Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    ;
    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Business > Remote working: poor cyber hygiene widespread in financial services
    Business

    Remote working: poor cyber hygiene widespread in financial services

    Remote working: poor cyber hygiene widespread in financial services

    Published by Decisive Market Insights

    Posted on August 11, 2021

    Featured image for article about Business

    Recent research has revealed the financial services industry practised poor cybersecurity behaviours during the COVID-19 pandemic. This article outlines the most common risky behaviours, with advice on how firms can strengthen their authentication. 

     

    By Nic Sarginson, Principal Solutions Engineer, Yubico

    In response to stay-at-home orders, many companies across the financial services sector switched rapidly to remote working in 2020. It’s likely a number of them will continue to maintain higher levels of homeworking than existed before the pandemic began. This poses a range of challenges for employers and employees, such as how to facilitate collaboration and build working relationships between colleagues and clients when in-person meetings happen less frequently. Another challenge that many, it seems, have yet to overcome is the impact of remote work on cybersecurity. This is a major gap that must be plugged as companies navigate a new hybrid working era.

    Our survey of employees provides insight into how financial services have fared in securing remote workers during the pandemic. It reveals that security training levels are fair for employees and the majority have introduced new policies since the start of the pandemic. However, there is significant room for improvement, particularly when it comes to the authentication of remote workers.

    Risky behaviour

    The survey also revealed a somewhat lax attitude to the sharing and use of devices. Over a fifth (22 per cent) of responding financial services employees allow others to use their devices and don’t pay attention to how they use them. Meanwhile, the percentage of workers who use work-issued devices daily for personal matters has jumped from 29 to 44 per cent since the start of COVID. Both these revelations are concerning, because this activity opens up financial services to potentially more cyber threats.

    Despite this risky behaviour, employees reveal they are stressed by cyber threats. In fact, 40 per cent feel more stressed about this while working from home than they do in the office. That’s higher than employees across a range of sectors, where 35 per cent said the same.

    Strengthening authentication

    Identity verification is the way users gain access to accounts, services, systems and applications. In the financial services sector, some employees perform high-value transactions on a daily basis, making them key targets for cybercriminals. Call centre agents make likely targets too. Being generally office-based, access security typically exists within a corporate perimeter, but as remote workers, they need a secure and simple way of verifying their identity before accessing critical systems and data. If employees are only using a username and password for authentication and an attacker succeeds in getting hold of this information, their data and company data is compromised.

    There are a range of ways cybercriminals go about it. Most commonly through phishing. Many more people are aware of phishing attacks now but despite the dangers, ten per cent of financial services respondents to the survey said they wouldn’t admit to clicking on a suspicious link. Those links could take employees to fake sites where, if they enter their credentials, the identity thief then has their login information to gain access through the real site.

    Strong authentication is essential to safeguard against this. Yet only 27 per cent of survey respondents said two-factor authentication (2FA) had been implemented since employees began working from home. 2FA boosts authentication compared to logging in with only a username and password because it requires users to have a second way of verifying their identity. This can be by presenting something they have, like a one-time passcode or security key, or something they are, which is generally a biometric identifier such as a fingerprint.

    Phishing resistant 2FA is the most secure option, yet only 26 per cent of survey respondents said their company had gone down the route of hardware security keys. Commonly used SMS codes sent to mobiles and one-time passcodes (OTPs) can still fall prey to phishing if users unwittingly provide the information to a cyber attacker.

    Phishing scams, together with unsecured WiFi networks and unmanaged personal mobile devices often used for authentication in a work-from-home situation, can give cybercriminals a way in.

    IT security plans in the hybrid work era

    Organisations that heed the warning signs from this latest research will develop IT security plans to ensure secure access to systems without the introduction of new risks and vulnerabilities. Enabling stronger forms of authentication with identity access management systems should be a top requirement for a work from home policy.

    The pandemic has had a profound effect on the way we live and work, and the changes we’ve seen as a result have raised the cybersecurity threat level. Basic security measures fall short in protecting the high-value systems and data within financial services. As corporations adjust to a new working era that is likely to include more workers logging in from varied locations, they will need strong authentication to mitigate the threat of attacks.

    Nic Sarginson, Principal Solutions Engineer, Yubico

    Related Posts
    Cybersecurity as a Profit Engine: Turning Financial Services Security into Measurable Business Value
    Cybersecurity as a Profit Engine: Turning Financial Services Security into Measurable Business Value
    How Investability Helps Companies Navigate Transformational Times
    How Investability Helps Companies Navigate Transformational Times
    88% of UK and US organisations concerned about state-sponsored cyber attacks as national threat levels surge, IO research reveals
    88% of UK and US organisations concerned about state-sponsored cyber attacks as national threat levels surge, IO research reveals
    One in three SME leaders do not fully understand cash flow, despite 82% facing cash flow problems
    One in three SME leaders do not fully understand cash flow, despite 82% facing cash flow problems
    Inside the Company that Predicted the Remote Work Mega-Trend Before It Became Mainstream
    Inside the Company that Predicted the Remote Work Mega-Trend Before It Became Mainstream
    SEO Consultant Adrian Czarnoleski on How to Increase Business Value Before Exit
    SEO Consultant Adrian Czarnoleski on How to Increase Business Value Before Exit
    No SOC 2, No Deal: Why You’re Already Losing Clients - and What You Can Do About It
    No SOC 2, No Deal: Why You’re Already Losing Clients - and What You Can Do About It
    Jose Tolosa Guides Organizations Forward with Clarity, Purpose, and Integrity
    Jose Tolosa Guides Organizations Forward with Clarity, Purpose, and Integrity
    Reducing Freight Costs to Drive Global Trade Expansion
    Reducing Freight Costs to Drive Global Trade Expansion
    The Psychology of Music in the Modern Workplace
    The Psychology of Music in the Modern Workplace
    Revealed: Low-Cost/No-Cost Marketing Hacks For Results Oriented Businesses
    Revealed: Low-Cost/No-Cost Marketing Hacks For Results Oriented Businesses
    Finance teams still stuck in spreadsheets as manual processes stall digital transformation
    Finance teams still stuck in spreadsheets as manual processes stall digital transformation

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    More from Business

    Explore more articles in the Business category

    The Future of Remote & Hybrid Leadership: Leading With Data-Driven Foresight

    The Future of Remote & Hybrid Leadership: Leading With Data-Driven Foresight

    2025-2030: The Next Technological Innovations for Business

    2025-2030: The Next Technological Innovations for Business

    The CFO’s New Playbook: 5 Ways AI Is Redefining Finance with Insights from Rishi Oberoi

    The CFO’s New Playbook: 5 Ways AI Is Redefining Finance with Insights from Rishi Oberoi

    Revolutionizing Payments: Secure, Scalable, Sovereign

    Revolutionizing Payments: Secure, Scalable, Sovereign

    Why Trademark Abuse in Paid Search Is a Growing Risk for Financial Institutions

    Why Trademark Abuse in Paid Search Is a Growing Risk for Financial Institutions

    E-commerce Customer Service: Tips

    E-commerce Customer Service: Tips

    When to Automate Your Warehouse: The Tipping Point for Operations Growth

    When to Automate Your Warehouse: The Tipping Point for Operations Growth

    Hurt at Work? 5 Financial Facts You Need to Know

    Hurt at Work? 5 Financial Facts You Need to Know

    Against the Odds: Resilience in Consumer Subsectors Offers Prime Opportunities for Investors

    Against the Odds: Resilience in Consumer Subsectors Offers Prime Opportunities for Investors

    Empower Your Workforce With Financial Wellness This Labor Day

    Empower Your Workforce With Financial Wellness This Labor Day

    Build a brand that stands out with five simple strategies, from defining your UVP to using storytelling and building loyalty. Find out more.

    Build a brand that stands out with five simple strategies, from defining your UVP to using storytelling and building loyalty. Find out more.

    The Hybrid Office Playbook for Financial Services: How to Design Hybrid Offices to Optimize People and Spaces

    The Hybrid Office Playbook for Financial Services: How to Design Hybrid Offices to Optimize People and Spaces

    View All Business Posts
    Previous Business PosteCommerce Trends in 2021 – insights from an online jeweller
    Next Business PostU.S. consumer price increases slow in July, signs inflation peaked