{"id":46161,"date":"2020-03-10T17:58:50","date_gmt":"2020-03-10T17:58:50","guid":{"rendered":"https:\/\/www.intelligentcio.com\/me\/2020\/03\/10\/best-practices-for-securing-a-remote-workforce-in-the-age-of-digital-innovation\/"},"modified":"2020-03-10T17:58:54","modified_gmt":"2020-03-10T17:58:54","slug":"best-practices-for-securing-a-remote-workforce-in-the-age-of-digital-innovation","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/me\/2020\/03\/10\/best-practices-for-securing-a-remote-workforce-in-the-age-of-digital-innovation\/","title":{"rendered":"Best practices for securing a remote workforce in the age of digital innovation"},"content":{"rendered":"\n<p><em>Digital innovation can offer many distractions to a business leader and this plays right into a cyberattacker&#8217;s hands. Alain Penel, Regional Vice President \u2013 Middle East, Fortinet, discusses how remote working can be made safer and some of the ways to avoid creating security gaps when new technology is introduced to a network. <\/em><\/p>\n\n\n\n<p>Today\u2019s workforce is increasingly comprised of millennials and tech-savvy individuals that are accustomed to using technology in every aspect of their lives. As a result, remote employees expect a seamless user\u00a0experience across devices and locations, using personal applications and devices at work and vice versa. However, many times these employees are not considering the cyber-risks that may accompany bringing new technology into the corporate environment. The resulting security challenges have become a major pain point for\u00a0organisations.<\/p>\n\n\n\n<p>Along the way, cybercriminals are hoping that organisations will be too busy thinking about the business advantages of digital innovation to prioritise the cybersecurity components of that process. And they are watching and waiting to exploit any of the security gaps created when new technology is introduced to the network.<\/p>\n\n\n\n<p><strong>Addressing cyberthreats from all angles\u00a0\u00a0<\/strong><\/p>\n\n\n\n<p>To improve their defences, it is important for organisations to create a\u00a0security-driven networking strategy\u00a0from the ground up that automatically expands into any new networking environment, application strategy, or device deployment. Saving security matters until after the network has been developed only increases the odds of new security gaps being introduced and a resulting cyberattack. To prevent this from happening and to create a security-driven network, here are seven best practices that organisations can follow to better secure their digital innovation efforts.<\/p>\n\n\n\n<p><strong>1. Prioritising cloud security<\/strong><\/p>\n\n\n\n<p>Organisations need to remember that cloud providers only secure the underlying architecture of a cloud environment, not the data itself. An organisation&#8217;s responsibility lies in protecting the data and the applications that are moved to the cloud, along with any virtual infrastructure that they build there.\u00a0Cloud security\u00a0can be complex, so choosing a trusted vendor to help design, build and maintain consistent security across your multi-cloud environment, and tie it back into core, branch and mobility security architectures with a single console for holistic visibility and control is extremely important.<\/p>\n\n\n\n<p><strong>2. Use Zero Trust access protocols\u00a0<\/strong><\/p>\n\n\n\n<p>As many data breaches are caused by individuals gaining access to unauthorised levels of network resources and devices, Zero Trust combined with strict access control is critical. To better secure those network environments even further, security teams must also introduce two-factor authentication and implement\u00a0dynamic network segmentation\u00a0to limit who sees what while also carefully monitoring devices.<\/p>\n\n\n\n<p><strong>3. Stay up-to-date on privacy laws<\/strong><\/p>\n\n\n\n<p>Massive penalties await those who violate the EU\u2019s strict\u00a0data protection regulations\u00a0(GDPR). With new privacy laws on the books across the globe, including California\u2019s new California Consumer Privacy Act which went into effect on January 1, 2020, it can be easy to go astray. Organisations should look for security tools that will offer guidance on remaining compliant amidst digital innovation.\u00a0<\/p>\n\n\n\n<p><strong>4. Monitoring web presence<\/strong><\/p>\n\n\n\n<p>As cybercriminals continue to target vulnerable websites, security teams must take additional steps to ensure their websites and web applications are able to stand up against these threats. This includes securing SaaS apps, deploying web app firewalls and implementing\u00a0Cloud Access Security Broker\u00a0(CASB) solutions and endpoint security tools for mobile users. Organisations should also only choose solutions that are designed to function as an integrated system for seamless coverage and no security gaps.<\/p>\n\n\n\n<p><strong>5. Securing apps\u00a0<\/strong><\/p>\n\n\n\n<p>Software developers who build the apps used across organisations do not always prioritise security, especially in third-party apps that are typically installed on personal devices. For these types of apps, organisations should deploy\u00a0endpoint security\u00a0tools, while for in-house app development, be sure to leverage security tools throughout the development process, including container-based solutions designed for agile development strategies and DevOps teams.<\/p>\n\n\n\n<p><strong>6. Strengthening wireless connections<\/strong><\/p>\n\n\n\n<p>Working remotely is becoming more common, with employees going online from home, coffee shops, or on the road. While this can help productivity and efficiency, organisations must be sure that these devices are connecting from secure access points. When\u00a0using public Wi-Fi, cybercriminals can intercept data running between the end-user and the organisation &#8211;\u00a0 a risk that can be minimised by encouraging the use of VPNs and deploying wireless management solutions.<\/p>\n\n\n\n<p><strong>7. Extending security to remote locations<\/strong><\/p>\n\n\n\n<p>In addition to securing connectivity to and between remote locations, organisations must also take care to secure and manage the local branch LAN as well. With no on-site IT staff, these locations need a simple, comprehensive solution that secures a wide variety of traditional and IoT on-site devices, such as that provided by an\u00a0SD-Branch\u00a0solution.<\/p>\n\n\n\n<p><strong>Final thoughts<\/strong><\/p>\n\n\n\n<p>Digital innovation is a business-critical priority, but if cybersecurity is not rolled in from day one, organisations will leave themselves and their employees open to serious cyber-risk. Remote working needs to be made safer for employees who should be provided with the appropriate tools and devices that are part of the network perimeter. Often those who work from home or remotely ignore the basic rules applied by the company, starting with adhering to the minimum cyberhygiene rules such as updating the operating system, using an effective antivirus, strong passwords and backing up data regularly.\u00a0At the same time, companies must have structured polices in place for remote workers, that must be adhered to. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Digital innovation can offer many distractions to a business leader and this plays right into a cyberattacker&#8217;s hands. Alain Penel, Regional Vice President \u2013 Middle East, Fortinet, discusses how remote working can be made safer and some of the ways to avoid creating security gaps when new technology is introduced to a network. Today\u2019s workforce [&hellip;]<\/p>\n","protected":false},"author":21,"featured_media":46162,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[5,6,13],"tags":[1358,35],"class_list":["post-46161","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-insights","category-top-stories","tag-digital-innovation","tag-fortinet"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/46161","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/users\/21"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/comments?post=46161"}],"version-history":[{"count":0,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/posts\/46161\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media\/46162"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/media?parent=46161"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/categories?post=46161"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/me\/wp-json\/wp\/v2\/tags?post=46161"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}