Subscribe

Avoiding the insider threat

Businesses must be mindful of the need to avoid inadvertent disclosure of their sensitive information or IP, says Simon Campbell-Young, CEO of Phoenix Distribution.


Johannesburg, 19 Mar 2014

The inadvertent disclosure of sensitive data can happen in a flash. Whether it is an employee posting to a micro-blogging site, or carrying documents containing confidential information in plain sight of anyone who walks past, these disclosures can be devastating to both a company's bank account and its reputation.

Business across all industries and of all sizes must be mindful of the need to avoid inadvertent disclosure of their sensitive information or intellectual property, says Simon Campbell-Young, CEO of Phoenix Distribution. "The ways in which data can be disclosed are influenced by both online and offline activity. For example, as social networking becomes more and more pervasive, the lines between work and home are fuzzing."

He says companies must be cognisant of the fact that information posted on social media sites is harvested by organisations and sold for marketing and other purposes. "These sites are under no obligation to protect information on companies that is posted by their employees. In this way, a business' data could be at risk, if posted on a site that is not in the business' control. Companies should ensure they have a policy in place to prevent their data from being posted on any third party Web site, unless specifically allowed. Similarly, policies governing the use of social media among staff should be in place."

Another issue, he says, is the opening of documents in third-party applications. "Sharing data with applications such as Facebook, Twitter and Dropbox, can pose some serious risks. Staff may be cautious when forwarding an email, but they are less likely to consider the 'Open In' function, and might well be unconsciously leaking information. Remember, that today's workers are more likely than not to be using their personal devices - smartphones, tablets, laptops - as work machines, and while BYOD definitely boosts productivity, opening sensitive data in apps that aren't controlled by the business is a risk."

Similarly, he says using file transfer apps can also be dangerous, but when sending really large files, using these as a shortcut that bypasses policy can be tempting.

In terms of e-mail, Campbell-Young says businesses should educate their staff on how best to secure any company e-mail. "Policies that forbid the forwarding of proprietary company data to personal e-mail accounts should be in place. Regardless of whether the intention is to work from home, it is important to remember that it not the responsibility of e-mail providers to protect confidential information at the level that a business may protect its information."

In addition, most employees think it isn't a problem to transfer work documents to personal computers, tablets or smartphones. "While this isn't necessarily a danger per se, most of these files are not deleted, as employees don't consider how keeping these files may be dangerous. USB thumb drives, smartphones and tablets - all of these can easily be lost or stolen, or just left lying around containing an organisation's private and sensitive data."

"Your information is already out there, and cyber crooks have it in their sights. If you're lucky, they'll only access the most harmless stuff, but too often this is not the case. It's hardly news that we live in a world controlled by cyber crooks, who are cunning and sophisticated, and are already breaking into every valuable store of information they can find. Our only hope is to make this as difficult as possible, and certainly not help them through our own carelessness," Campbell-Young concludes.

Share

Phoenix Distribution

Phoenix Distribution is currently the leading value added distributor of software, accessories and peripherals across the African continent, covering software publishing, localisation and product distribution across multiple territories in multiple languages.

The business is segmented into two divisions, namely corporate software licensing and retail product distribution, and Phoenix Distribution dominates the consumer and SMB security sectors through key brands which include: Norton/Symantec, AVG, Kaspersky and Bitdefender. Additional brands within the consumer-focused range include, Microsoft software and peripherals, Beats by Dr Dre, Trendnet Wireless products, Monster Cables and mobile accessories.

The corporate licensing division sells volume licensing into the enterprise and SMB reseller environments, as well as covering architecture and implementation. The ESD division delivers download content into all channels, including B2B and B2C.

The retail division delivers physical product into the retail environment, covering all mainstream ICT, CES, telco, lifestyle, fashion and sports outlets, as well as independents and online stores. This division delivers direct to outlets and or customers across sub-Saharan Africa.

Phoenix Distribution is growing at 70% per annum, with additional acceleration coming from development within the greater African marketplace, as well as the acquisition of significant high-end product lines within the enterprise arena. In addition, the company's UK business, PX Security, is firmly entrenched within the UK retail and SMB reseller environments, shipping product through trusted distribution partners into mainstream retail outlets and direct engagement with B2B resellers. The UK operation publishes and distributes Bitdefender, Webroot and Avast.

Additional bespoke services offered to partners include electronic software distribution within the B2B and B2C environments, category management, training and end-to-end merchandising.

Phoenix Distribution, including the UK subsidiary PX Security, was recently acquired by First Technology Holdings.

For more information, visit www.phoenixsoftware.co.za, Www.pxsecurity.co.uk and www.pxsoftware.co.za.

For purchasing information in Africa, visit www.kasperskyafrica.com, www.kasperskyangola.com, www.kasperskybotswana.com, www.kasperskymozambique.com, www.kasperskynamibia.com, www.kasperskysouthafrica.com, www.kasperskydrcongo.com,
www.kasperskyzimbabwe.com, www.kasperskyzambia.com, www.antivirusangola.com, www.antivirusbotswana.com, www.antivirusmozambique.com, www.antivirusnamibia.com, www.antivirussouthafrica.com, www.antivirusdrcongo.com, www.antiviruszimbabwe.com, and www.antiviruszambia.com

Editorial contacts

Mia Andric
Exposure
mia@exposureunlimited.net