7 Risks Dropbox Poses to Your Corporate Data

Similar documents
7 Risks of Dropbox to Your Corporate Data

Bring Your Own Device (BYOD) and Mobile Device Management

BRING YOUR OWN DEVICE (BYOD) AND MOBILE DEVICE MANAGEMENT

Comparing Alternatives for Business-Grade File Sharing. intermedia.net CALL US US ON THE WEB

Bring Your Own Device (BYOD) and Mobile Device Management. tekniqueit.com

Bring Your Own Device (BYOD) and Mobile Device Management.

The Challenge of Securing and Managing Data While Meeting Compliance

BYOD File Sharing Go Private Cloud to Mitigate Data Risks

SECURE FILE SHARING AND COLLABORATION: THE PATH TO INCREASED PRODUCTIVITY AND REDUCED RISK

BYOD File Sharing - Go Private Cloud to Mitigate Data Risks. Whitepaper BYOD File Sharing Go Private Cloud to Mitigate Data Risks

SOOKASA WHITEPAPER CASB SECURITY OVERVIEW.

Do you want to mobilize your entire work process efficiently? Do you want to protect your most valuable asset data?

Mobilize SharePoint Securely: Top 5 Enterprise Requirements

BYOD AND ME. How cell phone hacking effects your business.! Richard Rigby CEO Wraith Intelligence

Powered by. FSS Buyer s Guide Why a File Sync & Sharing Solution is Critical for Your Business

Choose Your Own Device (CYOD) and Mobile Device Management. gsolutionz.com

Don t Let A Security Breach Put You Out of Business

Security Architecture Whitepaper

SOOKASA WHITEPAPER HIPAA COMPLIANCE.

Comparing Dropbox and Egnyte. White Paper

White Paper. Data Security. The Top Threat Facing Enterprises Today

BYOD. Bring Your Own Device - Mobile Device Management.

Third Party Security Requirements Policy

BYOD: Bring Your Own Policy. Bring Your Own Device (BYOD) is already making a significant impact on the way the private sector works.

Death to PST Files. The Hidden Costs of

Why Endpoint Backup Is More Critical Than Ever

MAXIMUM PROTECTION, MINIMUM DOWNTIME

Bring Your Own Device Policy

Developing a Policy for Bring Your Own Device. Report to the Joint Legislative Oversight Committee on Information Technology

SecuriSync The Goldilocks Solution For File Sharing CALL US US ON THE WEB intermedia.

10 Hidden IT Risks That Might Threaten Your Business

The Cost of Insecure Mobile Devices in the Workplace Sponsored by AT&T

Solving the Online File-Sharing Problem Replacing Rogue Tools with the Right Tools

OWA vs. MDM. Once important area to consider is the impact on security and compliance policies by users bringing their own devices (BYOD) to work.

Bring your own device - Legal Whitepaper

Five Best Practices for Secure Enterprise Content Mobility

Where is your Corporate Data Going? 5 tips for selecting an enterprise-grade file sharing solution.

Information Rights Management for Banking Seclore FileSecure Provides Intelligent Document & Data Protection that Extends Beyond Enterprise Borders

Hosted SharePoint. OneDrive for Business. OneDrive for Business with Hosted SharePoint. Secure UK Cloud Document Management from Your Office Anywhere

10 Hidden IT Risks That Threaten Your Practice

LAMAR STATE COLLEGE - ORANGE INFORMATION RESOURCES SECURITY MANUAL. for INFORMATION RESOURCES

10 Hidden IT Risks That Might Threaten Your Law Firm

HIPAA Privacy & Security White Paper

Transporter from Connected Data Date: February 2015 Author: Kerry Dolan, Lab Analyst and Vinny Choinski, Sr. Lab Analyst

Moving to the Cloud: What Every CIO Should Know

Information Governance Challenges and Solutions

efolder White Paper: Dedicated File Backup vs. File Sync Backup: 5 Questions MSPs Should Ask to Determine the Best Backup Solution for Their Clients

Sample Employee Agreement for Business Use of Employee-Owned Personal Computing Devices (Including Wearables 1 )

ARKANSAS TECH UNIVERSITY

Mobile Devices: Know the RISKS. Take the STEPS. PROTECT AND SECURE Health Information.

Sync, Share, and Store Information Across Devices Effectively and Securely

activecho Frequently Asked Questions

Privacy and Security Law Report

Mobile Devices: Know the RISKS. Take the STEPS. PROTECT AND SECURE Health Information.

A Secure, IT-approved Alternative to Personal File Sharing Services in the Enterprise

Deploying an Enterprise-Ready Content Sync-and-Share Solution

EasiShare Whitepaper - Empowering Your Mobile Workforce

E-Guide WHAT IT MANAGERS NEED TO KNOW ABOUT RISKY FILE-SHARING

SureDrop Secure collaboration. Without compromise.

OCR UPDATE Breach Notification Rule & Business Associates (BA)

Computer Security at Columbia College. Barak Zahavy April 2010

Written Information Security Plan (WISP) for. HR Knowledge, Inc. This document has been approved for general distribution.

efolder White Paper: 3 Little-Known Risks Associated with Leading Cloud Services

EOH Cloud Mobile Device Management. EOH Cloud Services - EOH Cloud Mobile Device Management

Varonis: Secure Enterprise Collaboration and File Sharing Date: June 2015 Author: Terri McClure, Senior Analyst; and Leah Matuson, Research Analyst

The SparkWeave Private Cloud & Secure Collaboration Suite. Core Features

CPSC 467: Cryptography and Computer Security

efolder White Paper: Three Network Security Tools to Block Dropbox in the Workplace

Information Security and Electronic Communications Acceptable Use Policy (AUP)

Transcription:

7 Risks Dropbox Poses to Your Corporate Data

Introduction We live in a world where information equals power. With the influx of online file-sharing solutions, distributing information has become easier than ever. As a result, it is now easier for information to fall into the wrong hands intentionally or unintentionally. -Enterprise file sync-and-share, Terri McClure, Kristine Kao, TechTarget Bring-your-own-device (BYOD) policies and an increasingly mobile workforce are putting new pressures on IT and changing the requirements for how workers want (and need) to access corporate data. With over 300 million users, Dropbox has become the predominant leader for mobile file access. Unfortunately, what works for family pictures does not work with corporate files. In most cases, Dropbox s quick to install, easy-to-use, consumer-grade services present unacceptable security, legal and business risk in a business environment. Here are the 7 Risks Dropbox Poses to Your Corporate Data. *All marketing claims refer to Dropbox Basic version 3.0.3 as of December 9, 2014

01 Data theft Most of the problems with Dropbox emanate from a lack of oversight. Business owners are not privy to when an instance of Dropbox is installed and are unable to control which employee devices can or cannot sync with a corporate PC. Use of Dropbox can open the door to company data being synced (without approval) across personal devices. The proliferation of these personal devices, which accompany employees on public transit, at coffee shops, and with friends, exponentially increases the chance of data being stolen or shared with the wrong parties.

02 Data loss When administrators cannot manage and monitor file sync activities across an organization, they risk losing critical data. If an employee (or group of employees) adopts Dropbox and starts using it to sync and share sensitive files, administrators without proper oversight cannot manage data sprawl, initiate remote wipes in the case of lost devices, and are unable to guarantee that files are properly shared with the right people.

03 Corrupted data In a study by CERN, the European Organization of Nuclear Research, silent data corruption was observed in 1 out of every 1500 files. Dropbox and other consumer-grade file sync services disclose few, if any, details about how they prevent data corruption from occurring. True business-grade file sync services cryptographically tag every piece of data and redundantly store data on multiple data center racks to virtually eliminate any chances of silent data corruption, which has been shown to be common in large-scale storage systems.

04 Lawsuits Dropbox gives carte blanche power to employees over the ability to permanently delete and share files. This can result in the permanent loss of critical business documents as well as the sharing of confidential information, which can break privacy agreements in place with clients and third parties.

05 Compliance violations Many compliance policies require that files be held for a specific duration and only be accessed by certain people; in these cases, it is imperative to employ strict control over how long files are kept and who can access them. Since Dropbox has loose (or non-existent) file retention and file access controls, businesses that use Dropbox are risking a compliance violation.

06 Loss of accountability Managers whose employees use Dropbox do not have access to detailed reports and alerts over system-level activity. As a result, administrators don t have control of or visibility into how files have been edited, shared, or deleted. Business-grade, admin-controlled file sync services allow managers to view a comprehensive audit trail that details who touched or modified a file at any given point.

07 Loss of file access Dropbox does not track which users and machines touched a file and at which times. This can be a big problem if you are trying to determine the events leading up to a file creation, modification, or deletion. Moreover, at a moment s notice, files and folders may not be in their proper locations or readily available to employees.

Conclusion Dropbox poses many challenges to businesses that care about control and visibility of company data. Allowing employees to utilize Dropbox can lead to massive data leaks and security breaches. While blacklisting Dropbox in the workplace may curtail the security risks in the short term, employees may ultimately discover loopholes, such as circumventing company firewalls or adopting another consumer-grade file sync service. The best way for business to handle this is to deploy a company-approved application that will allow IT to control the data, yet grants employees the access and functionality they need to be productive wherever they are. Employees whose companies provide them with a secure, easy-to-use file sync service will see no need to bring Dropbox into the workplace. If you would like more information on ComConnect, please contact us at: Phone: 303.725.1219 Email: info@wagnercommsystems.com