Cybersecurity Issues for Padgett-Beale Business Traveling
The requirement for cybersecurity on travel is essential for Padgett-
Beale’s business travelers. The relevant knowledge and information
to enhance awareness about this issue should be disseminated
among all company personnel.
The information environment, especially the internet, is necessary
for the dealings of all things commerce and the transactional
exchange of information and communication. Preparing
professionals, especially our staff members, adequately against
online threats is a consistent challenge, regardless of the resources
provided, such as frequent training. Currently, cybersecurity cannot
be deemed a trivial issue. It not only pertains to a user being unable
to access data on their device due to a malware attack but also
speaks to the fact that network systems have become more complex
due to the advanced technology being used and threat actors
consistently deriving intricate ways to launch their assaults. As the
frequency of business travel is increased, the possibility of the
number of cyber-attacks will also increase. This provides an
opportunity for cybercriminals to garner the unbeknownst support
of unsuspecting individuals who have become unwitting tools in
aiding these actors in performing illegitimate actions against the
company, such as data theft.
There are several types of cyber threats faced by our personnel
when traveling. However, emphasis is placed on threats such as
online identity theft, phishing attacks, namely, spear-phishing and
whaling, and methods like zero-day or software exploits and the use
of backdoors (“Spear phishing 101: What is spear phishing,” 2015).
Therefore, it is paramount to safeguard the company’s networks and
its devices prior to traveling to ensure the reliability of services, as
these cyber-attacks can have substantial ramifications, including
network disruptions, the theft of sensitive information, and canceled
travel.
Personnel required to travel are not free from misconceptions
relating to the safety of the company’s assets. This is an issue
stemming from a lack of cybersecurity awareness (Hoelscher, 2018).
The assumption cannot be made that the safeguarding of their data
and devices is solely left up to the company, and they are not liable
to exercise preventative measures while traveling, such as not
opening emails from unknown sources, or not using public Wi-Fi in
hotels and airports.
Another issue of note is the lack of the specific proficiency needed
from leaders to correspond and partner with the cybersecurity team
to ensure mitigating measures are established and enforced,
especially prior to and after travel is completed. This synergetic
effort needs to be cultivated to ensure that a cyber defense-minded
culture is upheld across the company.
Recommendations
Prior to leaving for travel, all data should be encrypted, the auto-
connect to wi-Fi and Bluetooth option disabled, software updates
completed, and a continuity plan enacted (Hoelscher, 2018).
Travelers need to exercise situational awareness when traveling,
whether domestic or international, and understand that it is
imperative to always take a proactive approach and practice safe
online behavior to secure internet-enabled devices. They should also
avoid using public or free Wi-Fi, bring their personal charging cable
to be used directly in an outlet, or travel with a battery pack
(Schlesinger & Day, 2016). Training on social engineering strategies
should be created and implemented companywide for all employees,
including executive members. Moreover, a firm technical protection,
along with mitigating processes, should be established as part of the
company’s defense mechanism (“Whaling; How it works,” 2020). A
general comprehension of the significance of cybersecurity in the
company needs to be displayed by the company’s leaders to ensure
the overall protection of the company’s assets, including human
resources and tangible technological equipment.
Ultimately, cybersecurity awareness and preparedness will become
habitual with practice and preparation. In light of the dangers of new
and emerging cyber threats, including phishing and online identity
attempts, travelers can have peace of mind if they safeguard devices
by performing pre and post software updates, malware/virus scans,
practice Wi-Fi safety, avoid using public charging stations, and be
cognizant of overall security.
References
Hoelscher, P. (2018). 30+ cybersecurity tips for travelers. Infosec.
Retrieved from https://resources.infosecinstitute.com/topic/30-
cybersecurity-tips-for-travelers/#gref
Schlesinger, J. & Day, A. (2016). Travelers beware! that free charging
station could hack your phone. CNBC.com. Retrieved from
https://www.cnbc.com/2016/09/21/travelers-beware-that-free-
charging-station-could-hack-your-phone.html
Spear phishing 101: What is spear phishing? (2015) trendmicro.com.
Retrieved from
https://www.trendmicro.com/vinfo/us/security/news/cyber-
attacks/spear-phishing-101-what-is-spear-phishing
Whaling: How it works, and what your organization can do about it.
(2020). ncsc.gov.uk. Retrieved from
https://www.ncsc.gov.uk/guidance/whaling-how-it-works-and-
what-your-organisation-can-do-about-it