HR one of biggest culprits in allowing ex-employees access to network

-

shutterstock_86123638

Organisations in the UK and the US are neglecting to deploy vigilant post termination processes, allowing ex-employees continued access to systems and data after they have left their position, research from security software provider IS Decisions has revealed. Over a third (36%) of desk-based workers in the UK and the US are aware of having had access to a former employer’s systems or data after having left the organisation.

This finding, explored in IS Decisions new report ‘From Brutus to Snowden: a study of insider threat personas’, potentially highlights an even bigger problem, as an even greater number of ex-employees may still have access to data without even realising it.

Age groups

HRreview Logo

Get our essential weekday HR news and updates.

This field is for validation purposes and should be left unchanged.
Keep up with the latest in HR...
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

 

It also differs wildly across age groups, with a much larger 58% of 16 to 24 year olds and 48% of 25 to 34 year olds stating awareness of having had continued access to a former employer’s systems or data. This continues to decrease for older age groups, averaging just 21% for those aged over 55, which could be attributed to younger age groups moving jobs more frequently, but does suggest that the issue is a growing one.

Acting on access

Of the 36% that were aware of their continued access, 9% actually chose to use it, meaning nearly one in 10 ex-employees access systems or data from their former employers. Once again, this tended to be higher for younger age groups, averaging 13% for all those aged 16 up to 34.

Industry sectors

The worst industry sectors for allowing their ex-employees to continue to access systems are surprising, with HR and recruitment and IT being the joint top, along with arts and culture at 46%. This suggests that those industries that should know better, are in fact worse than the rest.

Job roles

The most likely job role for an ex-employee with continued systems or data access to have is marketing, with a huge 68% of this sample stating this was the case. The next highest is potentially even more worrying, with 56% of those handling sensitive company data working in legal roles continuing to have access after leaving an employer.

François Amigorena, CEO of IS Decisions, said, “As the number of disparate systems and networks we use in our every day working lives increases, it’s natural that access management is becoming a more difficult problem to address for organisations. Marketing departments apparently suffer from this worst of all; between email, social media, CRM systems and everything else there is a lot to cover.

“The fact is though, that an ex-employee is more likely to have incentive than anyone to put this access to malicious use. Former employees are probably the greatest insider threat, yet they are the easiest to address; just make changing passwords and deactivating accounts a part of the termination process. Yet businesses are failing to do this, and worse still businesses in the industries you would most expect this to be standard procedure, IT and HR, are failing even more than the rest.”

Download From Brutus to Snowden: a study of insider threat personas.

Latest news

Personalising the Benefits Experience: Why Employees Need More Than Just Information

This article explores how organisations can move beyond passive, one-size-fits-all communication to deliver relevant, timely, and simplified benefits experiences that reflect employee needs and life stages.

Grant Wyatt: When the love dies – when staying is riskier than quitting

When people fall out of love with their employer, or feel their employer has fallen out of love with them, what follows is rarely a clean exit.

£30bn pension savings window opens for employers ahead of 2029 reforms

UK employers could unlock billions in National Insurance savings by expanding pension salary sacrifice schemes before new limits take effect in 2029.

Expat jobs ‘fail early as costs hit $79,000 per worker’

International assignments are ending early due to family strain, isolation and poor preparation, as rising costs increase pressure on employers.
- Advertisement -

The Great Employer Divide: What the evidence shows about employers that back parents and carers — and those that don’t

Understand the growing divide between organisations that effectively support working parents and carers — and those that don’t. This session shows how to turn employee experience data into a clear business case, linking care-related pressures to performance, retention and workforce stability.

Scott Mills exit puts spotlight on risk of ‘news vacuum’ in high-profile dismissals

Sudden departure of a long-serving BBC presenter raises questions about how employers manage high-profile dismissals and limit speculation.

Must read

‘We put our people at the forefront of every decision we make’ says Natasha Waterfield

We spoke with Natasha Waterfield, Head of Human Resources about her work at the New World Trading Company (NWTC) and winning the Sunday Times award for 'the best 100 companies to work for'.

Who needs a CV when you have so many biases?

Being a start-up is all about design-thinking and experimentation. You try various options, test hypotheses and develop contingencies to help solve customers solutions in a creative way.  Thus, when confronted with the question;  “Does the CV format works?”, we decided to conduct a simple experiment of our own.
- Advertisement -

You might also likeRELATED
Recommended to you