Out of the Box Solutions Blog

IT Security Starts and Ends With Your Staff

IT Security Starts and Ends With Your Staff

We wish IT security was as simple as setting up a good firewall and installing an antivirus. We talk a lot about security solutions that cover a lot of your bases, such as our Unified Threat Management (UTM) system. While these enterprise-level solutions are important, any investment in protecting your network can be upended by a single act of user error.

You see, the bad guys are clever, and they wouldn’t be building malware and stealing data if it wasn’t lucrative, and the successful hackers are very good at beating the system. A huge trend that has been growing for years involve hackers doing more than just infecting computers the old-fashioned way; today they are targeting people using tactics like social engineering and offline infiltration. They know that they can get access to your network by asking the right user the right questions over the phone or via email. They know how to get just enough information to sound somewhat legitimate, too.

Get Everyone on Board
It’s up to you to establish a IT security mindset with your employees. It starts with management and needs to trickle down across the entire organization. Getting other C-levels closely looped in, and then office managers and even HR is a good way to make sure everything is being taken seriously.

Show That Security Isn’t Meant to Be a Burden
If you fire off new processes like two-factor authentication or push policies to employees phones without rallying them first, you’ll likely get moans, groans, and pushback. It will feel like you are making their jobs harder, when in reality you are actually protecting them and the organization. Instead, it’s a good idea to teach your people WHY security matters to them. Good employees want what’s best for the company and will see value in protecting the company if they understand that these new security processes aren’t designed to be roadblocks.

Have Regular IT Security Check-Ins
Whether you put together a weekly email or hold a monthly meeting, stick to it. If you make security enough of a priority that you don’t postpone a piece of your plan, your staff will feel the importance of it. Plus, this allows you to take smaller steps that ensure good habits are being put in place.

Reinforce Diplomatically
Until IT security mindfulness is achieved, the responsibility is on you to make sure your staff understands the new processes and procedures. This may include thoroughly documenting your security best practices, including it in the employee handbook, creating training videos, and hanging posters. Plus, as security threats and compliances evolve over time, so won’t some of your processes. As things change, you’ll need to update your materials.

After most of your staff seems to “get it,” you can establish the repercussions for failing to comply with company rules. Remember that most practices can be easily remediated - depending on the severity of the issue, a first-time offender probably doesn’t need to lose their job. That said, treating repeat offenses and blatant disregard for IT security should be dealt with swiftly and corrected. One weak link can do harm to the entire chain.

Encourage Issue Reporting and Support Requests
One of the biggest tools you can equip your people with is the ability to put in support requests and report on anything suspicious. If they don’t feel comfortable and encouraged to put in support requests, they might not raise their hand when something really serious is happening. This can be caused from either not wanting to bother management with something that seems unimportant, or from having a fear that they will get in trouble for potentially causing an issue. It’s critical that you establish a clear value to reporting issues and mistakes that happen.

That’s where Out of the Box Solutions comes in. We can not only help you establish the infrastructure to protect your business, but we can help enforce, audit, and support your organization. We can act as your in-house IT department and field employee support questions. Let us help you protect your business from the ever-increasing number of online and offline threats. Give us a call at 800-750-4OBS (4627) today and have a chat with one of our IT security experts.

Tip of the Week: Managing your Cloud Data
Antivirus Fights More than Just Viruses


No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Saturday, March 23 2019

Captcha Image

Mobile? Grab this Article!

Qr Code

Tag Cloud

Tip of the Week Security Best Practices Technology Business Computing Network Security User Tips Privacy Productivity Tech Term Microsoft Smartphones Internet Communication Data Efficiency Hardware Email Cybersecurity Google Mobile Devices Passwords Windows 10 Mobile Device IT Support Cloud Innovation Malware Browser Android Small Business Collaboration Business Management IT Services Communications Network Users Ransomware Wi-Fi Hackers Business Wireless Holiday Workplace Tips Software Data Backup Applications Managed IT services Outsourced IT Backup Saving Money Managed IT Services Data recovery Internet of Things Employer-Employee Relationship VoIp Marketing Cloud Computing Hosted Solutions Business Intelligence Information Social Media Blockchain Networking Data Management Office 365 Access Control Computers Microsoft Office Connectivity Cortana Medical IT Facebook Save Money Tech Terms Apps Automation Cost Management Gmail Bandwidth Paperless Office Smartphone Managed Service Mobility Artificial Intelligence Data Security Analytics Virtual Assistant Password Wireless Charging Compliance Managed IT Service G Suite BDR Patch Management Remote Computing Virtualization Computer VPN Remote Monitoring and Management Reporting Word SSD A.I. Edge Virus Miscellaneous Telecommuting Server Knowledge HP Time Management Value Hybrid Cloud Tip of the week Settings Upgrade HIPAA Dark Web Payment Operating System Company Culture Content Filtering Amazon Eliminating Downtime Dongle Paper Phishing Wearables Movies Comparison Antivirus Maintenance Telephony Document Management Telecommute Authentication Chrome Cables User Tip IT budget Analysis Certification Technology Tips Hard Drive Error instant Messaging Managing Stress Physical Security BYOD Ink Data Breach SaaS Healthcare Twitter Specifications Staff Troubleshooting Router Workers Lead Generation Network Attached Storage Streaming Media Voice over IP Authorization Chrome OS Database Voice over Internet Protocol Battery Processors Vulnerabilities Environment Gadgets eCommerce Laptop Plug-In Wireless Internet Government PowerPoint Sales GDPR Inventory Unified Communications Update Websites Internet Explorer Millennials Backup and Disaster Recovery Downloads Digital Data loss Cybercrime Training Tablet Vulnerability Machine Learning Touchscreen Cryptocurrency e-waste Online Shopping Proactive IT Help Desk Sports Personal Information Data Protection RAM Conferencing Outlook Safety Threat Business Technology Security Cameras Hard Drives Trends Spam Tactics IT Management Excel Spyware Microsoft Office 365 disposal Bring Your Own Device Business Continuity WannaCry Server Management Storage E-Commerce Mobile Security Microsoft Teams Office Big Data Profitability Printing Alert Printers Quick Tips Net Neutrality Disaster Recovery Regulation Windows 7