Skip to content
Tiatra, LLCTiatra, LLC
Tiatra, LLC
Information Technology Solutions for Washington, DC Government Agencies
  • Home
  • About Us
  • Services
    • IT Engineering and Support
    • Software Development
    • Information Assurance and Testing
    • Project and Program Management
  • Clients & Partners
  • Careers
  • News
  • Contact
 
  • Home
  • About Us
  • Services
    • IT Engineering and Support
    • Software Development
    • Information Assurance and Testing
    • Project and Program Management
  • Clients & Partners
  • Careers
  • News
  • Contact

How to Achieve Security First for a Remote-First Workforce

One day in 2020, most office workers went home and stayed home, many of them for over two years now. Work from home (WFH) employees kept businesses running. Acceptance—often grudging–of WFH by C-suites, record-low unemployment, and fears of pandemic resurgences now mean that WFH will probably become work from anywhere (WFA) plus return to office (RTO) for the foreseeable future. 

Yet, the success of WFH comes with increased cybersecurity risks:

  • Employee-owned IT assets (hardware, networks, software) were allowed alongside the organization’s assets to enable suddenly remote workers to function. IT departments weren’t prepared for a flood of bring-your-own-device (BYOD) users accessing files, applications, and databases.
  • Traditional cybersecurity assumed resources inside the organization’s network were “safe’” while those outside it were “dangerous,” and employed firewalls to defend a well-defined network perimeter. As massive numbers of users and assets moved outside this perimeter, the static model crumbled and needed immediate rethinking.

Those risks may seem daunting, especially given their sudden and simultaneous appearance. Let me reassure non-technical CxOs: The risks are real but not insurmountable given your support for policy, process, and technology upgrades. 

See, the rise of cloud computing and network improvements over the last 20 years has made it clear to security researchers and vendors that these risks would emerge. So work was done and tools were created long before we started logging in from our kitchen tables.

Here are the three keys to modern cybersecurity:

  1. Reduce technical debt. Technical debt is all the updates that should have been made to your IT assets over the years but weren’t. Maybe IT was busy with new stuff, or budgets were tight… it doesn’t matter why. What matters is that attackers invest in better offensive weapons so defenders like you must keep up or become vulnerable. Be sure that obsolete hardware and software gets retired and that key IT assets are modern enough to detect and defend against today’s threats.
  2. Improve cyber hygiene. If you don’t shovel your sidewalks after a snowstorm, visitors to your office slip. If you don’t replace broken lightbulbs, worker efficiency suffers. It’s no different with IT assets; they require timely maintenance to avoid cybersecurity (and other) problems. Be sure IT has the resources to keep up with vendor patches and changes to your environment (acquisitions, new systems, geographic expansion).
  3. Implement Zero Trust security. Zero Trust ensures no user gets more access than they need to do their assigned job. It considers who needs access (payroll clerk accessing new product blueprints?), where (accessing blueprints from a country in which you don’t operate?), when (a wire transfer at 3 AM local time?), and from what (an employee’s personal laptop operating your nuke plant?). Zero Trust is simple in concept but requires C-suite support for adoption.

The future belongs to the nimble, so invest in remote worker productivity. But don’t neglect the three cybersecurity keys or you put your organization at risk.

About the author:

Wayne Sadin has had a 30-year IT career spanning logistics, financial services, energy, healthcare, manufacturing, direct-response marketing, construction, consulting, and technology. He’s been CIO, CTO, CDO, advisor to CEOs/Boards, Angel Investor, and Independent Director at firms ranging from start-ups to multinationals. Contact Wayne at [email protected], on Twitter at www.twitter.com/waynesadin, and at LinkedIn at www.linkedin.com/in/waynesadin

This post is brought to you by Tanium and CIO Marketing Services. The views and opinions expressed herein are those of the author and do not necessarily represent the views and opinions of Tanium.

Security


Read More from This Article: How to Achieve Security First for a Remote-First Workforce
Source: News

Category: NewsJune 1, 2022
Tags: art

Post navigation

PreviousPrevious post:Digital Twin Use Races Ahead at McLaren GroupNextNext post:Catherine Luelo – DSI du Canada : gérer les besoins informatiques d’une nation

Related posts

IA segura y nube híbrida, el binomio perfecto para acelerar la innovación empresarial 
May 23, 2025
How IT and OT are merging: Opportunities and tips
May 23, 2025
The implementation failure still flying under the radar
May 23, 2025
보안 자랑, 잘못하면 소송감?···법률 전문가가 전하는 CISO 커뮤니케이션 원칙 4가지
May 23, 2025
“모델 연결부터 에이전트 관리까지” 확장 가능한 AI 표준을 위한 공개 프로토콜에 기대
May 23, 2025
AWS, 클라우드 리소스 재판매 제동···기업 고객에 미칠 영향은?
May 23, 2025
Recent Posts
  • IA segura y nube híbrida, el binomio perfecto para acelerar la innovación empresarial 
  • How IT and OT are merging: Opportunities and tips
  • The implementation failure still flying under the radar
  • 보안 자랑, 잘못하면 소송감?···법률 전문가가 전하는 CISO 커뮤니케이션 원칙 4가지
  • “모델 연결부터 에이전트 관리까지” 확장 가능한 AI 표준을 위한 공개 프로토콜에 기대
Recent Comments
    Archives
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • December 2023
    • November 2023
    • October 2023
    • September 2023
    • August 2023
    • July 2023
    • June 2023
    • May 2023
    • April 2023
    • March 2023
    • February 2023
    • January 2023
    • December 2022
    • November 2022
    • October 2022
    • September 2022
    • August 2022
    • July 2022
    • June 2022
    • May 2022
    • April 2022
    • March 2022
    • February 2022
    • January 2022
    • December 2021
    • November 2021
    • October 2021
    • September 2021
    • August 2021
    • July 2021
    • June 2021
    • May 2021
    • April 2021
    • March 2021
    • February 2021
    • January 2021
    • December 2020
    • November 2020
    • October 2020
    • September 2020
    • August 2020
    • July 2020
    • June 2020
    • May 2020
    • April 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019
    • June 2019
    • May 2019
    • April 2019
    • March 2019
    • February 2019
    • January 2019
    • December 2018
    • November 2018
    • October 2018
    • September 2018
    • August 2018
    • July 2018
    • June 2018
    • May 2018
    • April 2018
    • March 2018
    • February 2018
    • January 2018
    • December 2017
    • November 2017
    • October 2017
    • September 2017
    • August 2017
    • July 2017
    • June 2017
    • May 2017
    • April 2017
    • March 2017
    • February 2017
    • January 2017
    Categories
    • News
    Meta
    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org
    Tiatra LLC.

    Tiatra, LLC, based in the Washington, DC metropolitan area, proudly serves federal government agencies, organizations that work with the government and other commercial businesses and organizations. Tiatra specializes in a broad range of information technology (IT) development and management services incorporating solid engineering, attention to client needs, and meeting or exceeding any security parameters required. Our small yet innovative company is structured with a full complement of the necessary technical experts, working with hands-on management, to provide a high level of service and competitive pricing for your systems and engineering requirements.

    Find us on:

    FacebookTwitterLinkedin

    Submitclear

    Tiatra, LLC
    Copyright 2016. All rights reserved.