Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Protecting Data in the Era of IoT

by The Gurus
July 26, 2018
in This Week's Gurus
IoT map
Share on FacebookShare on Twitter

The use and adoption of IoT devices is continuing to grow at break-neck speed. In fact, IHS Markit recently predicted that the number of IoT devices will balloon to 125 billion by 2030. Clearly, the advantages of IoT devices are well-understood: they are more capable, more efficient, and more reliable than their predecessors. But as IoT devices flood the office environment, businesses are failing to understand the dangers they pose.

 

Connected devices can be a threat to a company’s cybersecurity. While some are equipped with endpoint security – which protects them against cyber threats – many lack built-in protection. Unsecured devices create a conduit to the outside world, which malicious hackers are hungry to exploit to access private data. As the number of unsecured devices connected to the office network continues to soar, so will the risk of a major attack.

 

Businesses of all sizes must implement company-wide changes to protect their data and reputation in the IoT era. Here are four changes they must make:

 

  1. Protect Before Connecting

 

A device should never be connected to the corporate network before it has been properly secured and configured. Understandably, there’s huge temptation and pressure to get devices online as quickly as possible. But putting the cart before the horse has serious security implications.

 

An unconfigured device is vulnerable to a range of exploitations. For example, it may be pre-programmed with a generic default password, which can be found online. To ensure all devices are correctly configured, companies should centralize device management. This means tasking a single team of internal or external IT experts with updating, configuring, monitoring and maintaining all company devices.

 

This coordinated approach ensures all devices are properly configured and operating correctly. It also allows for more sensitive detection of dangerous or malicious activity within the device fleet.

 

  1. Use Device-as-a-Service Arrangements

 

It’s difficult to build an IT department with expertise in every connected device. When the IoT era brings wireless connectivity to light bulbs and coffee machines, building this level of expertise in-house will be next to impossible. Device-as-a-Service (DaaS) arrangements offer a solution.

 

In the DaaS model, device deployment, management and maintenance are outsourced to an external provider, staffed by product-specific experts. Knowing devices inside and out, DaaS specialists are well equipped to spot and solve vulnerabilities.

 

DaaS arrangements offer several other benefits. Devices are leased instead of owned, meaning more frequent hardware upgrades and the flexibility to quickly alter device inventory based on workload. DaaS also reduces the burden on the inhouse IT department and converts device investment from CAPEX to OPEX, creating cost stability. The DaaS contractor is also charged with end-of-life recycling, making the product lifecycle more environmentally friendly.

 

  1. Prioritize Cybersecurity in Procurement Decisions

 

In working to fulfill customer needs, it has become clear how rarely IT departments are involved in the device procurement process. This lack of connected thinking means cost-effectiveness becomes the priority, and cybersecurity becomes an afterthought.

 

Companies should restructure their procurement processes to involve IT professionals, who will make cybersecurity a key consideration. This involves asking CIOs and inhouse IT experts to help set the parameters for procurement and allowing them to have a say in the final purchase decision. The new parameters should mandate that if a device touches the corporate network, it must be equipped with state-of-the-art endpoint cybersecurity.

 

  1. Open the Lines of Communication

 

A recent report from CA Veracode revealed many business leaders fall alarmingly short when it comes to cybersecurity awareness. The report found, for instance, only one-third of the 1,000 business leaders surveyed “had heard of the global WannaCry ransomware attack.” More shockingly, just under half admitted major attacks had not led them to change their cybersecurity approach. If business leaders don’t appreciate or aren’t even aware of the state and scale of cyber threats, they won’t make the wholesale changes required for the IoT era.

 

To resolve this troubling lack of awareness, new lines of communication must be opened between IT experts and senior company leadership. Regular, in-person meetings should be scheduled, new reporting frameworks should be established, and decision-making structures must be changed to include IT.

 

IT teams must then maximize these opportunities by communicating cybersecurity issues in an effective manner, translating technical issues into C-suite speak and explaining their consequences in terms of financial loss and reputational damage. IT must also strive to make the issue real; demonstrating how a technical concept applies to the everyday office environment.

 

A cybersecurity defense is only as strong as its weakest point. If a single IoT device creates a vulnerability in the corporate network, a company’s private data could be compromised. Businesses must act to protect themselves, and their customers, before it’s too late.

Christoph Ruef

Christoph Ruef is Vice President and General Manager of HP’s multi-billion dollar Americas printing business. He has spent nearly 30 years working on HP’s print operations, managing global product strategy, marketing, go-to-market strategy and sales. He has worked for HP in Europe, Asia and the United States. In these markets, he has overseen tectonic changes to the printing market, navigating the transition from black and white to color printers and from single function to All-in-One products. Christoph speaks English and German and resides in San Diego.

Tags: CybersecurityTechnology
ShareTweet
Previous Post

Five common myths of SMBs when it comes to cyber security and online encryption

Next Post

WatchGuard Launches AuthPoint Multi-Factor Authentication for SMBs

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol