Employee attitudes to wi-fi security put businesses at risk
UK employees are potentially putting their companies at risk of cyber-attack when using mobile devices for work purposes while on holiday or on a short break, new research has found.
The ‘Beach to Breach’ research commissioned by Sourcefire, now part of Cisco, found that 77 percent of UK workers surveyed usually take their work devices with them on holiday, with 72 percent choosing to spend up to one or two hours per day keeping up with what’s going on in the office. Over 80 percent of directors, mid-managers and senior level employees admitted to taking their work device on holiday, and even the most junior employees are also keen to stay connected while away with 50 percent unwilling to leave their work device at home.
Despite 69 percent of the study respondents confirming that their employer had informed them about the risks associated with using devices remotely for work purposes, 60 percent admitted that they did not check the security of a wi-fi network before connecting to it whilst on holiday. Trainees were the worst offenders with three quarters (75 percent) not checking remote networks. However directors and mid-managers were also guilty with 60 percent and 59 percent respectively, also admitting to not checking a wi-fi network’s security before signing on.
Sean Newman, Field Product Manager at Cisco, said: “The results of our ‘Beach to Breach’ study show that many workers do want to get online and keep abreast of what’s going on in the office, while on holiday. While employees generally do not set out to deliberately pose an IT security risk to their employer, our study shows that the majority of workers are likely to be more concerned about getting online than strictly following the IT security policy. As such, security systems have to be designed to take on board the evolving work life patterns of the modern workforce.”
Newman continued: “The upshot for companies is that there is no silver bullet when it comes to IT security. In the era of increased mobility of employees, they need to ensure they have full visibility across their extended network, in order to spot unusual activities or behaviour. Cyber criminals are well resourced, professional, and recognise that employees are often a company’s weakest link, so target them to gain access to the corporate network. Businesses must realize that it’s not a matter of if they get attacked, but when, and need to focus on setting their security accordingly. Employees equally have their part to play by avoiding unsecured wi-fi networks, especially for work-related tasks, and ensuring that they adhere to their company’s IT policies at all times.”
The study was carried out by independent research firm Opinion Matters, between 25th April and 29th April 2014, and sampled 500 UK individuals, in companies with 500+ employees, who can and do access their work systems whilst on holiday.
•Date: 18th June 2014 • UK •Type: Article • Topic: ISM