Tactical Advice

5 Mobile Security Golden Rules

Set five ‘golden rules’ to keep devices used by roving workers safe from tampering and malware.
This story appears in the September 2011 issue of BizTech Magazine.
5 Golden Mobile Security Rules
Setting a passcode on iPad devices is a simple, yet effective step toward better mobile security.

Whether a company has five or 500 users, establishing best practices and policies for client devices is a critical first step in averting trouble.

Nowhere is this truer than in the context of security. Although the advent of mobile computing has forever changed the way companies conduct business, it has also created security challenges. To lock down mobile devices, consider putting these policies in place for users.

1. Use “Passcodes” to Lock iPads

It’s easy to secure an iPad using the built-in Passcode feature to lock the device when a user powers it off or it goes into sleep mode. To access this setting, go to Settings > General > Passcode Lock and enter the desired code.

Not only will this make unauthorized access difficult, but this lock can also be configured to erase any sensitive data after 10 failed passcode entry attempts. This is a valuable tool to keep sensitive and personally identifiable data from falling into the wrong hands.

The Passcode feature is available on the iPhone as well, so consider making its use a standard operating procedure for all workers with these devices.

2. Deploy Client-Level Internet Filtering Software

When workers leave the office with their notebooks, Internet filtering shouldn’t stay behind. Developers such as Blue Coat Systems offer stand-alone web-filtering programs that run as a service on local machines and use centrally managed policies on each user’s hard drive.

When the software detects that a computer is behind the corporate gateway device, it can be set to disable itself, letting the machine use the company network's Internet filtering. When the user takes the machine home, however, the local policy kicks in and protects the computer from accessing malicious or otherwise unapproved websites.

This approach not only furthers compliance but also blocks malware and third-party applications from downloading and compromising systems when they are outside of the corporate infrastructure’s immediate control.

3. Force Critical Updates on Your Workstations

Keeping Windows updates current on end-user clients may be the single most important step to protecting a corporate network from outside threats. Don’t rely on users to voluntarily install updates. Instead, deploy a Windows Server Update Services server that will act as a central repository for Windows and other application patches for company computers.

Additionally, use Group Policy to force clients to download updates from the server at set intervals. Not only will this take the guesswork out of keeping machines up to date, but it will eliminate bandwidth redundancy because virtually all update traffic will stay inside the LAN.

4. Set and Enforce Work-from-Home Requirements

If an IT department supports teleworkers, the company should have a policy in place to ensure these remote users have both a hardware firewall and wireless encryption.

Don’t take for granted that an employee’s personal Internet service provider has taken care of this; a surprising number of broadband providers still deploy equipment that leases external IP addresses to connected machines.

Make it a corporate policy to require that new users and users switching ISPs check in with the tech support staff or the help desk when setting up home systems. A five-minute phone call is all it takes to determine whether a remote system poses a threat to the company’s network.

5. Train Smartphone Users to Keep Apps Up to Date

Outdated applications with gaping security holes pose some of the biggest security threats to mobile phone users. Updates become available regularly for Droid, iPhone on other platforms, and users need to download these as they arrive. These updates will fix known security vulnerabilities, and they frequently make apps more stable, creating a better overall end-user experience.

Sign up for our e-newsletter

About the Author

Jason Holbert

Jason Holbert

Jason covers desktop applications and help desk utilities, including reviews geared toward the IT end-user support function. Jason is the PC infrastructure manager for Harcros Chemicals, a worldwide leader in chemical manufacturing and distribution. At Harcros, Jason supports over 350 end users at 30 branch locations. In his free time, Jason enjoys reading, motorcycling, competitive shooting and remodeling his starter home with his wife.

Security

Review: Belkin Advanced Secu... |
This tool can prevent KVM toggling from being a source of network vulnerabilities.
Honeywords: Password Securit... |
Researchers are proposing a new method of spiking the password punch as a way to identify...
How Many Vulnerabilities Doe... |
The potential for damaging data breaches lurks in nearly every corner for SMBs.

Storage

EMC World 2013: Software-Def... |
Storage virtualization is a key element of providing on-demand, flexible cloud services.
How Steve Wozniak Explains V... |
Fusion-io's chief scientist breaks virtualization down into terms everyone can understand.
Product Review: Quantum NDX-... |
Device does double duty for storage and backup.

Infrastructure Optimization

Why More Software Is Headed... |
Many of your favorite software suites are trading in their shiny discs for cloud-based...
Cisco Live 2013: Brush Up wi... |
Get up to speed on convergence, wireless networking, collaboration and more ahead of the...
EMC World 2013: Software-Def... |
Storage virtualization is a key element of providing on-demand, flexible cloud services.

Networking

How to Secure Optimized Netw... |
WAN optimization and security aren’t always complementary. These tips can help you deal...
Cisco Live 2013: Brush Up wi... |
Get up to speed on convergence, wireless networking, collaboration and more ahead of the...
Do Virtual Meetings Boost Pr... |
New study finds that face-to-face meetings don’t always work in workers’ favor.

Mobile & Wireless

Consumr App Powers Informed... |
Reviews and ratings for products on the shelf are only a barcode scan away.
Faster In-Flight Wi-Fi: Com... |
The FCC is working on regulation to free up more Internet bandwidth for air travelers.
CTIA: Wireless Network Data... |
The invisible bytes that zip through the air continue to multiply at rapid rates.

Hardware & Software

Consumr App Powers Informed... |
Reviews and ratings for products on the shelf are only a barcode scan away.
Review: Belkin Advanced Secu... |
This tool can prevent KVM toggling from being a source of network vulnerabilities.
How Many Vulnerabilities Doe... |
The potential for damaging data breaches lurks in nearly every corner for SMBs.