As federal government guidance on social distancing due to the COVID-19 pandemic is extended through April, a new reality is setting in for federal workers — a prolonged period of telework, even beyond the coronavirus crisis.
This new normal was echoed by Defense Secretary Mark Esper, who reiterated in a virtual town hall that Pentagon officials who are able to work from home can expect to do so for “as long as necessary…it’s going to be weeks, for sure, maybe months,” reports Nextgov.
But a sudden transition to telework isn’t without its challenges. In the private sector, aided by cloud-based collaboration tools and robust work-from-home policies, the adjustment has been relatively streamlined. However, the public sector is much less nimble.
Remote workforce brings new challenges
Many government CIOs simply hadn’t planned — both culturally and technologically — for an extraordinary volume of federal employees and contractors to be working from home for an indeterminate amount of time. Indeed, several factors could hurt the federal government’s ability to gear up for a new remote workforce, writes Bloomberg Law. These include constrained IT budgets, a reliance on proprietary legacy software that is hard to access remotely, and even recent efforts to scale back telework.
It’s a new world order that is also playing out for state and local governments. The Town of Cary, NC, like many other municipalities, is facing this very predicament, reports CNBC. “In a matter of days, we’ve had to prepare hundreds of staff to work remotely. Because we’re a government organization, we have staff in a variety of roles, and for many of them, working from home hasn’t been part of their lives before this week,” said Nicole Coughlin Raimundo, chief information officer for the Town of Cary.
Teleworking cybersecurity is top of mind
CIOs are also cognizant that these home networks, with potentially dozens of devices connected to them, may not be as secure as government networks and could put the entire IT infrastructure at risk.
The cybersecurity challenges of a government-wide move to teleworking is a top-of-mind concern for the Department of Defense, too.
Speaking in the virtual town hall to Pentagon officials, Secretary Esper said: “…if you're teleworking — if you're doing anything that involves the networks and IP — be very, very careful of IP vulnerabilities… We are a little bit more exposed when we're doing telework, using a lot more bandwidth, there's more open ports, et cetera.”
Hidden cyber risks threaten security postures
It's a challenge that is playing out for many organizations. As the digital ecosystem expands, so does the attack surface. This makes government agencies increasingly vulnerable to cyber risk as bad actors look to exploit unmonitored and potentially insecure home networks or digital assets deployed on those networks. That risk is compounded by the fact that security teams lack the right tools to gain visibility into the security posture of these assets or the insight needed to identify, prioritize, and remediate the assets that represent critical or excessive risk.