Site Sponsor:

mcafee_logo.gif
line

Now Available:

Featured Resource:

line

Newsletter

Email Address:


line

Ask the Expert

Have a question for our resident expert? Email your questions to Dan or post a comment to the blog.

« DNS Cache Poisoning Code Now Publicly Available | Main | Small & Midsized Companies Targeted by Cybercime, Too »

Personal Smartphones and Enterprise Data: Risky Combination

The more security conscious among us wouldn't use a home PC to access sensitive corporate data but using a smartphone is another story. It's part balancing risk and benefit and part pragmatic acceptance of the way business is done these days.

A new survey by sponsored by GuardianEdge covered by SearchSecurity found 70% of respondents accessing what they consider sensitive data on their smartphones. A full 82% are willing to have corporate security software deployed on thier smartphones, including their personal ones and 75% would feel better if they had encryption on their devices.

This shows (1) corporate users of mobile devices are well aware of security issues and (2) many are willing to cede some control over their devices to improve security. The next question is where do you draw the line between corporate and private control? Should the company be able to use data loss protection software on the device to scan for confidential information? How about access to calling history, the equivalent of log files?

We are stepping into a gray area of semi-managed or co-managed devices. For more on how to develop policies to manage these issues, check out the recent podcast on mobile device security policies.

TrackBack

TrackBack URL for this entry:
http://www.realtime-websecurity.com/type/mt-tb.cgi/797

Post a comment

(All comments are approved by site leader before appearing here. Thanks for commenting!)

line

Dan Sullivan's Bio:

Dan Sullivan is a systems architect with 20 years of IT experience that includes engagements in enterprise security, application design, and systems architecture. His experience includes a broad range of industries, including financial services, manufacturing, government, retail, gas and oil production, power generation, and education. Dan’s security-related project work has ranged from requirements analysis for enterprise information security to designing and implementing security for database applications and enterprise portals. Dan has written about information security and other enterprise information management topics for Business Security Advisor, DM Review, Intelligent Enterprise, and E-Business Advisor. You can contact Dan at: dan_sullivan@realtimepublishers.net