devices.

Why Are Employees Skirting Security?

By the same token, the simple security measure of remote resetting or wiping a mobile device is notably absent, or at least not activated, on mobile workers' devices. Only 55 percent of mobile workers told iPass they had remote wipe enabled on their smartphones and only 30 percent activated this security feature on their tablets.

But just why are mobile workers skirting IT security requirements on their mobile phones? In two words: flexibility and efficiency. According to iPass, mobile employees' desires to work flexibly and efficiently compel some of them to bypass their IT departments -- and those workers who ignore IT directives said they do so because of slow response times and overly strict policies.

This corporate IT rule-skirting sometimes extends to accessing corporate data via workarounds. The iPass report reveals that one out of four mobile workers is using workarounds on their smartphones and 12 percent on their tablets. iPass predicts that number will rise as the BYOD trend spreads and IT departments' control over devices features further recedes.

Finally, mobile workers have implemented passcode locks more than other security measures, according to iPass. Three out of four workers in the survey said they use passcodes on their smartphones and more than 40 percent use them on their tablets.

The Cost to Companies

Rob Enderle, principal analyst at the Enderle Group, told us employees who sidestep IT are creating significant exposure for their companies. He knows of one case where employees were fired as a result of breaches.

"Employees are taking risks and there are repercussions if data gets compromised," Enderle said. "That's why there's a fairly massive drive to find and recommend systems that are more secure or to use technologies like desktop virtualization to secure the data at the back end."

Enderle also suggested the number of employees who skirt IT security on their mobile devices may be even higher than the survey suggests. That's because many times employees won't answer honestly for fear of getting into trouble.

"The problem is very pronounced and it's creating a tremendous amount of concern but there's little IT until there's a major breach," Enderle said. "If there is a massive breach and a lot of people are fired at once the problem tends to be self-correcting. But whatever companies get hit with a particular breach, clearly their costs are going to be extreme."

Tell Us What You Think
Comment:

Name:

Maureen Robinson:

Posted: 2012-09-13 @ 7:01am PT
This article does a great job of summarizing the aspects regarding BYOD. In addition, we would remind what John Stewart of Cisco said about BYOD. In a closed-door session at the ISSA CISO Forum, he presented BYOD as a culture that is starting to become unmanageable from a security perspective. He mentioned a few issues, including securing mobile apps, security flaws in the embedded architecture of devices and the security implications in how providers are protecting endpoints and networks. For further reading, we invite you check our blog: http://blog.securityinnovation.com/blog/2012/02/bring-your-own-deviceand-cross-your-fingers.html

oscarfullwood:

Posted: 2012-09-11 @ 7:09pm PT
BYOD and security is a big problem, we had it even worse when doctors started texting patient info, which opened us up to HIPAA fines and lawsuits. We solved that BYOD issue by using Tigertext. We are starting to embrace BYOD, but more because we are a hospital and the doctors are demanding that they can use their smartphones and iPads to send patient info quickly by text message.

The problem is that HIPAA laws in the USA mean that sending patient info by text to a phone can really open up the doctor and hospital up to legal action.

We can't afford some large corporate BYOD system, so we chose to use Tigertext to at least allow doctors to use their BYOD for texting. Tigertext is HIPAA complaint since it is a closed and secure network and the messages are deleted from the phone/iPad after a set time, and there for meets HIPAA compliance. A cost effective and easy implement app based solution which is now working for us.

Yes, a large expensive BYOD IT system would be nice, but I think as BYOD becomes more and more prevalent, solutions to all or part of the problem are going to be needed for smaller companies to be able to securely deal with the issue.

http://byod.us/bring-your-own-device-importance-of-defining-business-objectives/

http://www.hhs.gov/ocr/privacy/hipaa/administrative/securityrule/index.html

http://www.tigertext.com



 Communications
1. Online Access for the Deaf and Blind
2. FireChat Ignites New Way To Talk
3. EU Panel Approves Net Neutrality Rules
4. Avaya Ends Network Waiting Game
5. Zuckerberg Plan To Spread Net: Drones




 Most Popular Articles
1. BlackBerry Drops T-Mobile After Nasty Spat
2. Cisco, IBM Launch Internet of Things Consortium
3. Salesforce CRM Gets Industry Specific for Internet of Customers
4. Intel Bets on Cloudera for Big Data Analytics
5. SAP HANA Data Warehouse App Gets Faster Analytics

Have an informed opinion on this story?
Send a Letter to the Editor.
We want to know what you think.
Send us your Feedback.

 Related Topics  Latest News & Special Reports

  Galaxy S5 Phone: Less Can Be More
  Heartbleed Exploit Could Cost Millions
  Poll: A Mix of Feelings on Future Tech
  Google, Rockstar Suit Stays in Calif.
  Michaels: Nearly 3M Cards Breached

 Technology Marketplace
Business Intelligence
Get real-time, cloud-based information services with Neustar.
 
Cloud Computing
Next Generation Data Center Is Here! Vblock™ Systems from VCE
 
Contact Centers
HP delivers the future of the contact center with HP Qfiniti 10.
 
Data Storage
Next Generation Data Center Is Here! Vblock™ Systems from VCE
Barium Ferrite (BaFe) is the future of tape.
2.5" Enterprise-class SATA & SAS SSDs for server & storage applications
 
Enterprise Hardware
Barium Ferrite (BaFe) is the future of tape.
2.5" Enterprise-class SATA & SAS SSDs for server & storage applications
 
Hardware
Protect your network with APC Smart-UPS battery backup
 
Network Security
Protect your network with APC Smart-UPS battery backup
 

Network Security Spotlight
Heartbleed Could Cost Millions, Could Have Been Prevented
Early estimates of Heartbleed’s cost to enterprises are running in the millions. The reason: revoking all the SSL certificates the bug exposed will come at a very hefty price. Some say it all could have been avoided.
 
Michaels Says Nearly 3M Credit, Debit Cards Breached
Arts and crafts retail giant Michaels Stores has confirmed that a data breach at its POS terminals from May 2013 to Jan. 2014 may have exposed nearly 3 million customer credit and debit cards.
 
Google's Street View Software Unravels CAPTCHAs
The latest software Google uses for its Street View cars to read street numbers in images for Google Maps works so well that it also solves CAPTCHAs, those puzzles designed to defeat bots.
 

Enterprise Hardware Spotlight
Vaio Fit 11A Battery Danger Forces Recall by Sony
Using a Sony Vaio Fit 11A laptop? It's time to send it back to Sony. In fact, Sony is encouraging people to stop using the laptop after several reports of its Panasonic battery overheating.
 
Continued Drop in Global PC Shipments Slows
Worldwide shipments of PCs fell during the first three months of the year, but the global slump in PC demand may be easing, with a considerable slowdown from last year's drops.
 
Google Glass Finds a Home in Medical Education, Practice
The innovative headpiece may find its niche in markets where hands-free access to data can be a big advantage. Glass experiments for doctors are already under way, with some promising results.
 

Mobile Technology Spotlight
Review: Siri-Like Cortana Fills Windows Phone Gap
With the new Cortana virtual assistant, Windows catches up with Apple's iOS and Google's Android in a major way, taking some of the best parts of Apple's and Google's virtual assistants, with new tools too.
 
With Galaxy S5, Samsung Proves Less Can Be More
Samsung has produced the most formidable rival yet to the iPhone 5s: the Galaxy S5. The device is the fifth edition of the company's successful line of Galaxy S smartphones, and shows less can be more.
 
Facebook Rolls Out Potentially Intrusive Location-Sharing
Looking for friends? Facebook users in the U.S. will soon be able to see which of their friends are nearby, using a smartphone's GPS. Could be a cool feature in some cases, or way too much information.
 

Navigation
CIO Today
Home/Top News | Enterprise Software | Enterprise Hardware | Big Data | Network Security | Cloud Computing | CRM Systems
Data Storage | Operating Systems | Communications | CIO Issues | Mobile Tech | Chips & Processors | World Wide Web
Business Briefing | After Hours | Press Releases
Also visit these Enterprise Technology Sites
Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

Services:
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 CIO Today. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.