IT Consulting and IT Services - Cybersecurity Services

View Original

Work-from-home RECOMMENDATIONs


Below are some basic security measurements not only recommendation but required for remote workers to be in the secure and safe environment.

  1. Use encrypted drives for any outside office work.

  2. Review your work-from-home workflow for any security flaw on a monthly basis.

  3. Security awareness training for employees on a regular basis.

  4. Secure your home connection.

  5. Do NOT use WiFi.

  6. Employees should be logging into VPN based on their Mac address as well as MFA and secure authentication.

  7. Practice a password policy

  8. Ensure screensaver with password lock to take effect after ten minutes of inactivity

  9. Try to use an authentication server (Cloud or Local) and use unique user login if possible.

  10. Constant monitoring and full log file access including all user activities with at least one year retention.

  11. Ensure your local firewall is on and all remote services are off.

  12. If you must have remote access capability, then create VPN SSL and enable MFA (Multi-Factor Authentication) and unique user logins where possible for authentication

  13. Create a non-admin limited user for employees

  14. Data encryption (FileVault on Mac and Bit Locker on Windows) must be enabled.

  15. Use endpoint protector along with device management software for full control over peripherals

  16. Use MDM “Mobile Device Management” software for a full remote control over devices.

  17. Use SEIM “Security Event and Incident Management”

  18. Block all torrent, File sharing, P2P, Downloads sites.