Device security management covers the unique challenges of securing endpoints like IoT devices and mobile devices, including deployment models, shadow IT risks, patching, and wireless communication vulnerabilities.
Special Endpoint Device Security
I often find that IT departments do a fairly good job at managing most of the end devices. But there are some devices that get overlooked, devices that have some special needs to them.
Every device on the network is called a node. If it's the ones in between nodes, we call those intermediary devices. If it's these other nodes that are sitting on the end that are sending and receiving traffic, we call those endpoints.
There's a lot of security that goes into securing these endpoints, things I talk about in another module. But there are some of these endpoints that have some special security concerns over them. These devices would be things like internet of things devices or mobile devices. There are some special things that we need to consider when we're managing these.
It used to be that the organization would always supply these devices, but more and more people are bringing their personally owned devices, which causes some problems, things that we need to think about. One of the things we need to decide is, are we going to even allow that? What is the deployment model that we're going to choose with these end devices?
One of the problems is that more and more technology is being put in the hands of people, and it's more and more easy for them to go out and purchase equipment and these devices. What will happen is they will roll these things out without IT permission, and we call this shadow IT. So one of the big concerns is, how are we going to deploy these? Are we going to allow these devices? Are we going to allow them to purchase these devices, and how are we going to control them purchasing these devices?
There's a lot to think about when it comes to these end devices, and a big part of that is how are we going to patch these end devices. With the internet of things, we've got things that normally wouldn't be on our network that are now on our network, and how are we going to go about making sure that they're updated and they have the proper security installed on them.
These mobile devices almost always have some sort of wireless capability, such as cellular, Bluetooth, Wi-Fi or near field. The problem is that wireless is not really a very secure form of communicating, of sending information. We need to make sure that it's using secure protocols in order to send information securely.
Depending on what these devices are, we might manage them differently.
TechKnowSurge builds IT and cybersecurity professionals through hands-on, concept-first training built around real understanding — not memorization. Free interactive tools, structured programs, and 25+ years of real-world experience, all in one place.
Explore free tools and programs →