Survey: Employees More Focused On Individual Concerns Than Overall Company IT Security

From prowling social networking sites at work, to overriding their company's installed security so they can access restricted websites, most employees were found to be generally imprudent and ambivalent when it comes to their company's overall security health, according to the 2010 Trend Micro survey on corporate and small business end users.

The survey, which included 1600 end users in the United States., U.K, Germany and Japan, noted that risky practices and attitudes were customary, regardless of country. Beginning with confidential corporate information, roughly 50 percent of those surveyed admitted to divulging employee-privy data through an unsecure Web mail account. End users in the U.S. and U.K. were more likely to admit to having leaked confidential company data than end users in Japan even though they were the most likely to indicate knowing what type of company data is confidential or not.

Mobile workers are more of a liability than their desktop counterparts. Across all countries, 60 percent of mobile workers versus 44 percent of stationary workers admitted to having sent out company confidential information via IM, Web mail or social media applications. In Japan, that number spikes to 78 percent of mobile employees.

In the United States, laptop end users are far more likely to perform non-work related activities while on their company's network than desktop users: 74 percent of laptop users said they checked personal email (58 percent for desktop users); 58 percent said they browsed websites unrelated to work (45 percent for desktop users.)

When it comes to concerns and fears over the damage Web threats can cause, end users consistently ranked personal over corporate. Violation of personal privacy, identity theft or the loss of personal information were the top-stated concerns surrounding insidious threats such as phishing, spyware, Trojans, data-stealing malware and spam. Loss of corporate information and damage to corporate reputation were the least of end users' concerns. For example, 36 percent of U.S. end-users said loss of personal information was their top concern about viruses; only 29 percent expressed concern over the loss of corporate data due to viruses.

Even with corporate security and policies in place, companies can be sure that their employees will find a way to exert their online freedom: Roughly one out of ten users in each country admitted to overriding their corporate security in order to access restricted Web sites. Germany ranked the highest, with 12 percent of its end-users admitting to tinkering with corporate security; this is followed by the U.K., with 11 percent; United States and Japan both had 8 percent.

"These results might be disturbing to IT administrators and small business owners, but they're not all that surprising, especially to those of us who work within the security industry," said David Perry, global director of education, Trend Micro. "The key thing to remember is that there is still potential for redress through the right security technology designed specifically for your company's needs, as well as supportive, consistent employee education that drives awareness."


 

Featured

  • Securing the Future

    Two security experts sit down with Security Today’s editor in chief Ralph C. Jensen to discuss what they see emerging and changing over the next several years along with how security stakeholders can harness these innovations into opportunities. Read Now

  • Collaboration Made Easy Using a Work Management Platform

    Effective collaboration between security operators, teams and other departments is critical to the smooth functioning of organizations. Yet, as organizations grow in complexity, it becomes more difficult for teams to coordinate with each other. This is compounded by staffing shortages, turnover and ineffective collaboration tools. Read Now

  • Creating a Safer World

    Managing and supporting locks and door hardware within a facility is a big responsibility. A building’s security needs to change over time as occupancy and use demands evolve, which can make it even more challenging. Read Now

  • Report: 78 Percent of CISOs Seeing Significant Impact from AI-Powered Cyber Threats

    Darktrace recently unveiled its 2025 State of AI Cybersecurity report. The findings reveal that 78% of Chief Information Security Officers (CISOs) surveyed say that AI-powered threats are having a significant impact on their organizations, a 5% increase1 from 2024. While an increasing number of CISOs report feeling a significant impact from AI threats, more than 60% now say that they are adequately prepared to defend against these threats, an increase of nearly 15% year-over-year. However, insufficient AI knowledge and skills and a shortage of personnel and talent continue to be listed as the two top inhibitors to a successful defense. Read Now

New Products

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.

    Connect ONE®

    Connect ONE’s powerful cloud-hosted management platform provides the means to tailor lockdowns and emergency mass notifications throughout a facility – while simultaneously alerting occupants to hazards or next steps, like evacuation.