Work-from-home RECOMMENDATIONs
Below are some basic security measurements not only recommendation but required for remote workers to be in the secure and safe environment.
Use encrypted drives for any outside office work.
Review your work-from-home workflow for any security flaw on a monthly basis.
Security awareness training for employees on a regular basis.
Secure your home connection.
Do NOT use WiFi.
Employees should be logging into VPN based on their Mac address as well as MFA and secure authentication.
Practice a password policy
Ensure screensaver with password lock to take effect after ten minutes of inactivity
Try to use an authentication server (Cloud or Local) and use unique user login if possible.
Constant monitoring and full log file access including all user activities with at least one year retention.
Ensure your local firewall is on and all remote services are off.
If you must have remote access capability, then create VPN SSL and enable MFA (Multi-Factor Authentication) and unique user logins where possible for authentication
Create a non-admin limited user for employees
Data encryption (FileVault on Mac and Bit Locker on Windows) must be enabled.
Use endpoint protector along with device management software for full control over peripherals
Use MDM “Mobile Device Management” software for a full remote control over devices.
Use SEIM “Security Event and Incident Management”
Block all torrent, File sharing, P2P, Downloads sites.