Zwei-Faktor-Authentifizierung mit Smartphone und Laptop

Specifically... How can I safeguard working practices in the home office and on the move?

During mobile work (whether at home or on the go), you are not surrounded by a protected corporate environment.

This can be compensated by appropriate behaviour: being mindful of possible eavesdroppers when making phone calls, concealing screen content from others as much as possible, keeping devices always in sight, and locking them when not in use. Technologically, it is helpful if devices update automatically and can be wiped remotely in case of suspected IT attacks or loss.

Mobile working operates in a legal grey area - establishing a "proper" home office requires the company to ensure it is equivalent to an office workplace in every respect - which is only possible with a dedicated office room. Many employees find this too inflexible, and for companies, this generates high costs, even though it achieves security comparable to workplaces within the company.

Mobile working often occurs in settings with other people, where the greatest dangers also lurk: Screen contents are visible to others, confidential conversations are conducted semi-publicly, mixing private and work matters. Moreover, private devices often lack technical protection from corporate IT.

The most crucial measures for secure working at home and on the go are therefore focused on employee behaviour: Employees need a good sense of confidentiality and an understanding of which information should only be viewed or processed in a secure environment. The usage of private devices by employees should be limited to information requiring low to moderate protection levels. Definitely, vigilant handling of devices is necessary to prevent their theft or manipulation.

Ideally, companies should also introduce device management systems to monitor the security of information on various devices (this capability extends to private devices) and, if necessary, delete content during incidents.

The two top tips

  • Provide instructions for safe behaviour.
  • Set up remote deletion for all devices.

Contact

Katrin, Sobania_quad

Dr. Katrin Sobania

Director Department for Information and Communication Technology | E-Government | Postal Services | IT Security