Tactical Advice

Managing Mobile Encryption

Use these five tips to get the most from a mobile encryption strategy.
This story appears in the September 2010 issue of BizTech Magazine.

The walls are moving outward faster than ever. In the past 10 years, many employees have gone from working in an office to working outside the office to carrying their entire office in a shoulder bag or on a belt holster.

What this means to IT departments is that technology managers face the unenviable task of securing more devices than ever. If your organization is moving to encrypt its mobile data, consider the following tips to help you get the most out of an encryption strategy.

Tip 1. Deploy comprehensive, managed security software that works on multiple platforms.

If your IT department supports more than a handful of users, you already know that using centrally managed software is a necessity. Encryption is no exception. Several big-name developers offer centrally managed encryption packages and malware protection for desktop and notebook systems, as well as mobile devices, removable storage and attached network shares.

Keep it simple by consolidating as much as possible. It will be easier on both your users and support staff, and one-stop solutions also come with an implied assurance of compatibility between components.

Tip 2. Take advantage of the Trusted Platform Module.

Most desktops and notebooks feature Trusted Platform Module technology. A TPM chip can encrypt and bind a user’s hard drive to his or her system so that it will no longer work without a valid password or security token.

TPM can also provide hardware-level authentication to other common security tokens, such as virtual private network challenge phrases, Microsoft Windows passwords and even Wi-Fi network keys. Because it’s hardware-based, TPM authentication is intrinsically more secure — the credentials reside within the chipset and never enter the software layer.

Tip 3. Understand the strengths and weaknesses of full-disk versus file-level encryption.

Considering the number of mobile devices that fall victim to theft and loss each year, you want to employ the strongest available encryption technology. When locking down data on hard drives in mobile devices, you essentially have two encryption options: full-disk, which automatically encrypts everything on the hard drive, and file, which lets users handpick what to encrypt.

Although its on-demand nature makes file-level encryption faster, full-disk encryption means you don’t have to fret about a mobile user losing a file or a clever hacker lifting information from temporary files.

Tip 4. Enable content protection on BlackBerrys.

One easy way to encrypt sensitive BlackBerry user data is to enable the content protection option. This can be accomplished either through menus on the smartphone itself or through a policy setting on the BlackBerry Enterprise Server.

Once enabled, a user’s phone will automatically encrypt any data it deems sensitive, such as e-mail, web-browsing history and contacts. It will prevent access to this information any time the device is locked. This safeguards data from being recovered physically through the phone itself.

Tip 5. Don’t let removable storage slip through the cracks.

Remember that sensitive data isn’t always confined to local drives on users’ machines. If your group policies allow users to connect external drives, make sure to encrypt those drives as well. Consider purchasing a centrally managed solution that can port to removable media such as external hard drives and thumb drives. Another cost-effective method: Buy drives with built-in encryption and, ideally, fingerprint authentication.

Jason Holbert is a Tier II desktop support technician at Harcros Chemicals, a chemical manufacturer and distributor in Kansas City, Kan.
Sign up for our e-newsletter

About the Author

Jason Holbert

Jason Holbert

Jason covers desktop applications and help desk utilities, including reviews geared toward the IT end-user support function. Jason is the PC infrastructure manager for Harcros Chemicals, a worldwide leader in chemical manufacturing and distribution. At Harcros, Jason supports over 350 end users at 30 branch locations. In his free time, Jason enjoys reading, motorcycling, competitive shooting and remodeling his starter home with his wife.

Security

Apple’s iOS 7 Makes Small bu... |
The overhaul and redesign of Apple’s mobile operating system are worth cheering about,...
Why Law Firms Should Live an... |
Firms shouldn’t allow unfounded security concerns to deter them from all the cloud has to...
How 3 Companies Disaster-Pro... |
Despite the havoc following Sandy, these businesses continued services with hardly a...

Storage

3 Questions to Help SMBs Pla... |
Before planning a backup strategy, here are three questions that can help set the...
How 3 Companies Disaster-Pro... |
Despite the havoc following Sandy, these businesses continued services with hardly a...
EMC World 2013: Software-Def... |
Storage virtualization is a key element of providing on-demand, flexible cloud services.

Infrastructure Optimization

Has Open-Source Technology G... |
The days of “open-source” being a dirty word could soon be a distant memory.
West Coast Customs Outfits B... |
The Technoliner gives businesses a hands-on experience with the latest productivity tools...
Spring Cleaning: Refresh Tip... |
Three financial businesses offer advice on optimizing computing operations.

Networking

Cisco Live 2013: Collaborati... |
The way work gets done is set to evolve once machines and sensors jump into the mix.
At the Core of a Thriving Bu... |
Companies find the ability to easily connect with customers and employees essential to...
5 Ways to Fix Common Wi-Fi E... |
Get expert pointers on how optimize your 802.11 network.

Mobile & Wireless

Businesses Go Mobile on Mult... |
A real estate agency and logistics provider tap devices that make their workers more...
How to Choose MAM Software |
Mobile application management solutions are still evolving, so heed these tips when...
The Droid Lawyer Advises Att... |
The open nature of Google’s mobile operating system makes it easy for nefarious apps to...

Hardware & Software

The Do’s and Don’ts of Email... |
A perfectly crafted email signature can make a great digital impression.
Shopping 2.0: N.Y. Retailer... |
Kate Spade and eBay have teamed up to provide a unique shopping experience that brings...
Apple’s iOS 7 Makes Small bu... |
The overhaul and redesign of Apple’s mobile operating system are worth cheering about,...