From an IT perspective, an important part of endpoint security refers to ensuring that the endpoint devices connected to your network—computers, laptops, mobile devices, tablets, etc.—are running on the latest version or patch to all operating systems or software.
Some companies take an extreme or hardline approach to endpoint security controls by, for example, not allowing personal devices to be connected to their enterprise network. For the most part, however, the use of devices such as laptops, mobile devices, and tablets is common in the workplace.
Ensuring that users are running the latest software and operating systems from those devices—and that they aren’t partaking in risky cyber behavior while connected to your network—is critical from a cybersecurity perspective. It’s not so much about preventing people from using the network (many companies need their employees to “BYOD,” or bring your own devices for the company to operate smoothly); it’s primarily about making sure those users are following the right security controls.
Securing endpoints from a first-party perspective is all about monitoring. Do you have a way of knowing the latest operating systems and browsers being used by those connected to your network? Is critical data being passed between these endpoints?
From a third-party perspective, do you know if your vendors are using outdated endpoints to access your data? For example, you may have lower-tier, non-critical vendors using computers with an old version of XP. This may seem inconsequential, but if they log on to your network with that computer, that could touch critical areas of your network and create a major problem. That same vendor could unknowingly introduce something risky—like malware or a virus—into your network without you knowing it. Some companies have vendor portals segmented from the rest of their network, but that isn’t always the case. In 2013, Target’s HVAC vendor was able to access Target’s network and hackers then infiltrated Target’s main network through the HVAC vendor’s access, causing a disastrous breach.