Showing posts with label secuity. Show all posts
Showing posts with label secuity. Show all posts

Thursday, 5 December 2013

More than half of public Wi-Fi open to abuse

A recent survey by Purple Wi-Fi has found that more than half of public Wi-Fi networks are open to abuse from criminals. By law, premises providing public Wi-Fi should be able to track back to the user. However, the survey suggests that more than six in ten venues across the globe are not meeting this basic requirement.

With Wi-Fi now available in nearly every high street store, café and public venue, without the correct security in place the free access can be a hive for criminal activity. Some locations were even found not to have URL filters on their Internet meaning users could access any form of content without restriction.

So how do you monitor and rectify this situation? Education is one way, when people opt into offering their customers free Wi-Fi, how much do they really know about the accompanying laws and regulations that should accompany it?

The choice of installer and products that they use should also be considered. At APC Solutions we work with top manufactures such as Ruckus and BlueSocket to name but a few, installing Wi-Fi for our clients, globally. When liaising with the client we always ensure their IT department is up to speed with the current regulations. Particularly when we work within the public sector, security at universities, schools and public buildings is paramount and therefore the network we install or public Wi-Fi must be secure and must allow user traceability.

However, for smaller businesses which are looking to install Wi-Fi independently there must be stricter enforcement of common practice in place.  And this, we believe, is down to the manufactures. Products should not be brought to market without the capabilities to track back to the user and protect against unfavourable content. Small businesses simply can’t afford an IT team to manage this for them but they do need to be able to offer their customers Wi-Fi and this Wi-Fi should be protected and ‘ready to go’.

The survey suggests that of 3,359 venues worldwide 2,048 were running completely open networks and handed out passwords which meant the Wi-Fi could be used for criminal activity and would be untraceable back to the individual user. At APC when installing Wi-Fi for public use the user has to connect to the Wi-Fi and then fill out an online form to connect, therefore enabling the client to track back to each individual user through their login credentials. Not only does this provide the client with traceable data, but also data which it can use for its marketing purposes if the consumer doesn’t chose to opt out.  

So, if you’re planning on joining the Wi-Fi revolution or indeed already have, ensure your network is protected with the relevant filters and ensure you can track back to an individual user.




Wednesday, 12 June 2013

BYOD security debate rumbles on

A report issued recently by analyst firm Garter confirms worldwide security software revenues reached $19.2bn in 2012 compared to $17.7bn in 2011. As the BYOD debate rumbles on, are firms prepared to increase their security outlay to ensure employees own devices are safe?

The rise of employees using their own tablets, phones and laptops has meant companies need to consider their company security. Should a device be left on the train home or local coffee house, without the necessary security encryption, a company’s security could be breached and once it is breached, the BYOD debate really kicks off.

So can a company really afford to allow its employees to bring their devices to work? Of course, but only if strict security guidelines are followed and of course, regularly updated. There is no point rolling out a security programme, ensuing your employee has the relevant software on all their devices to find that the contract lapsed a month ago? Companies need to ensure their IT departments are constantly on top of their security and of course, ensure employees are willing to work with them to ensure the safety of company files and information.

Is it easier to not allow employees to bring their own devices into the work place? Of course, but is it practical? No. With the latest versions being released yearly if not more frequently, companies cannot keep abreast of the latest versions and why would an employee use an old version when their own device is quicker, more reliable and easier to use?

So, it looks like the security firms revenue is set to increase further over the next few years. But, could the technology firms cash in on the BYOD revolution? By working with companies to offer their own range of security protection if the device is used at work, could companies bridge the gap between employees own and company owned devices. As the customer purchased their device, if their company was registered with the retailer could the security be added to the device in store to the company’s desired spec? For instance, if the company approaches a retailer, ensures its employees purchase their own devices from said supplier at a discount and have it work ready? Could this ensure that employees can still have the freedom of their own device and allow them to upgrade in their own time but at a discount and protected by the employer? It would certainly make it easier to manage.


However, until that happens, it is left with employees to be honest of their own device usage and for companies to be vigilant of their security software updates. Of course, as long as employees cannot access the company network without specific log in details this will allow the company to keep on top of this. But security is and always will be paramount to BYOD being integrated into best working practice.