eCrime - Managing Employee Behaviour

The internet has become an ever present and key tool for business use, with an equal amount of risks. Businesses utilising IT and the internet need to ensure that their IT systems are not put at risk by employees.
Whether your business operates an open use policy or one that uses only emails and not the wider Internet, managing the risks involved with employee Internet use is a vital part of any effective IT security system.
Employees may use the Internet without any regard for the risks to the business. Unlimited use of the Internet for non-work related activity is dangerous for the following reasons:
- Employees may use the internet to view inappropriate or illegal material.
- Employees may knowingly / unknowingly download media which can infect the IT system.
- Employees are using the Internet for their own personal use during working hours.
- Critical business information, such as company passwords and customer information can
be exposed by employees surfing the Internet.
- Your business can be made legally liable for the behaviour of your employees, particularly
if it endangers other organisations data or infrastructure.
IT security is the responsibily of every employee in your business. Vital to this approach is making sure all employees understand their role within IT security, with their use being productive and in no way endangering the business.
IT Security Policy
To protect your business from e-Crime, implement IT security policies that define what behaviour is and is not allowed. Outline the general rules to be followed by management and employees alike to ensure optimal working practice and to minimise IT security risks. Make sure that the policies aren't lengthy or complicated; they should be an easily understood reference for all staff.