Abstract
Home and hybrid working is now increasingly commonplace in many organizations, particularly in the wake of the enforced home working faced by many during the COVID-19 pandemic. However, while many organizations and workers have now embraced the opportunity, questions remain over whether security practices in the home-based and hybrid context are as robust as those within the traditional workplace. The pandemic highlighted that many organizations were unprepared in terms of related security policies and procedures, and today many still lack specific attention toward these aspects even though home-working itself has become a business norm. One of the potential challenges facing organizations seeking to understand what they should do is the varied range of advice and related sources that can be found, which can lead to relevant issues being overlooked or omitted if they were not covered in the chosen guidance. This paper seeks to examine and evidence this challenge. It does so by analyzing a series of guidance resources from commercial, governmental, and professional body sources. From these, a set of eight thematic control areas are identified, and the sources themselves are then evaluated against this new, consolidated reference point to see how closely they each match. The findings reveal that all of the consulting sources fall significantly short of being able to be considered comprehensive in their coverage of the relevant topics and the level of detail. This in turn highlights the importance of organizations adopting this more holistic view and ensuring that different types sources are consulted before determining the necessary practices and awareness needs of their home-based and hybrid workers.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
References
Borkovich, D., Skovira, R.: Working from home: cybersecurity in the age of Covid-19. Issues Inf. Syst. 21(4), 234–246 (2020)
Curran, K.: Cyber security and the remote workforce. Comput. Fraud Secur. 2020(6), 11–12 (2020)
Furnell, S., Shah, J.N.: Home working and cyber security – an outbreak of unpreparedness? Comput. Fraud Secur. (August 2020'), 6–12 (2020)
Cyber Ark, 2021. CyberArk State of Remote Work Study: Poor Security Habits Raise Questions About the Future of Remote Work. CyberArk. https://www.cyberark.com/press/cyberark-state-of-remote-work-study-poor-security-habits-raise-questions-about-the-future-of-remote-work/. Accessed 15 Mar 2023
Webex. 2023. “What is hybrid work?” https://www.webex.com/what-is-hybrid-work.html. Accessed 14 Mar 2023
Schulze, H.: The State of Remote Work Security. Cybersecurity Insiders (2021). https://www.archtis.com/wp-content/uploads/2021/04/2021-Remote-Workforce-Security-Report-archTIS_Final.pdf. Accessed 9 Apr 2023
O’Driscoll, A.: Statistics and Facts: Human Error in Cybersecurity. Comparitech (2022). https://www.comparitech.com/blog/information-security/human-error-cybersecurity-stats/. Accessed 11 Mar 2023
Schulze, H.: Remote Work From Home Cybersecurity Report. Cybersecurity Insiders (2020). https://rs.ivanti.com/ivi/2537/682a478cc54f.pdf. Accessed 22 Mar 2023
Proofpoint, 2020. User Risk Report. Proofpoint. https://www.proofpoint.com/sites/default/files/2020-05/gtd-pfpt-us-tr-user-risk-report-2020_0.pdf. Accessed 10 Mar 2023
Netwrix, 2020. 2020 Cyber Threats Report. Netwrix. https://www.netwrix.com/download/collaterals/2020_Cyber_Threats_Report.pdf. Accessed 19 Mar 2023
Tessian. (2021). Security Behaviors Report. Tessian. https://www.tessian.com/resources/back-to-work-cybersecurity-behaviors-report/. Accessed 9 Apr 2023
Cisco, 2020. Five tips to enable a remote workforce securely. Cisco. https://www.cisco.com/c/dam/global/en_uk/products/collateral/security/secure-remote-worker-solution/srw-5tips-en.pdf. Accessed 17 Mar 2023
CMA, 2020. Best Cybersecurity Tips for Remote Workers. Cm-alliance https://www.cm-alliance.com/cybersecurity-blog/best-cybersecurity-tips-for-remote-workers. Accessed 18 Mar 2023
ESET, 2020. Working from home: Tips and Advice. https://www.eset.com/uk/working-from-home-tips/. Accessed 15 Mar 2023
HP, 2020. HP Remote Worker Cybersecurity Best Practices. Hewlett Packard. https://h20195.www2.hp.com/v2/getpdf.aspx/4AA7-7194ENW.pdf. Accessed 24 Feb 2023
Kaspersky, 2022. Cyber Security Risks: Best Practices for Working from Home and Remotely. Kaspersky. https://www.kaspersky.co.uk/resource-center/threats/remote-working-how-to-stay-safe. Accessed 24 Feb 2023
McAfee, 2021. How to Stay Connected and Protected in a Remote Work Environment | McAfee Blog. McAfee Blog. https://www.mcafee.com/blogs/tips-tricks/how-to-stay-connected-and-protected-in-a-remote-work-environment. Accessed 28 Feb 2023
Microsoft, 2020. 11 security tips to help stay safe in the COVID-19. Microsoft. https://www.microsoft.com/security/blog/2020/06/09/11-security-tips-stay-safe-covid-19-era/. Accessed 26 Feb 2023
Samsung, 2020. 8 tips for securing remote workforces. Samsung Business Insights Sep 25. https://insights.samsung.com/2020/09/25/8-tips-for-securing-remote-workforces. Accessed 23 Feb 2023
ACSC, 2020. COVID-19: Cyber security tips when working from home. Australian Cyber Security Centre. https://www.cyber.gov.au/acsc/view-all-content/advisories/covid-19-cyber-security-tips-when-working-home. Accessed 21 Feb 2023
CCCS, 2020. Security tips for organizations with remote workers (ITSAP.10.016) - Canadian Centre for Cyber Security. Canadian Centre for Cyber Security. https://cyber.gc.ca/en/guidance/telework-security-issues-itsap10016. Accessed 24 Mar 2023
CIS, 2020. 5 Online Safety Tips for Work. CIS. https://www.cisecurity.org/insights/blog/5-online-safety-tips. Accessed 13 Mar 2023
CISA, 2020. Telework Essentials Toolkit. Cybersecurity & Infrastructure Security Agency. https://www.cisa.gov/sites/default/files/publications/20-02019b%2520-%2520Telework_Essentials-08272020-508v2.pdf. Accessed 23 Mar 2023
CPNI, 2021. Remote Working, including Working from Home, during of COVID-19. Centre for the Protection of National Infrastructure, December 2021. https://www.npsa.gov.uk/resources/remote-working-during-covid-19. Accessed 29 Mar 2023
ENISA, 2020. Tips for cybersecurity when working from home. European Agency for Cyber Security, 24 March 2020. https://www.enisa.europa.eu/tips-for-cybersecurity-when-working-from-home. Accessed 10 Mar 2023
FBI, 2021. Cybersecurity Awareness Month: Steps to Protect Yourself | Federal Bureau of Investigation. Federal Bureau of Investigation. https://www.fbi.gov/video-repository/portland-cyber-home-102121.mp4/view. Accessed 4 Mar 2023
IIA, 2020. Security in a Work-From-Home Environment. Global Knowledge Brief, Institute of Internal Auditors, October 20202. https://iia.no/wp-content/uploads/2021/01/2020-GKB-Security-in-a-Work-From-Home-Environment.pdf. Accessed 20 Mar 2023
NCSC, 2020. Home working: preparing your organisation and staff. National Cyber Security Centre. https://www.ncsc.gov.uk/guidance/home-working. Accessed 8 Mar 2023
NIST, 2020. Telework security overview & tip guide. US National Institute of Standards and Technology. https://www.nist.gov/document/telework-overview-and-tips-pdf. Accessed 19 Mar 2023
NSA, 2018. Best Practices for Securing Your Home Network. Cybersecurity Information Sheet, National Security Agency, September 2018. https://www.nsa.gov/portals/75/documents/what-we-do/cybersecurity/professional-resources/csi-best-practices-for-keeping-home-network-secure.pdf?v=1. Accessed 31 Mar 2023
SANS, 2020. Top 5 Tips for Working from Home Securely. SANS Institute. https://www.sans.org/blog/top-5-tips-for-working-from-home-securely/. Accessed 13 Mar 2023
Author information
Authors and Affiliations
Corresponding author
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2023 IFIP International Federation for Information Processing
About this paper
Cite this paper
Alotaibi, F., Furnell, S., He, Y. (2023). Cyber Security Awareness and Education Support for Home and Hybrid Workers. In: Furnell, S., Clarke, N. (eds) Human Aspects of Information Security and Assurance. HAISA 2023. IFIP Advances in Information and Communication Technology, vol 674. Springer, Cham. https://doi.org/10.1007/978-3-031-38530-8_6
Download citation
DOI: https://doi.org/10.1007/978-3-031-38530-8_6
Published:
Publisher Name: Springer, Cham
Print ISBN: 978-3-031-38529-2
Online ISBN: 978-3-031-38530-8
eBook Packages: Computer ScienceComputer Science (R0)