Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Security-Management
[Top] [All Lists]

Access from home/public computer

Subject: Access from home/public computer
Date: Thu, 17 Nov 2005 09:23:42 -0600

With advances in technology and the push to make information on our network 
accessible anywhere, we're getting a push to open up access to things like 
e-mail and our corporate Internet to home users or travelers using public 
computers.  Obviously there are some risks associated with allowing this type 
of access.  Among them:
*       No control over what security measures are installed on the non-company 
owned workstation (AV software, Anti-spyware, Personal Firewalls, etc.).
*       The user may accidentally or intentionally store sensitive information 
on the workstation.
*       Public places in particular lend themselves to things like shoulder 
surfing.

What stance are your companies taking on access to corporate resources from a 
non-corporate workstation?  Is it allowed?  Do you have any technical controls 
in place to monitor what is being done?  Do you provide security controls for 
home users?  Have you just established a policy and educated your users on the 
risks?

I'd appreciated any input you have.  Thanks in advance for your help.

John Kuisle - CISSP
Information Security Supervisor
Federated Mutual Insurance
507-455-5477

This e-mail and its attachments are intended only for the use of the 
addressee(s) and may contain privileged, confidential or proprietary 
information. If you are not the intended recipient, or the employee or agent 
responsible for delivering the message to the intended recipient, you are 
hereby notified that any dissemination, distribution, displaying, copying, or 
use of this information is strictly prohibited. If you have received this 
communication in error, please inform the sender immediately and delete and 
destroy any record of this message. Thank you.

<Prev in Thread] Current Thread [Next in Thread>