Remote Desktop Access (RDP) allows employees the ability to connect to another computer over a network connection. When combined with VPN authentication this provides a secure easily accessible solution for your remote workforce. The Remote Desktop protocol has been around since the days of Windows XP. When configured securely it’s a tried and tested method that works well with users that are using their own devices (BYOD). RDP lends itself to modern flexible working where users may want to access their desktop from another location, country or use for instance an Apple iPad.
Data Compliance and Remote Desktop – The General Data Protection Regulation (GDPR) needs to be considered when planning your remote desktop access policy. GDPR details what businesses can and cannot do with customer and user data, including the way it’s stored, transmitted, processed, and destroyed.
There has been a transition from the traditional approach of providing employees with a company laptop. It is increasingly more common that they use their personal laptop for business usage. This is one of the major threats currently as the device will not have the security, visibility, or safeguards of a professionally managed device.
Solutions 4 IT can help to secure company data on users’ personal devices. Through the use of Remote Desktop or Conditional Access with Microsoft Intune we can control the applications and user devices that are able to connect to both company resources and emails.
Before considering a BYOD solution it is vital to understand the additional risks involved. This will then allow you to create a BYOD policy which ideally will balance security for your business with acceptability and availability for your employees.
There will be less control and visibility of your employees’ personal devices which mean BYOD deployments may have a heightened security risk rather than provisioning company owned assets. Malware, unauthorised access, and data compromise are the main security threats. Although with the correct procedural and technical control measures in place, these risks can be managed.