CLICK for Home Page and HR Administration Overview
Website Launched:  12/26/1994
Last Update:  2/14/2013
The Integrity Center, Inc.

(972) 484-6140
[ Since 1984 ]
HOME Reference Articles
 
SCREENING
Check List
Backgrounds
TUTORIALS
SERVICE MENU
FCRA
THIS COMPANY
Our Methods
Why Use Us
Myths
Pitfalls
CHECK MYSELF
CHECK NANNY
USEFUL LINKS
Library
Statistics
PRESS RELEASE
The Integrity News
Vol. XIII No. 13
ISSN 1081-2717

 

The Integrity Center, Inc.
"objective risk management services"


July 15, 2004 


Security Risk From
Mobile Media Devices

Technical consultant Gartner Group, Inc. has just published a report entitled:   "How to Tackle the Threat From  Portable Storage Devices"

The basic problem is that these devices can be used to steal large quantities of corporate data, and can also be used to introduce viruses and worms into corporate networks.   "The gadgets can be used to siphon information from a computer, turning a seemingly innocuous device into a handy tool for data thieves."

According to articles from CNN and ComputerWeekly, mobile media devices such as iPod "pose such a major security risk for businesses, that enterprises should seriously consider banning the portable storage devices (from their premises)".

Of equal concern are pocket-sized portable FireWire hard drives, USB hard drives, key-chain drives, disc-based MP-3 players, and digital cameras with removable smart  media.

According to British security, "With USB devices, if you plug it straight into the computer you can bypass passwords and get right on the system".   In a survey of mid to large sized companies, 82% said that "they regard so-called mobile media devices like the iPod as a security threat".

As a result, in addition to the military and national security interests, a growing number of companies, "particularly those in the financial and healthcare sectors, are devising policies to keep these devices out of their offices."

"Companies must limit the damage from malicious code, loss of proprietary information, loss of intellectual property, and consequent lawsuits and loss of reputation."

"Oftentimes, a business has no idea if an employee is  stealing data via removable media."    "A portable media player with two gigabytes of capacity could easily and quickly store a customer database."

"Gartner advised companies to forbid employees and  external contractors with physical access to corporate networks from using these privately owned devices with corporate PCs.   Companies should also consider a 'desktop lockdown policy', disabling universal plug and play functions after installing desired drivers, to permit the use of only authorized devices."    "Companies may also want to implement individual PC firewalls to limit what can be done on a USB port."

While all of these devices were developed for personal entertainment and convenience, there is now this dark  side.   In fact, there is a whole industry cropping up to sell "useful" peripherals for these mobile media devices.   For example, for the digital camera buff, if the storage modules are frequently filling up too quickly, there is  now an interface available that makes it easy to download the camera memory to the mobile media device.    That, for instance, worries security directors of companies with intellectual property, customer lists, secret formulas, new designs, etc. that they must protect.

For additional information about the business risks related to employee crimes, browse The Integrity Center, Inc.   website and feel free to call (972) 484-6140  to discuss  a particular situation that you have.   Helping you with your  Risk Management and HR Automation is what we do.


EARLIER
NEWS ITEMS
The Resume
   Problem
Immigration Reform
   Will Mean:
   Employers MUST
   Enforce
   Employment
   Eligibility
   Verification
Economic
   Espionage
Guerrilla
   Reference
   Checks
The Mobile
   Integrity
   Connection (tm)
NEW U.S.
   Law Increases
   Employer Risk
Time
   To
   Shred
Three New
   H.R. Videos
"7 Ways
   To Avoid
   Employees From
   Hell"
Form I-9 Update
   and NEW
   Form I-9 Tools
New Federal Laws
   To Consider
Access To News
   Items For HR
   And Security
   Professionals
Sarbanes-Oxley
   and
   Background
   Checking
Using
   Credit Bureau
   Reports In The
   Hiring Process
Talent Assessments
   Before Mergers
   Acquisitions
   or Investments
Vicarious
   Liability
Medical
   Identity Theft
Federal
   Civil
   Litigation
   Histories
New Items
   for HR and
   Security
   Professionals
Employers
   Offer Help
   Fighting
   I.D. Theft
Avian Flu:
   Business Thinks
   The Unthinkable
New Federal
   Rules That
   Govern Online
   Recruiting
Gaffe Shows Need
   To Screen Current
   Employees At
   Promotion Time
The
   Baby Boomer
   Exodus
Document
   Disposal Law
   Kicked In
   June 1, 2005
A New Wrinkle
   On Age Bias
Don't Let Your
   Vendors
   Compromise
   Employee
   Identity Data
Annoying Hacking
   Has Now Become
   Organized Crime
Persuading
   Your Company
   Management To
   Encourage
   Training
Mainstream Media
   FINALLY Address
   Risks Of Using
   Databases For
   Employment
   Screening
HR Automation
   Can Improve
   Company Finances
   And Innovation
Employers Beware
   The
   "Seal of Approval"
Identity
   Verification
The
   Outsourcing
   Hole
Cyber Age
   Employee Crimes
Security Risk
   From Mobile
   Media Devices
More FCRA
   Amendments
   Could Be Coming
   By Year's End
The FCRA
   Was Amended
   On 12/4/03
Physical Security
   and Information
   Security are
   Merging
Increase
   HR Productivity
Homeland
   Security
   Guidelines
Sarbanes-Oxley:
   Road To
   Compliance
WARNING
Stored Data
   Warning Signs
How to FIND,
   FIX or FIRE,
   Your POOR
   PERFORMERS
ID Verification --
   Inexpensive and
   VERY Effective
The Darkest Side
   Of Identity Theft
Companies Dig
   Deeper Into
   Executive's Pasts
Fraud And New
   Scrutiny Of
   Executives
Be Careful With
   Instant Messaging
   and Wi-Fi
STRESS
Identity
   Management
California
   Data Privacy Rule
Obtaining
   Criminal Histories
   In New York State
"The Privacy Rule"
   in HIPAA
Putting A Crimp In
   The Management
   Of Spam
New Technology
   Facilitates
   Corporate
   Espionage
Identity Theft
   Checklist
Monitoring
   Employees
The Domestic
   Security
   Enhancement Act
NEW
   Overtime
   Pay Rules
The High Cost
   Of Penny-Ante
   Scams
"Signs" That
   You Need To Do A
   Periodic Check
FTC Charges A
   Company With
   FCRA Violations
The NEW
   Integrity
   Connection (tm)
Workplace
   Safety
   Checklist
HR is Splitting
   Into Two
   Separate Parts
Keep Your Eye On
   RFID Technology
Improv At
   The Interview
Real Security
   Won't Come Easy
   Or Cheap
DOs & DON'Ts
   To Minimize
   Violence
Identity
   Theft
Snapshots of
   Federal Laws
TIPS for
   Gramm-Leach-Bliley
   Compliance
The Sarbanes -
   Oxley Act
NEW Calif.
   Background
   Checking Laws
The Benefits
   Of Online
   Job Applications
Compensation
   --- Now It's
   Getting Personal
The United States
   Security Network
Supreme Court
Limits ADA
Supreme Court Will
   Review Law On
   Age Discrimination
Management Sleaze
The Examiner (tm)
Helps You Uncover
The New Face
Of Corporate
Responsibility
The Sarbanes-Oxley
   Corporate
   Reform Law
The Corporate Spy
National Wants and
   Warrants Illegal
No Dangerous
   Jobs For Disabled
Security
   Precautions
   for Businesses
Terminating
   An Employee
Listening in an
   Interview
Arbitration
   vs.
   Litigation
Supreme Court
   Eases Rules for
   Workers Who Sue
Drug Abuse
   Statistics
The Enemy
   Within
Priority:
   Integrity
Funding Terrorism
   With
   Information Theft
Corporate America
vs.
Copyright Theft
Mental Illness
   Workplace Costs
How to
   Fire Properly
Lying
   On Resumes
Workplace
   Guidelines
   To Be Voluntary