Skip to main content

Endpoint security

An unsecured device adds significant risk of a data breach to your organization. This refers to protecting user devices: desktops, laptops, mobile.

Actions

  • Put in place an endpoint detection and response solution
  • Roll out whole-disk encryption

Risk factors

On their own, antivirus protection packages based on definitions or signatures will not detect, prevent, and contain modern malware attacks. Ransomware is a particular concern here.

One corrupted end user device can infect other clients and servers. This puts your entire organization at risk, including: System downtime

  • Data loss
  • Data breach
  • Financial losses

Recommendations

Put in place an endpoint detection and response software package that supports all hardware and software used by your organization. Make sure the solution includes:

  • Behavioral monitoring capability
  • Malware signature databases

Modern endpoint detection and response solutions provide enhanced visibility into system activities. This simplifies incident response activities. From there, you can isolate known-infected endpoints as needed. 

Roll out a whole-disk encryption solution on all end user devices. This protects organizational data when an asset is lost or stolen.

Related

Page last updated on February 6, 2025.