Hybrid Work: How to Secure Company and Employee Data

Talkspirit
2020-03-12
4
min.

Temps de lecture: 4 minutes

With the boom in hybrid work linked to the Covid-19 crisis, hackers are redoubling their efforts to break into computer systems. Thus, according to a 2020 Tanium study, 90% of companies have recorded an increase in cyberattacks since March 2020. Knowing that a cyberattack costs a VSE or SME¹ about €35,000, this risk is not to be taken lightly! To fight against this growing threat, the IT Department must, more than ever, invest in IT security. In this article, we present the main cyber-risks to be taken into account, and the best practices to adopt to secure the data shared by your employees working remotely.

What are the cyber-risks?

Phishing

Phishing, which involves collecting company data for malicious use, is the leading cause of computer security incidents in a remote work environment. This is the conclusion of Tessian’s “Securing the Future of Hybrid Working” report. For example, between March and July 2020, one in three organizations saw an increase in ransomware attacks from phishing emails. These figures are also confirmed by a 2020 Deloitte study, according to which 25% of employees have observed an increase in fraudulent emails and phishing attempts since the beginning of the Covid-19 crisis.

Internal threats

In addition to phishing, internal threats are also involved: according to Tessian, 43% of security incidents are related to phishing. For example, between March and June 2020, nearly half of all companies were victims of data leakage.² These internal threats, which are often the result of negligence on the part of employees, are the most difficult for the IT department to control. The best way to avoid these dangerous behaviors is to give greater visibility to cyber risks, raise employee awareness, and set up control mechanisms to prevent certain behaviors (for example: employees copying company data when they leave).

BYOD

Popularized in the 2000s, the BYOD (Bring Your Own Device) policy is increasingly used in companies, especially by teleworkers. According to the 2018 Bitglass report, 85% of companies would allow their employees to work on their personal devices. But if not properly managed, such a policy can significantly increase cyber risks, such as data loss or leakage, phishing, virus infiltration or shadow IT.

Many companies have little or no awareness of these risks among their employees. For example, more than half of the employees who worked remotely during the first confinement said they had not received any training to combat cyber threats.³

The multiplication of devices used, especially smartphones, is also an important element to take into account. Indeed, according to the Verizon Mobile Security Index 2020, almost 40% of companies report having faced an attack on their employees’ mobile devices

Shadow IT

Finally, teleworking and BYOD also tend to increase  shadow IT, i.e. the use of hardware or software not authorized by the IT department. This phenomenon, which makes organizations more vulnerable to cyber attacks, lacks visibility. According to CESIN’s Shadow IT report, employees use an average of 1,700 cloud applications in a company, while the IT department only lists 30 to 40. 

As a result, almost 50% of CIOs consider this to be a major risk while working remotely.⁴ However, only 22% of companies say they have strict rules in place to manage this threat.⁵

CIO best practices

This part of the article is taken from the White Paper “Future of Work: Make Way for Hybrid Work! “>>> access full white paper for free]

Securing the work environment

To guarantee data security, the IT department must give priority as much as possible to the use of equipment provided by the company, which will have been secured beforehand. If your company nevertheless wishes to maintain a BYOD policy, you should not forget to give clear security guidelines to employees on what they must do to minimize cybersecurity risks.

The CIO (Chief Information Officer) can also set up a virtual private network (VPN), which will protect the confidentiality of company data, even when employees are working remotely. In addition, a mailbox or a dedicated conversation group (on your internal social network, for example) can be created to report any security problems.

Working in hybrid mode also means centralizing all your data on a private cloud, which will allow employees to access their documents anytime and anywhere. However, the company will need to ensure that the data is hosted in Europe, and not in the United States, so that it cannot be transmitted to the American authorities (in accordance with the Cloud Act). 

Accompanying and training employees

Employees are not always aware of cybersecurity threats. It’s therefore essential to make them aware of this subject, and to teach them how to recognize fraudulent emails. For example, the company can give employees a checklist of best practices to implement: using a password manager, activating two-factor authentication, regularly updating applications, using only one’s professional computer for work, and so on. 

Also read: How to Reconcile Digital Workplace and Cybersecurity?

In order to minimize shadow IT, the CIOt must provide employees with a list of authorized applications, but also remain attentive to their needs and let them know that he remains open to the implementation of new tools.

Implementing the right tools

If the current tools do not seem to meet the needs of employees, the CIO can encourage employees to share the applications they use. He can then check whether these tools are sufficiently secure for the organization and, if not, suggest alternatives that are more suitable. 

Switching to a hybrid work mode requires companies to implement tools that are adapted to the new ways of working of employees, and enable them to communicate and collaborate remotely. To take advantage of all these features, many companies are choosing the digital workplace: a secure virtual office that brings together all the applications used by employees in the same place.

Also read: What Are the Best Digital Workplace Solutions?

*
*   *

To guarantee the security of your company’s data, whether you are working from home or in the office, you must first and foremost make your employees aware of the challenges of cybersecurity, particularly through training, but also by disseminating best practices. Choosing the right tools is also essential. Indeed, when employees have modern tools that are really adapted to their needs, they’re less likely to download applications without the knowledge of the IT department. The company is then less vulnerable to cyber attacks. 

Do you want to know more about the challenges and best practices of a hybrid way of working combining telework and office work? Read our white paper on this subject:

Access White Paper

In our white paper “The Future of Work: Make Way for Hybrid Work!” you’ll discover the eight main challenges of hybrid work; the best practices to be adopted by managers, HR, internal communication, IT and employees; and the tools to be implemented to facilitate hybrid work.

Download


¹2020 Hiscox Article
22020 Tessian Report “Securing the Future of Hybrid Working”
³April 2020 CrowdStrike Study
⁴April 2020 Checkpoint Study
2020 ManageEngine Report

_
Author: Emmanuelle Abensur

Inscrivez-vous à notre newsletter
En vous inscrivant vous acceptez notre politique de confidentialité et consentez à recevoir des nouvelles de notre entreprise.
Envoyer
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
ALLER PLUS LOIN

Vous avez les ressources pour passer à l’action

2025-03-17
10
min.

Les 3 tendances clés du développement durable à suivre en 2025

2025-03-17
9
min.

Lean Management Implementation: How to Get Started?

2025-03-10
6
min.

3 Methods for Reducing Employee Turnover

2025-03-10
9
min.

Comment QoQa a réussi à mettre en place l'Holacratie avec Talkspirit

2025-03-03
11
min.

Mettre en place le self-management avec Talkspirit : témoignage de Great Place To Work

2025-03-03
8
min.

How Can I Measure My Company's Social and Environmental Impact?

2025-02-25
10
min.

Qu’est-ce que la sociocratie ? Un guide complet pour les organisations agiles

2025-02-24
7
min.

3 Sustainability Trends To Watch In 2025

2025-02-17
10
min.

Management toxique : de quoi s’agit-il, et comment y faire face ?

2025-02-17
10
min.

[Expert Opinion] How Can We Improve Diversity, Equity and Inclusion in the Workplace?

2025-02-10
28
min.

Qu'est-ce que la méthode OKR ? Définition, avantages et exemples

2025-02-10
9
min.

[Expert Opinion] How to Build Resilience in the Workplace?

2025-02-10
30
min.

Holacratie : définition, concepts clés, avantages et limites

2025-02-03
6
min.

Improving Nonprofit Governance with Talkspirit: A Testimonial from the French Association of Diabetics

2025-02-03
10
min.

Qu'est-ce que le self-management ?

2025-01-30
10
min.

Le guide ultime pour faire des réunions de triage efficaces (+ un modèle d'ordre du jour inclus)

2025-01-30
9
min.

How to Train Your Managers to be Better Leaders

2025-01-27
6
min.

Qu'est-ce que la gouvernance partagée ?

2025-01-27
8
min.

Using Biomimicry as a Lever for Business Innovation and Resilience

2025-01-24
7
min.

Top 10 Technology Trends in 2025, According to Gartner

2025-01-22
5
min.

Ignite Potential: A New Chapter for Talkspirit

2025-01-07
9
min.

Managers : 10 bonnes résolutions à prendre en 2025

2025-01-02
7
min.

Top HR Trends in 2025, According to Gartner

2024-12-26
6
min.

5 Strategies That Can Help Improve Employee Autonomy at Work

2024-12-19
6
min.

HR: Watch Out for These Employee Burnout Signs

2024-12-17
8
min.

[Parole d’expert] Comment cultiver la résilience en entreprise ?

2024-12-12
min.

[Expert Opinion] Elmy’s Journey to Becoming a Mission-Driven Company

2024-12-10
8
min.

23 exemples d’actions RSE à lancer dans votre entreprise

2024-12-09
8
min.

Harnessing the Power of Agile Practices in Knowledge Management

2024-12-09
5
min.

Regenerative Business: the Trend Taking Companies by Storm

2024-12-05
10
min.

Why Boreout at Work is More Dangerous than Burnout

2024-12-05
6
min.

How can companies combine digital sobriety with well-being at work?

2024-12-03
6
min.

Améliorer la gouvernance associative avec Talkspirit : témoignage de la Fédération Française des Diabétiques

2024-11-29
7
min.

Agile Methodology: What Are the Pros and Cons for Businesses?

2024-11-28
6
min.

ESG and CSR: The Winning Duo for a Responsible Business Strategy

2024-11-26
8
min.

Les 10 tendances technologiques de 2025, selon Gartner

2024-11-21
7
min.

How Can I Set Up My Own Continuous Improvement Plan?

2024-11-20
min.

Adhocracy: Definition and Benefits

2024-11-19
8
min.

Les tendances RH de 2025, d'après Gartner

2024-11-19
8
min.

Creating OKRs Aligned with Your ESG Goals: a Step-by-Step Guide

2024-11-14
7
min.

Putting Biomimicry to Work in the Workplace: 10 Examples

2024-11-13
8
min.

Implementing Accessibility in the Workplace: Key Strategies and Best Practices

2024-11-13
6
min.

8 Steps to Create a Collective Intelligence Framework that Speeds Up Decision-making

2024-11-12
7
min.

Comment mesurer l’impact social et environnemental d’une entreprise ?

2024-11-07
8
min.

Using OKR for Project Management: Do’s and Don’ts

2024-11-07
7
min.

Management agile : 7 clés pour embarquer vos équipes

2024-11-07
5
min.

Meta Meltdown: What Can We Learn from the Workplace Closure?

2024-11-06
8
min.

How Can You Promote Sustainable AI in the Workplace?

2024-11-04
5
min.

Collaborative Platform: Definition and Challenges

2024-11-03
5
min.

20 collaborative tools to improve employee productivity

2024-10-29
8
min.

Parole d’expert : Comment améliorer l’équité, la diversité et l’inclusion en entreprise ?

2024-10-28
6
min.

7 Best Practices for Leveraging Emotional Intelligence as a Leadership Tool

2024-10-23
7
min.

RH : Les symptômes de burnout auxquels il faut être attentif

2024-10-17
7
min.

Améliorer l’autonomie au travail, c’est possible avec ces 5 leviers

2024-10-10
5
min.

Do Purpose-Driven Companies Outperform Traditional Ones?

2024-10-09
10
min.

Best Leadership Practices for Boosting Employee Engagement

2024-10-08
7
min.

[Parole d’expert] Comment devenir une entreprise à mission ?

2024-10-08
6
min.

Turn your employees into ambassadors for your enterprise social network!

2024-10-01
8
min.

How Does AI Impact Employees Within an Organization?

2024-10-01
6
min.

How can AI shape the future of self-management: insights from the academic literature

2024-10-01
7
min.

10 exemples d’utilisation du biomimétisme en entreprise

Article
2024-10-01
6
min.

Gartner’s 10 technology trends for 2024

2024-09-30
9
min.

What Participative Decision-Making Can Bring to Your Organization

2024-09-30
8
min.

How the Next Generation Company Is Redefining the Future of Work

2024-09-30
6
min.

How Do You Tactfully Handle a Micromanaging Boss ?

2024-09-30
8
min.

How Do You Give Constructive Feedback to Your Peers in a Self-Managing Organization?

2024-09-30
8
min.

How Consent-Based Decision-Making Works

2024-09-30
8
min.

From Corporate Hierarchy to Agility: How to Create Engaged and High-Performing Teams?

2024-09-30
7
min.

Driving Culture Change with Holaspirit: Insights from Welser Profile

2024-09-26
6
min.

5 Interesting Ways AI Can Transform Knowledge Management Processes

2024-09-17
7
min.

Critères ESG : pourquoi et comment les intégrer dans votre stratégie RSE ?

2024-09-10
10
min.

How Can You Improve Organizational Agility in the Workplace?

2024-09-10
5
min.

L’entreprise à impact : LA réponse aux défis du développement durable

2024-09-09
9
min.

How to Improve Cross-functional Team Collaboration

2024-09-05
6
min.

[Expert Opinion] Amicio’s Best Practices for Agile and Effective collaboration

2024-09-03
6
min.

Les entreprises à mission sont-elles plus performantes que les entreprises traditionnelles ?

2024-08-29
7
min.

Raison d’être, vision, mission : de quoi parle-t-on ?

2024-08-29
7
min.

Performance Management: 4 Keys to Building Effective Teams

2024-08-22
6
min.

Managers: 8 Hacks for Improving Teamwork Efficiency

2024-08-20
6
min.

Entreprise régénérative : de quoi parle-t-on ?

2024-08-13
6
min.

7 techniques éprouvées pour responsabiliser ses collaborateurs

2024-08-12
6
min.

Sustainable performance: the art of combining productivity and social responsibility

2024-08-09
6
min.

How Do I Set Up My Internal Communication on Corporate Social Responsibility (CSR)?

2024-08-08
6
min.

5 Examples That Show How Different Organizations Can Leverage the Same Collaborative Platform

2024-08-06
6
min.

[Webinaire] Opportunités et risques de l’IA : ce que les entreprises nouvelle génération doivent absolument savoir !

2024-08-04
5
min.

How to implement an enterprise social network in your company

2024-08-02
7
min.

How will artificial intelligence transform the way we work?

2024-07-30
7
min.

Nos 15 podcasts de management préférés

2024-07-25
8
min.

Key Employee Engagement Data from Gallup's 2024 Study

2024-07-25
10
min.

13 Icebreaker Ideas for More Dynamic Team Meetings

2024-07-23
7
min.

6 bonnes pratiques pour améliorer la cohésion d’équipe

2024-07-22
5
min.

Why Scale Ups Opt for a Self-Management Tool?

2024-07-22
5
min.

Why Is Accountability Important in the Workplace?

2024-07-22
8
min.

The Pros & Cons of Going Teal

2024-07-22
3
min.

The Power of Spotify Squads

2024-07-22
8
min.

Setting Roles Into Your Organization

2024-07-22
6
min.

How to Implement Effective Self-Management in the Workplace

2024-07-22
7
min.

Empowering the right people in the right roles

2024-07-22
7
min.

Our Step-by-Step Guide to Effective Governance Meetings

2024-07-22
5
min.

How to Measure the Success of Holacracy in Your Organization