Malware top risk of employee social networking
By Martin James,
Malware has topped the list of a new white paper from IT governance group ISACA, listing the top five risks involved in employees accessing social networking tools in the workplace.
The report, entitled Social Media: Business Benefits With Security, Governance and Assurance Perspectives, pointed to the huge popularity of sites like Facebook and Twitter proving increasingly attractive to online criminals.
Next on the list came brand hijacking, followed by lack of content control, non-compliance with rules over record keeping, and unrealistic expectations of internet performance.
Whilst it is generally acknowledged that allowing access to social networks in the workplace increases the risk to the company's systems, the picture is becoming more complicated by the number of employees using their own hardware to access the company network, and the increasing practice of using social networks for business purposes.
For this reason, ISACA urges that the traditional line adopted by many companies of simply blocking access is no longer a viable solution. Instead, it says sensible levels of access should be allowed, and companies should take responsibility for better educating employees as to the risks involved.
“Historically, organisations tried to control risk by denying access to cyberspace, but that won't work with social media,” said ISACA vice president Robert Stroud, in a statement.
“Companies should embrace it, not block it. But they also need to empower their employees with knowledge to implement sound social media governance.”
The document also highlighted that whilst the biggest risk to companies – malware – is an external threat, the rest of the list are all factors relating to employee behaviour and their understanding of what actually constitutes “risky behaviour”.
“The greatest risks posed by social media are all tied to violation of trust,” said ISACA Certification Committee member John Pironti.
“Social media is built on the assumption of a network of trusted friends and colleagues, which is exploited by social engineering at great cost to companies and everyday users. That is why ongoing education is critical.”
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Malware Analysis & Insight
Macs under attack?
It's arguable that the recent Flashback Trojan episode has been the tipping point when it comes to changing the face of the Mac security threatscape. But who is targeting OS X and iOS devices, how are they doing it and should the average business user be worried? Davey Winder investigates...
- Are you spending too much on IT security?
- The truth about spam
- Q&A: Symantec’s CISO on the source code hack
- Will the FBI close down your online business this March?
- Do British police get cyber security?
- Who to trust after the VeriSign hack?
- Striving to solve the security skills crisis
- My email address is [CENSORED]
- 2011: The year in news
Latest Malware Reviews
CronLab Pro 2000 Anti-Spam Appliance review
Rating: ![]()
advertisement
Most popular
- Apple iPad 3 vs iPad 2 head-to-head review
- Dell EqualLogic PS6100XS review
- Chromebooks: What's gone wrong?
- ICO: Fines for cookie law breakers
- UK regulator shuts down Angry Birds scam
- Open source software driving cloud-based innovation
- Fujitsu targets enterprises with Android ICS tablet
- IBM bans use of Siri on iPhones
- Dell PowerEdge R820 review
- BlackBerry 7 OS certified to carry 'Restricted' UK government information
Latest News Videos in Malware
Video: Eugene Kaspersky outlines security threats
IT PRO speaks to Eugene Kaspersky, chief executive and founder of Kaspersky Lab.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





