The Internal Threat

We almost always talk about security in terms of the external, the bad guys out there, doing bad things.

Today, we’re going to talk about those other icky-type people: Employees. 

From the CEO/HR standpoint, the first thing you need to do is keep an eye out for employees who are being terminated/fired/let go. In a lot of cases this will create bad blood and some people act on it. You need to make sure there’s a process in place and that the process is followed. This will minimize the amount of damage that a disgruntled employee can do once they’ve been fired. In other words, their passwords need reset, their equipment needs to be returned and it needs to be clearly stated that their relationship/employment ends at a certain point.

This also includes physical access to the location. Tragically, it often is a former/disgruntled employee who brings physical violence to the workplace.

The second thing to look out for is, honestly, reputation. If an employee has a reputation among coworkers that they don’t care about the security, or they’re violating the policies and they’re taking shortcuts, “Yeah, it’s in the policies & procedures, but that doesn’t count for me!”, are all signs that that person may create a scenario where your organization can be harmed from an outside source, or they might be doing it themselves. So keep an eye out & ask employees to point out when they’re seeing gross violations of security policies. Not necessarily as a “you’re ratting them out,” because in some cases, it hasn’t been communicated effectively.

So, as CEO, as HR directors, you have a responsibility, even though some of this stuff is technical, you still have a responsibility to make sure the culture of your organization takes security seriously.

Bob Coppedge

About Bob Coppedge

Simplex-IT, CEO

Bob is the CEO of Simplex-IT. He has over 40 years’ experience in IT (Information Technology and in 2007 he created Simplex-IT to be the “good guys” in the IT world, specializing in making IT work for small to medium businesses and to “Simplify the Complex”. Bob is an industry leading expert with the ability to translate tech talk into everyday language. Bob has authored three books “The MSP’s Survival Guide to Co-Managed IT services”, “A CEO’s Survival Guide to Information Technology”, and his latest “I Don’t Want Your Job: Is Co-Managed IT services the Right fit for You?”. Bob regularly speaks at various national and area events, including IT Nation, DattoCon, Private Directors Association and more.

Connect with Bob on LinkedIn: https://www.linkedin.com/in/rlcoppedge/

Previous
Previous

The Ident-i-Eeze

Next
Next

Stop Power Cycling Your Batteries