Do Employees Work From Home? Review Company's Information Security Policy

Published: 19 March 2020 y., Thursday

Due to the introduction of quarantine in Lithuania because of the threat of the COVID-19 spread, the government recommended companies to move employees to remote mode. Work from home has many advantages, but at the same time raises many questions, especially in the field of information security.  Data leakage can lead to serious financial and reputational losses. Is the business ready for remote work?

Andrius Kiaune, specialist in information security risk assessment at Penkių kontinentų komunikacijų centras, a provider of ProfIT outsourcing IT services, says that everything depends on the information security policy of each organization.

“Company executives, before moving employees to the remote mode, must explain to them that information security in the telecommuting conditions consists of three components: knowledge of the rules, technical capabilities, and security awareness. These are interconnected links of one chain. Its reliability is very much determined by the weakest link in the chain,” says Andrius Kiaune.

For companies, using cloud services, it is easier to organize remote work. Information and data are stored on virtual servers (cloud) and, if the Internet is available, can be accessed in any place and at any time.

If a company stores information on a corporate server and has accurate access control, it is not easy to move employees to a remote mode of operation. It is necessary to provide employees with technical equipment.

The development of a strategy for transferring a company to a remote work should begin with an analysis of the information security policy and risk assessment.

Information security risk assessment is the process of identifying, resolving and preventing security problems in еhe following areas:

  • equipment used for work (computer, tablet, etc.);
  • information system for storing and processing data;
  • technologies for ensuring communication and security (VPN, firewall, two-factor authentication);
  • documentation describing the information security policy, which implies a set of measures, rules, and principles that guide employees in their daily practice to protect information resources.

The three key principles have become a foundation for information security:

1)      integrity (resistance to accidental or intentional destruction, unauthorized change);

2)      confidentiality (prevention against improper information modification or destruction by unauthorized users);

3)      availability (ensures that employees can access information whenever they need it).

Risk assessment allows you to make the functioning of information systems cost-effective, relevant and able to respond to threats. It may seem that in an emergency, it is too late to assess the risks of information security; however, the audit can be carried out even in quarantine mode, since there is no need for direct contact with customers for its implementation. The results can be discussed via videoconference.

ProfIT specialists provide comprehensive services for assessing information security risks: operational and technological audit, preparation of information security policies, staff training, etc.

Šaltinis: Penki kontinentai
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.

Facebook Comments

New comment


Captcha

Associated articles

Pandemic and Approaching Autumn Bring Viewers Back to TV Screens

Pandemic and self-isolation have changed our habits. Children and adults, practically locked at home, began to watch TV more often. According to fiber-optic network Penki, TV time has increased by 30 percent since this spring compared to the same period last year. more »

Digital Banking Solutions at Banks & Business Expo 2025 in Tashkent

Participation of BS/2 and ASHBURN International in Banks & Business Expo 2025. more »

BS/2 and ASHBURN International Present Their Solutions at EuroCIS 2025

EuroCIS 2025, one of Europe's largest retail technology exhibitions, took place in Düsseldorf (Germany) from February 18 to 20, 2025. more »

Partners of Penki Kontinentai Grop Showcase Cutting-Edge Solutions for Retail Transformation at NRF 2025 in the USA

NRF 2025 Retail's Big Show, the world's largest retail event, was held in New York City. more »

Christmas Celebration for Children at the Penki Kontinentai Office

Ahead of Christmas, the central office of the Penki Kontinentai Group in Vilnius was filled with children's laughter, curious questions, and a festive atmosphere more »

BS/2 Organized Banking Fusion 2024 in Kazakhstan for Banking Industry Leaders

The event gathered more than 170 specialists and experts from 13 countries. more »

BS/2 Brings Together Retail Leaders at Retail Business Brunch 2024 in Baku

Retail Business Brunch 2024, organized by BS/2 Company, took place in Baku on December 5. more »

BS/2 Presented Solutions for Safe and Secure Banking at IBF 2024 in Azerbaijan

At the event, BS/2 demonstrated updated versions of its software solutions and modern banking technologies. more »

Penki kontinentai Group Celebrates SMK's 30th Anniversary: Empowering Youth as the Path to Success

Penki kontinentai Group and SMK have been cooperating for several years. more »

Viltis awards Penki Kontinentai Group during the 35th anniversary

Viltis, a Lithuanian community for people with intellectual disabilities, is celebrating 35 years of activity. more »

Joining Forces: BS/2 and ASHBURN International Take Partnership with SUNMI to a New Level at GITEX 2024

BS/2 and ASHBURN International, part of Penki Kontinentai Group, participated in GITEX GLOBAL. more »