Information Security Tips for Small Office and Home Office (SOHO)
Ranked #6,804 in Tech & Geek, #152,617 overall
Cost Effective Information Security Tips for SOHO and SMB's
From an accountant who stores financial data for clients to a doctor who stores health records for patients the entrepreneurs of today have a need to store private, sensitive and confidential data on their computers, external hard disk drives, USB sticks and PDA's. A few other examples of sensitive data storage are:
- Personal financial data on Home PC's generated from Quick Books, Inuit and UFILE etc.
- Law firms storing legal information for clients.
- Medical/Health information such as X-Rays stored by Therapists like Chiropractors, Physiotherapist etc.
- Customer credit card information is stored by various businesses like retailers, Hotels, Restaurants etc.
About this article
In the age of information data is the measure of corporate wealth. Unfortunately very little effort goes into protecting the invaluable wealth. A few common reasons for ignoring data security and protection are associated costs, lack of awareness and lack of technical skills. This article is an attempt to provide you with various alternatives. There are a few steps every business can take to protect itself. By following these cost effective techniques you can protect the wealth that is key to the survival of your business. I want to stress that I have only listed tools and techniques that make sense for homes or small to medium size businesses only.
Protection against Viruses and Spyware
- Virus Scanners
- Remember to use the 'Auto Update' feature so that you are protected against latest viruses.
- Renew you yearly subscription every year. Remember that you are unprotected against viruses the moment your subscription expires. Never let that happen.
- Remember all PC's require their own virus scanner software.
- For optimum protection consider getting the personal firewall bundle with the virus scanner software.
- Remember to use the 'Auto Update' feature so that you are protected against latest viruses.
- Spyware and Adware
Protection against spyware and adware is very important in today's world. The following free tools provide good protection.
Data Backup and Recovery
- Use Microsoft Windows Backup Utility
Chances are that you are with the majority of users who use Microsoft Windows XP. Microsoft Windows XP comes with an inbuilt Backup utility. This utility is both easy and fast to use. Best of all it does not require you to purchase a third party software license. The Windows backup utility can backup files to the local or an external hard drive.
- Use OEQB to backup Emails
If you use Microsoft Outlook to check you emails consider using Outlook Express Quick Backup (OEQB) available from http://www.oehelp.com
for backing up your emails. Make sure you include the files backed up by this tool in the Windows Backup utility above.
- Validate the Backup and Perform Mock Recovery
There have been numerous situations where someone has tried to recover their data to discover that the backup was unusable or corrupt. It is important to validate you backup once in a while. For this reason I recommend performing a mock recovery at least once a month.
Business Continuity and Disaster Recovery Planning
- Invest in an External Hard Disk Drive
- Offsite/Remote Backup Solutions
An economical alternative to method of storing offsite backups is by using a remote backup service from vendors like Datafence. Datafence offers you the ease and assurance of backup over the internet coupled with unparalleled security. The remote backup solution is fully automated using the free application provided by Datafence.
If you have not done so already consider investing in an external hard disk drives (EHDD). The prices for EHDD have dropped dramatically in the last few years. Backing up data to an EHDD is fast and economical. As an added advantage the EHDD can be unplugged and carried to an offsite location.
Encrypt Sensitive Data
Security of Mobile Devices
Network Security
- Wireless Router Security
- Remove Default Password and Settings
- Use MAC filtering
- Use optimal cell sizing
- Turn it off when not in use
- Firewalls
It is quiet common for businesses to use wireless routers at their location. Wireless router security is one of the most ignored areas of IT security. Unfortunately, common methods of securing routers as advertised by router manufacturers offer limited security. At the very least make sure you configure the following features to obtain maximum security.
Firewalls are an excellent mechanism for restricting traffic to your home/office network. A properly configured firewall can protect your internal network from unwanted traffic. Datafence specializes in the area of router/firewall installation, configuration and monitoring.
Employee Access to Information
- Access to Information
- Pre-screen Potential Employees
- Job Rotation and Mandatory Vacations
An easy method of maintaining confidentiality in business is by restricting employee access to information. You should provide access to employees just enough to do their job. This can be easily accomplished by maintaining the confidential files on a common server accessible on the internal network. Anyone requiring access should be given explicit read and/or write permissions to these files.
Always pre-screen your employees before offering them a job. An easy method of pre-screening is to search for the employees name and address on famous search engines like Google and Yahoo.
Job rotation and mandatory vacations are proven mean by which a business can improve the overall security. This reduces the risk of fraud, illegal data modification and general misuse of information.
Website Security
Security of Printed Material and Discarded Computers
- Discarding Printed Material - Invest in a Paper Shredder
- Discarding Old Computers
Very often printed material is discarded in garbage/recycle bins. It is a good business practice to shred sensitive documents before discarding them.
When new computers arrive it is common to copy the information from the old computer's hard drive to the new one and then discard the old computer. Always discard old computers after erasing data from them. A quick but not a sure shot method of erasing data from a hard drive is by formatting it. For a sure shot method experts recommend rewriting the character '0' on the entire hard drive more than 20 times.
Use Data Virtualization
Use Data Virtualization
Data Virtualization is undoubtedly the hottest trend in data storage and access. Businesses can leverage free products from VMWare to simplify their storage, network, and computing resources, control costs and respond faster.
Please sign my Guest Book
-
Reply
- IT_risks IT_risks Oct 23, 2008 @ 9:52 pm
- Nice lens. You offer some very helpful information and tips on information security. I'd love it if you would visit my lens and say hi when you get the chance.
-
Reply
- benlagat benlagat Jun 27, 2008 @ 10:12 am
- This is a very educative lens.Thank you for the effort you made to put together all that useful information.This lens may serve very well as a reference page for its tips.Visit < a href="http://www.inventorysoftwareplus.com">Software for equally informative notes on inventory software,asset inventory software,computer inventory software,free inventory software
-
Reply
- Manora1 Manora1 Apr 8, 2008 @ 9:54 am
- Good lens. More informative about security measures, data recovery and protection against viruses and spyware. Thanks for your hard effort to pull all the information into your lens. I rated 5 stars. A similar interesting information about Software Test Tool on Software Test Tool Please step into this site for more information about Software Test Tool.
-
Reply
- adamsparker37 adamsparker37 Apr 4, 2008 @ 1:20 pm
- Hi, nice lens you have. Thanks for providing good information. Your
tips and issues are very common in corporate life. Now a days data
recovery become a critical problem. Your ideas are very preventive and
cautious. Same like U I also have lens for Data
Recovery . Here also all data recovery tips are mentioned. Please
go through my lens and give your valuable suggestions. Thank you
-
Reply
- Gypsy1 Gypsy1 Apr 3, 2008 @ 10:35 am
- Cool lens. All I need to know on this subject is right here on your lens. More informative. Thanks. Full credit to your lens and 5* to your lens. Good job and keep it on. Find an equal stuff site about Systematic Software testing on Systematic Software Testing If your time permits please see this site to find more information about Systematic Software Testing.
- Load More
by mkukreja
Thanks for visiting my lens. I am a IT professional with several years of experience. My focus areas are Infrastructure Management, Security and Datab...
(more)
by 7 people |




