Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
Cybersecurity News

Securing Mobile Access in the Age of “Consumerized” IT

By Simon Bain
May 14, 2013

 

As budgets are cut or frozen in today’s stagnant economy, the IT department is under increasing pressure to reduce office costs and effect efficiencies by enabling staff to work away from their desks.

Traditionally, to make workers mobile required a dedicated business laptop or smartphone, along with dongle, token or smartcard – all of which can cost $2,000 per user or more. This has always been a necessary expense for the field marketers, the sales reps and the other “road warriors” within an organisation, but is hardly justifiable to spend this on every employee.

But times are changing, along with attitudes to technology. Most professionals today are used to having enormous computing power in their pockets or briefcases. Consumer devices such as smartphones and tablets are now so powerful and capable that they can replicate most of the everyday functionalities of laptops and desktop computers, and they can even outperform them.

As they become increasingly powerful, consumer devices are creeping into the workplace. This use of personal devices for work has been dubbed the “consumerization of IT.” In other words, as consumer gadgets become ever more sophisticated, so the boundaries between a “work” and a “play” device become increasingly blurred. The fact that we spend more time with, and are consequently more attached to our personal devices naturally drives this trend.

So why are IT departments – so many of which are under pressure to cut costs and boost efficiency and employee mobility – reluctant to sanction the use of personal smartphones and tablets for mobile access?

The main reason – and often the only one – for preventing universal access on personal devices is the lack of security safeguards currently in place on most mobiles. No sane IT manager would allow staff to log-on to corporate networks and download sensitive, confidential data without robust security systems in place.

But the consumerisation of mobile IT has happened so quickly that enterprise-grade security doesn’t feature at all on today’s devices. Take the iPad, for example. This device, revolutionary and marvellous as it is, doesn’t support virtual private networking (VPN). That means anyone who wishes to connect to corporate networks and access content using an iPad – or, for that matter, almost any mobile device – must make a direct connection with the network.

This is a security and compliance officer’s worst nightmare. Not only must they manage every mobile device trying to access the network and ensure that permissions are granted to breach the firewall, but each device is also a potentially huge security threat.

Who knows whether every smartphone has strong anti-virus protection, or if it is infected with password-stealing Trojans? Who can be sure that all employees are strictly following company security policies: for example, not downloading or storing content on their devices? Who can tell if staff mobiles are caching login details, handing network access to anyone who steals or finds a device?

Therefore the IT manager is much more likely to see mobile access as a liability, with each device an open sore in the protective skin of the firewall, through which all sorts of infections can be introduced into the network; or as individual pores through which sensitive business data can leak.

It’s not impossible to achieve a mobile workforce without sacrificing security; in fact, it’s remarkably easy as long as certain conditions are met. First, it’s vital that the workforce all uses a common, secure standard for mobile access, for ease of understanding and of administration. Naturally, data traffic should be encrypted, while user details must not be cached on the device – nor should documents or other content pulled from the corporate network be cached. Finally, there should be no direct connection between the host server and the device that connects to it: this protects the corporate network from unauthorised access, attacks or malware from mobiles.

In the last few months there has been a range of announcements, which are able to help the IT department. Blackberry 10 has “Balance,” enabling users to distinguish and separate out their work and personal lives. Samsung has also announced a similar technology with “Knox.” That also allows the separation of a user’s work and personal smartphone experience. These technologies work well, but need the user or the IT department to change their smartphone with the added costs that this involves.

With other technologies and services coming along all of the time I believe that the IT department needs to start embracing and utilizing what is there and where they can best use it to address security concerns. But not changing the underlying way that the application or hardware device interacts with the user. What Dropbox, Samsung and others have proven to us over the past 24 months is that the user wants things to be simple, hidden, functional and above all uncluttered. Until they start doing that then really they are going to be stuck in the past with big expensive services running applications that the user will try to work around and applications that nobody really wants, which will cause security breaches, malware attacks and user frustration. All of which increases the cost center of the department.

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Simon Bain, Founder and CTO, Simplexo

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Cyber tech background

    Security’s Top Cybersecurity Leaders 2026

    Security magazine’s Top Cybersecurity Leaders 2026 award...
    Security Leadership and Management
  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Security Leadership and Management
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Popular Stories

Opened padlock on computer keyboard

10 Data Breaches to Know About (April 2026)

Laptop with desktop screen showing

Research: Microsoft Edge Loads Stored Passwords in Cleartext

Diverse Team Collaborating on Business Analysis

12 Tips for Building an Effective Security Budget

SEC Podcast Header Podcast

Credential Management in High Turnover Environments

Laptop in darkness

Reframing MFA Bypass: Four Identity Gaps Attackers Exploit

SEC 2026 Benchmark Banner

Events

June 3, 2026

The Role of AI and Video in Measuring Health, Safety, and Security Standards

OSHA fines grab headlines, but most compliance issues start with everyday operational gaps: missed protocols, unsecured areas, or slow response. Learn how emerging technologies & AI can be leveraged towards a more proactive model of compliance.

June 10, 2026

Applying Agentic AI in Security Operations for Faster Decisions & Better Outcomes

Security teams have never had more visibility. We’ll explore how a new decision layer is helping security teams move from detection to decision. Turn alerts into decision-ready context, reducing reliance on manual triage and enabling faster action.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products


The Role of AI and Video - Free Webinar - June 3, 2026

Related Articles

  • Smart watch security

    Securing the Digital Frontier: Strategies for Safeguarding Companies and Customers in the Age of Wearables

    See More
  • Mobile device security at work

    Network vs. mobile device management in the age of remote work

    See More
  • Study: Consumers Rely on Context when Sharing Information/information security, personal information theft, consumer trust, retail security

    Mitigating fraud in the age of BOPIS: Where retailers can make a change

    See More

Related Products

See More Products
  • physical security.webp

    Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

  • Security of Information and Communication Networks

  • Physical Security and Safety: A Field Guide for the Practitioner

See More Products

Events

View AllSubmit An Event
  • July 17, 2025

    Tech in the Jungle: Leveraging Surveillance, Access Control, and Technology in Unique Environments

    ON DEMAND: What do zebras, school groups and high-tech surveillance have in common? They're all part of a day’s work for the security team at the Toledo Zoo. Learn how this dynamic public environment leverages cutting-edge security technologies to protect people, animals and assets.
View AllSubmit An Event
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing