remote use · soti mobicontrol ˙˝ %˙ " ... lost storage cards firewall / vpn os updates pin...

23

Upload: others

Post on 03-Oct-2020

5 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

��������

��� �

�������

��������

��� �

�������

Page 2: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Windows Centric (knowledge, dominance, Linux secure)IT Security PoliciesLaptopsPDAsSmartPhonesMemory SticksOut of scope – Wireless, Linux

����������

Page 3: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Accidentally excludedDifficulty of applyingPower users overrideDisposalPrivate vs CorporateRemote Use

������������ ����������������� �����

Page 4: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

� ����������������� �

�������!

� ����������������� �

�������!

High valuePortableLimited lifespan –

� Disposal policy� O/S version

Corporate policiesPower Users – data value vs equip

Page 5: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

� ���������������� �

��"��#�$ �%����&��

� ���������������� �

��"��#�$ �%����&��

Highly mobile

High risk of theft

New technology

Totally ignored in IT policies

Disposal policy

Targeted by professional criminals

Page 6: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Choose a secure operating system and lock it down

Enable a strong BIOS password

Asset Tag or Engrave the laptop

Register the laptop with the manufacturer

��� %� ������

������

��� %� ������

������

Page 7: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Get a cable lock and use it

Use a docking station

Lock up your PCMCIA cards

��� %� ������

��������

��� %� ������

��������

Page 8: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Consider other devices � Biometric / Smart Cards� Alarms� Storage Cabinets� USB Security

��� %� ������

��������

��� %� ������

��������

Page 9: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Use the NTFS file systemRename the Administrator AccountConsider creating a dummy Administrator accountPrevent the last logged-in user name from being displayedGroup policies - screen saver and login

��� %� ������

������

��� %� ������

������

Page 10: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Use a personal firewall on your laptop

Use tracking software

Disable the Guest Account vs Leave a dummy account , with internet access

��� %� ������

������

��� %� ������

������

Page 11: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Disable the Infrared Port

Backup your data before you leave

Consider using offline storage for transporting sensitive documents

OS Updates ??

Forensics

��� %� ������

������

��� %� ������

������

Page 12: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Encryption depends on OS� XP Pro� XP Home� W2K

Enable EFS (Encrypting File System)� Cmd - cipher /?� Backups / recovery

PGP (depends on OS)

��� %� ������

����������

��� %� ������

����������

Page 13: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

No place is safe

Use a non descript carrying case

Beware of payphones...

When traveling by air....

When traveling by car...

��� %� ������

����������

��� %� ������

����������

Page 14: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

While staying in a hotel...

When attending conventions and conferences...

Make security a habit

��� %� ������

����������

��� %� ������

����������

Page 15: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Mobile Policies

Data Sync

Mobile Access

Corporate vs Personal

Management� Soti Mobicontrol

��� %���"��

������

��� %���"��

������

Page 16: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Electronic Shielding Device �Mobile Cloak

Finger prints

Smart cards

��� %���"��

�������

��� %���"��

�������

Page 17: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Remote destruction and disabling� Stolen� Lost

Storage cardsFirewall / VPNOS UpdatesPINBit WipingForensics

��� %���"��

������

��� %���"��

������

Page 18: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Airscanner Mobile Antivirus Pro (Pocket PC)PocketLockAirscanner Mobile Firewall (Pocket PC)Airscanner Mobile Encrypter(Pocket PC)Airscanner Mobile antivirus (Smartphone)Sprite Backup StandardSprite Backup Premium

eWallet for WindowS Mobile Pocket PCeWallet for Windows Mobile SmartphoneSecretAgent Mobile for Pocket PC 2003Spb Kiosk Explorer for Pocket PCSpb Kiosk Engine for Pocket PCSOTI Pocket Controller-ProfessionalSOTI Pocket Controller-Enterprise (4 Device License)SafeGuard

��� %���"��

������

��� %���"��

������

Page 19: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

Policy DrivenUsefullnessForensicsUse Secure Devices – ie.� �������������� ����� ������ ����������������

��� %��$ �%'����(���� %��$ �%'����(�

Page 20: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

��������)�

����% ����&

��������)�

����% ����&Cellphones� http://www.wirelessrecycling.com/home/data_eras

er/default.asp� See attached pdf

Laptops – removal of data prior to disposal� http://www.webroot.com/� ����������������������� ��������� ���� �������������������������� ���������������

Smart PhonesForensics

Page 21: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

*�����*�����SA is behind states in laptop tracking

�����

���������������� !"�

������#�������$�������%����$��������������

Page 22: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

�%�+���,�%�+���,www.labmice.net

www.secureit-usa.comwww.geekzone.com

www.bluefiresecurity.comwww.soti.net

www.mobilecloak.comwww.pointsec.com

www.cert.orgwww.pcworld.comwww.kanguru.com

Page 23: Remote Use · Soti Mobicontrol ˙˝ %˙ " ... Lost Storage cards Firewall / VPN OS Updates PIN Bit Wiping Forensics ˙˝ %˙ " ˘ Airscanner Mobile Antivirus Pro (Pocket PC) PocketLock

�%�+���-�%�+���-http://www.cisco.com/VPN gateways for PDA VPN

http://www.freewarepalm.com/Data encryption

http://www.certicom.com/VPN clients for PDAs

http://www.mobilecloak.com/Electromagnetic shielding bag

www.dentonsoftware.com/Secure databases and authentication solutions

www.f-secure.com/Anti-virus, encryption, authentication solutions

www.asolutions.com/Hotsync security and IrDa port security, database security, password enforcement, bit wiping

www.pointsec.com/Encryption and authentication solutions

www.paraben-forensics.com/PDA forensics tools

www.trustdigital.com/Password protection, hotsync protection, data encryption, bit wiping, VPN client