Survey: Removable Media Devices Overtake Web Viruses As Top Security Threat

Removable media devices now present the biggest threat to corporate security, according to research conducted at this year’s InfoSecurity Europe conference in London. However, the research conducted by Centennial Software found that four out of five companies do not have effective measures in place to protect against the threat the devices can pose.

More than 43 percent of those questioned have no controls whatsoever in place to manage removable media devices, 27.4 percent leave it to the manager’s discretion, and 8.6 percent have taken the drastic step of introducing a company-wide ban. Only 16.4 percent use endpoint security software to manage the potential risks effectively. This is despite a raft of recent media stories surrounding insider data theft using removable media.

But companies are not ignorant of the risk. In a significant development for Centennial’s annual “Security Attitudes Survey”, 2007 saw removable media devices rated by 38.4 percent of respondents as the top security issue facing their organization. The risk has taken over from Web viruses (23.7 percent) and malware/spyware (22.3 percent) for the first time.

While more company officals in 2007 said they do include removable devices in the acceptable use policies (63.4 percent versus 54.5 percent last year), with more USB sticks than ever in use on the network (65.6 percent regularly use USB sticks, up from 36.3 percent last year), it’s not enough to rely on a policy, according to Centennial.

“It’s long been recognized that human error leads to the majority of information security problems,” said Matt Fisher, vice president at Centennial. “Leaving the use of removable devices at the discretion of staff exacerbates the risks posed by these devices -- especially when a minority of employees may have reasons for wanting to steal or compromise data.

“A larger proportion of companies than last year said they had no controls for managing removable devices in place -- 43.3 percent versus 38.5 percent last year. This is an alarming trend; if organizations recognize the risks of data loss, theft and damage from USB sticks, smartphones and MP3 players, they need to take action to manage the threat and protect their data.”

The third annual “Security Attitudes Survey” was conducted over the three days of Infosecurity Europe and was completed by more than 370 mid and senior level IT managers.

Featured

New Products

  • Mobile Safe Shield

    Mobile Safe Shield

    SafeWood Designs, Inc., a manufacturer of patented bullet resistant products, is excited to announce the launch of the Mobile Safe Shield. The Mobile Safe Shield is a moveable bullet resistant shield that provides protection in the event of an assailant and supplies cover in the event of an active shooter. With a heavy-duty steel frame, quality castor wheels, and bullet resistant core, the Mobile Safe Shield is a perfect addition to any guard station, security desks, courthouses, police stations, schools, office spaces and more. The Mobile Safe Shield is incredibly customizable. Bullet resistant materials are available in UL 752 Levels 1 through 8 and include glass, white board, tack board, veneer, and plastic laminate. Flexibility in bullet resistant materials allows for the Mobile Safe Shield to blend more with current interior décor for a seamless design aesthetic. Optional custom paint colors are also available for the steel frame.

  • AC Nio

    AC Nio

    Aiphone, a leading international manufacturer of intercom, access control, and emergency communication products, has introduced the AC Nio, its access control management software, an important addition to its new line of access control solutions.

  • ComNet CNGE6FX2TX4PoE

    The ComNet cost-efficient CNGE6FX2TX4PoE is a six-port switch that offers four Gbps TX ports that support the IEEE802.3at standard and provide up to 30 watts of PoE to PDs. It also has a dedicated FX/TX combination port as well as a single FX SFP to act as an additional port or an uplink port, giving the user additional options in managing network traffic. The CNGE6FX2TX4PoE is designed for use in unconditioned environments and typically used in perimeter surveillance.