Hybrid Work: How to Secure Company and Employee Data

Talkspirit
2020-03-12
4
min.

Temps de lecture: 4 minutes

With the boom in hybrid work linked to the Covid-19 crisis, hackers are redoubling their efforts to break into computer systems. Thus, according to a 2020 Tanium study, 90% of companies have recorded an increase in cyberattacks since March 2020. Knowing that a cyberattack costs a VSE or SME¹ about €35,000, this risk is not to be taken lightly! To fight against this growing threat, the IT Department must, more than ever, invest in IT security. In this article, we present the main cyber-risks to be taken into account, and the best practices to adopt to secure the data shared by your employees working remotely.

What are the cyber-risks?

Phishing

Phishing, which involves collecting company data for malicious use, is the leading cause of computer security incidents in a remote work environment. This is the conclusion of Tessian’s “Securing the Future of Hybrid Working” report. For example, between March and July 2020, one in three organizations saw an increase in ransomware attacks from phishing emails. These figures are also confirmed by a 2020 Deloitte study, according to which 25% of employees have observed an increase in fraudulent emails and phishing attempts since the beginning of the Covid-19 crisis.

Internal threats

In addition to phishing, internal threats are also involved: according to Tessian, 43% of security incidents are related to phishing. For example, between March and June 2020, nearly half of all companies were victims of data leakage.² These internal threats, which are often the result of negligence on the part of employees, are the most difficult for the IT department to control. The best way to avoid these dangerous behaviors is to give greater visibility to cyber risks, raise employee awareness, and set up control mechanisms to prevent certain behaviors (for example: employees copying company data when they leave).

BYOD

Popularized in the 2000s, the BYOD (Bring Your Own Device) policy is increasingly used in companies, especially by teleworkers. According to the 2018 Bitglass report, 85% of companies would allow their employees to work on their personal devices. But if not properly managed, such a policy can significantly increase cyber risks, such as data loss or leakage, phishing, virus infiltration or shadow IT.

Many companies have little or no awareness of these risks among their employees. For example, more than half of the employees who worked remotely during the first confinement said they had not received any training to combat cyber threats.³

The multiplication of devices used, especially smartphones, is also an important element to take into account. Indeed, according to the Verizon Mobile Security Index 2020, almost 40% of companies report having faced an attack on their employees’ mobile devices

Shadow IT

Finally, teleworking and BYOD also tend to increase  shadow IT, i.e. the use of hardware or software not authorized by the IT department. This phenomenon, which makes organizations more vulnerable to cyber attacks, lacks visibility. According to CESIN’s Shadow IT report, employees use an average of 1,700 cloud applications in a company, while the IT department only lists 30 to 40. 

As a result, almost 50% of CIOs consider this to be a major risk while working remotely.⁴ However, only 22% of companies say they have strict rules in place to manage this threat.⁵

CIO best practices

This part of the article is taken from the White Paper “Future of Work: Make Way for Hybrid Work! “>>> access full white paper for free]

Securing the work environment

To guarantee data security, the IT department must give priority as much as possible to the use of equipment provided by the company, which will have been secured beforehand. If your company nevertheless wishes to maintain a BYOD policy, you should not forget to give clear security guidelines to employees on what they must do to minimize cybersecurity risks.

The CIO (Chief Information Officer) can also set up a virtual private network (VPN), which will protect the confidentiality of company data, even when employees are working remotely. In addition, a mailbox or a dedicated conversation group (on your internal social network, for example) can be created to report any security problems.

Working in hybrid mode also means centralizing all your data on a private cloud, which will allow employees to access their documents anytime and anywhere. However, the company will need to ensure that the data is hosted in Europe, and not in the United States, so that it cannot be transmitted to the American authorities (in accordance with the Cloud Act). 

Accompanying and training employees

Employees are not always aware of cybersecurity threats. It’s therefore essential to make them aware of this subject, and to teach them how to recognize fraudulent emails. For example, the company can give employees a checklist of best practices to implement: using a password manager, activating two-factor authentication, regularly updating applications, using only one’s professional computer for work, and so on. 

Also read: How to Reconcile Digital Workplace and Cybersecurity?

In order to minimize shadow IT, the CIOt must provide employees with a list of authorized applications, but also remain attentive to their needs and let them know that he remains open to the implementation of new tools.

Implementing the right tools

If the current tools do not seem to meet the needs of employees, the CIO can encourage employees to share the applications they use. He can then check whether these tools are sufficiently secure for the organization and, if not, suggest alternatives that are more suitable. 

Switching to a hybrid work mode requires companies to implement tools that are adapted to the new ways of working of employees, and enable them to communicate and collaborate remotely. To take advantage of all these features, many companies are choosing the digital workplace: a secure virtual office that brings together all the applications used by employees in the same place.

Also read: What Are the Best Digital Workplace Solutions?

*
*   *

To guarantee the security of your company’s data, whether you are working from home or in the office, you must first and foremost make your employees aware of the challenges of cybersecurity, particularly through training, but also by disseminating best practices. Choosing the right tools is also essential. Indeed, when employees have modern tools that are really adapted to their needs, they’re less likely to download applications without the knowledge of the IT department. The company is then less vulnerable to cyber attacks. 

Do you want to know more about the challenges and best practices of a hybrid way of working combining telework and office work? Read our white paper on this subject:

Access White Paper

In our white paper “The Future of Work: Make Way for Hybrid Work!” you’ll discover the eight main challenges of hybrid work; the best practices to be adopted by managers, HR, internal communication, IT and employees; and the tools to be implemented to facilitate hybrid work.

Download


¹2020 Hiscox Article
22020 Tessian Report “Securing the Future of Hybrid Working”
³April 2020 CrowdStrike Study
⁴April 2020 Checkpoint Study
2020 ManageEngine Report

_
Author: Emmanuelle Abensur

Inscrivez-vous à notre newsletter
En vous inscrivant vous acceptez notre politique de confidentialité et consentez à recevoir des nouvelles de notre entreprise.
Envoyer
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
ALLER PLUS LOIN

Vous avez les ressources pour passer à l’action

2025-01-24
7
min.

Top 10 Technology Trends in 2025, According to Gartner

2025-01-02
7
min.

Top HR Trends in 2025, According to Gartner

2024-12-26
6
min.

5 Strategies That Can Help Improve Employee Autonomy at Work

2024-12-19
6
min.

HR: Watch Out for These Employee Burnout Signs

2024-12-12
min.

[Expert Opinion] Elmy’s Journey to Becoming a Mission-Driven Company

2024-12-09
5
min.

Regenerative Business: the Trend Taking Companies by Storm

2024-12-05
6
min.

How can companies combine digital sobriety with well-being at work?

2024-11-29
7
min.

Agile Methodology: What Are the Pros and Cons for Businesses?

2024-11-19
8
min.

Creating OKRs Aligned with Your ESG Goals: a Step-by-Step Guide

2024-11-13
8
min.

Implementing Accessibility in the Workplace: Key Strategies and Best Practices

2024-11-13
6
min.

8 Steps to Create a Collective Intelligence Framework that Speeds Up Decision-making

2024-11-12
7
min.

Comment mesurer l’impact social et environnemental d’une entreprise ?

2024-11-07
7
min.

Management agile : 7 clés pour embarquer vos équipes

2024-11-07
5
min.

Meta Meltdown: What Can We Learn from the Workplace Closure?

2024-11-06
8
min.

How Can You Promote Sustainable AI in the Workplace?

2024-11-04
5
min.

Collaborative Platform: Definition and Challenges

2024-11-03
5
min.

20 collaborative tools to improve employee productivity

2024-10-29
8
min.

Parole d’expert : Comment améliorer l’équité, la diversité et l’inclusion en entreprise ?

2024-10-28
6
min.

7 Best Practices for Leveraging Emotional Intelligence as a Leadership Tool

2024-10-23
7
min.

RH : Les symptômes de burnout auxquels il faut être attentif

2024-10-17
7
min.

Améliorer l’autonomie au travail, c’est possible avec ces 5 leviers

2024-10-10
5
min.

Do Purpose-Driven Companies Outperform Traditional Ones?

2024-10-09
10
min.

Best Leadership Practices for Boosting Employee Engagement

2024-10-08
7
min.

[Parole d’expert] Comment devenir une entreprise à mission ?

2024-10-08
6
min.

Turn your employees into ambassadors for your enterprise social network!

2024-10-01
8
min.

How Does AI Impact Employees Within an Organization?

2024-10-01
6
min.

How can AI shape the future of self-management: insights from the academic literature

2024-10-01
7
min.

10 exemples d’utilisation du biomimétisme en entreprise

Article
2024-10-01
6
min.

Gartner’s 10 technology trends for 2024

2024-09-30
9
min.

What Participative Decision-Making Can Bring to Your Organization

2024-09-30
8
min.

How the Next Generation Company Is Redefining the Future of Work

2024-09-30
6
min.

How Do You Tactfully Handle a Micromanaging Boss ?

2024-09-30
8
min.

How Do You Give Constructive Feedback to Your Peers in a Self-Managing Organization?

2024-09-30
8
min.

How Consent-Based Decision-Making Works

2024-09-30
8
min.

From Corporate Hierarchy to Agility: How to Create Engaged and High-Performing Teams?

2024-09-30
7
min.

Driving Culture Change with Holaspirit: Insights from Welser Profile

2024-09-26
6
min.

5 Interesting Ways AI Can Transform Knowledge Management Processes

2024-09-17
7
min.

Critères ESG : pourquoi et comment les intégrer dans votre stratégie RSE ?

2024-09-10
10
min.

How Can You Improve Organizational Agility in the Workplace?

2024-09-10
5
min.

L’entreprise à impact : LA réponse aux défis du développement durable

2024-09-09
9
min.

How to Improve Cross-functional Team Collaboration

2024-09-05
6
min.

[Expert Opinion] Amicio’s Best Practices for Agile and Effective collaboration

2024-09-03
6
min.

Les entreprises à mission sont-elles plus performantes que les entreprises traditionnelles ?

2024-08-29
7
min.

Raison d’être, vision, mission : de quoi parle-t-on ?

2024-08-29
7
min.

Performance Management: 4 Keys to Building Effective Teams

2024-08-22
6
min.

Managers: 8 Hacks for Improving Teamwork Efficiency

2024-08-20
6
min.

Entreprise régénérative : de quoi parle-t-on ?

2024-08-13
6
min.

7 techniques éprouvées pour responsabiliser ses collaborateurs

2024-08-12
6
min.

Sustainable performance: the art of combining productivity and social responsibility

2024-08-09
6
min.

How Do I Set Up My Internal Communication on Corporate Social Responsibility (CSR)?

2024-08-08
6
min.

5 Examples That Show How Different Organizations Can Leverage the Same Collaborative Platform

2024-08-06
6
min.

[Webinaire] Opportunités et risques de l’IA : ce que les entreprises nouvelle génération doivent absolument savoir !

2024-08-04
5
min.

How to implement an enterprise social network in your company

2024-08-02
7
min.

How will artificial intelligence transform the way we work?

2024-07-30
7
min.

Nos 15 podcasts de management préférés

2024-07-25
8
min.

Key Employee Engagement Data from Gallup's 2024 Study

2024-07-25
10
min.

13 Icebreaker Ideas for More Dynamic Team Meetings

2024-07-23
7
min.

6 bonnes pratiques pour améliorer la cohésion d’équipe

2024-07-22
5
min.

Why Scale Ups Opt for a Self-Management Tool?

2024-07-22
5
min.

Why Is Accountability Important in the Workplace?

2024-07-22
8
min.

The Pros & Cons of Going Teal

2024-07-22
3
min.

The Power of Spotify Squads

2024-07-22
8
min.

Setting Roles Into Your Organization

2024-07-22
6
min.

How to Implement Effective Self-Management in the Workplace

2024-07-22
7
min.

Empowering the right people in the right roles

2024-07-22
7
min.

Our Step-by-Step Guide to Effective Governance Meetings

2024-07-22
5
min.

How to Measure the Success of Holacracy in Your Organization

2024-07-22
5
min.

Integrative Decision-Making VS Consensus

2024-07-22
9
min.

How the Liberated Company Unleashes Your Employees’ Potential

2024-07-22
8
min.

How To Instil Self-Advocacy in Employees and Build Stronger Teams in the Process

2024-07-22
10
min.

💥 How can Scaleups Grow Faster and Successfully by Integrating Strategy into their Organization Structure?💥

2024-07-22
10
min.

Everything you Need to Know About Organizational Health

2024-07-22
4
min.

Finding Your Organization’s Purpose

2024-07-22
15
min.

50 Effective Employee Engagement Strategies

2024-07-22
9
min.

Effective Team Meeting: Strategies, Agendas, and Checklist Included

2024-07-19
8
min.

Why Should you Consider Implementing a Shared Leadership Model?

2024-07-19
10
min.

What is Shared Governance?

2024-07-19
7
min.

5 Tactics to Adapt Your Business to a VUCA World

2024-07-19
5
min.

How Does Employee Engagement Affect Business Results

2024-07-19
6
min.

Agile Trends 2024: What is the Next Wave of Agile Transformation?

2024-07-18
6
min.

What Makes Self-Managed Teams Unique?

2024-07-18
5
min.

The Influence of Company Culture On Employee Engagement

2024-07-18
7
min.

How Does a Flat Organization Actually Work?

2024-07-18
5
min.

Essential Meeting Room Equipment for Modernizing Your Workspace

2024-07-16
9
min.

What Does a Transparent Company Actually Look Like?

2024-07-16
13
min.

What Is Self-Management?

2024-07-16
17
min.

The Best Self-Management Tools for Your Organization

2024-07-16
7
min.

What is Sociocracy? Introducing a Toolkit for Agile Organizations

2024-07-16
8
min.

Teal Organization: Everything You Need to Know

2024-07-16
6
min.

A Guide to Tactical Meetings (Agenda Template Included)

2024-07-16
4
min.

Org Chart Templates and Visual Organization Representation

2024-07-16
7
min.

How to Clearly Define Roles and Responsibilities Within Your Team?

2024-07-16
9
min.

How QoQa Managed to Successfully Implement Holacracy Using Holaspirit

2024-07-16
8
min.

How Great Place To Work Implemented Self-Management Using Holaspirit

2024-07-16
26
min.

Holacracy: Core Concepts, Benefits and Limitations

2024-07-16
8
min.

Example of Company OKRs, How Did They Do It?

2024-07-16
8
min.

8 Best Kept Secrets of High-Performing Agile Teams

2024-07-16
12
min.

5 organizational governance models to make your teams more agile

2024-07-16
6
min.

Les meilleurs outils SaaS pour votre entreprise

2024-07-09
6
min.

Gérer la communication interne d’une association avec Talkspirit : le défi de l’ARSL!