dcsimg

How Risky Behaviors Hurt Shadow IT Security

  • How Risky Behaviors Hurt Shadow IT Security-

    Plugins and Add-ons

    Plugins and add-ons to applications approved by IT also create a great security risk, according to Darran Rolls, CISO of SailPoint. "Many people don't think about shadow IT in terms of plugins and add-ons to existing, approved applications. However, these applications expand approved SaaS applications into new territory, often with potentially significant security implications that haven't been evaluated by IT."

1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11

How Risky Behaviors Hurt Shadow IT Security

  • 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11
  • How Risky Behaviors Hurt Shadow IT Security-6

    Plugins and Add-ons

    Plugins and add-ons to applications approved by IT also create a great security risk, according to Darran Rolls, CISO of SailPoint. "Many people don't think about shadow IT in terms of plugins and add-ons to existing, approved applications. However, these applications expand approved SaaS applications into new territory, often with potentially significant security implications that haven't been evaluated by IT."

Shadow IT is the use of assets that don't fall under the management of the IT department, and, says Phil Richards, CSO of LANDESK, it can be a huge security problem, especially for those companies that don't have a strong IT department to monitor application and device use, or when policies are too restrictive to allow employees to do their work efficiently. "The existence and growth of shadow IT is usually a sign that the central IT organization is not meeting the needs of the business," says Richards. This means too many employees are going rogue to do their work.

This is putting both the network and its data at risk. For example, Symantec's Shadow Data Report analyzed the business readiness of over 15,000 cloud apps and services based on more than 60 security criteria. The result was that only 1 percent of these apps were found secure enough for business use. Many apps and services are already a security risk, but when they are used as shadow IT, the potential threats go unchecked.