1. Do you agree or disagree with the author's assertions
regarding seasonal employees and cybersecurity risks in the
work place? Why?
Seasonal Employees are the backbone of many companies,
especially the courier services and the hotel industries. These
seasonal employment helps to cut down the high demand of
workers during peak season for companies. With such short time
position, it becomes a high risk for companies to let out corporate
sensitive security information to these workers as it may be
considered high risk activities. Yet, these sensitive data are also
needed to be able to be accessed by these seasonal employees as
they will need this information to properly do their job well. This
leads to my agreement of the author’s assertion in regard to work
and cyber-Security risk in the
workplace. Since most of these workers are not going to be
permanent, handing over sensitive information to them is very
risky, they still need this information to properly do their work.
Access permission can be very difficult, depending on the number
of staff recruited, but it’s absolutely critical. IT must ensure each
employee only has access to data critical to his or her current role
and responsibility (Bonderud, 2016).
2. What steps can (should) managers take to reduce security
risks associated with hiring seasonal or temporary
employees? (Consider whether or not the Secure Computer
User training course would be appropriate for these
employees.)
Seasonal or temporary employees are still employees; whether
they are seasonal or part-time, they are still doing the same job
that full time employees are doing. Seasonal employees are most
needed in the hospitality or the courier industry. Managers are
responsible to oversee whether these seasonal workers are able
to do their assigned jobs which they were told about during their
hiring process. Managers are the key component for recruiting the
potential employees and are responsible of the process of how
they can ascertain if these additional people will do more harm or
good. Giving them access to important data puts a lot of trust to
these employees. With most jobs using technology to do day-to-
day work, it becomes easily accessible for workers. To prevent
such risk of data, managers should implement certain hiring
process or criteria during the interview process to get the best
candidates for the job.
Bonderud (2016), suggest three important ways when hiring
seasonal workers:
• Onboarding and integration where been consistent with
hiring process. (Background checks, vetting and interviews)
• Train specific task and limit data access.
• Make a temporary employee sign specific documentation
about employment end date and non-disclosure agreement.
3. How can managers show leadership in the area of
cybersecurity defenses and best practices?
Managers are responsible employers that provide not only equal
opportunity to the employees but also proper training. If a
customer complains about a data breach it is the work of the
manager to find out how the data was breached. Proper training
is very important when it comes to dealing with cyber security.
When it comes to dealing with cybersecurity and leaders or
managers should:
• Be able to properly train their workers, up to date training
programs to be able to defend cyber threats and attacks.
Seasonal workers should be trained to identify unsolicited e-
mails.
• Managers should have up to date information on
cybersecurity threats, or must be able to implement new
ideas when it comes to cyber security.
• Implement multifactor approach for cyber readiness against
cyberattacks; adding
• authentication, incident response plan, back-up system in
case a ransomware attack.
Reference
Bonderud. D. (2016, November 2).
Seasonal Employee Security
Risks: Present Danger, Proactive Defense
Security Intelligence. https://securityintelligence.com/seasonal-
employeesecurity-risks-present-danger-proactive-defense
PR Newswire. (2018, December 14).
Two Thirds of Retailers
Increase Cybersecurity Measures During the Holiday Season to
Defend Against the Rise in social Engineering Attacks.
PR
Newswire US.