HR one of biggest culprits in allowing ex-employees access to network

-

shutterstock_86123638

Organisations in the UK and the US are neglecting to deploy vigilant post termination processes, allowing ex-employees continued access to systems and data after they have left their position, research from security software provider IS Decisions has revealed. Over a third (36%) of desk-based workers in the UK and the US are aware of having had access to a former employer’s systems or data after having left the organisation.

This finding, explored in IS Decisions new report ‘From Brutus to Snowden: a study of insider threat personas’, potentially highlights an even bigger problem, as an even greater number of ex-employees may still have access to data without even realising it.

Age groups

HRreview Logo

Get our essential weekday HR news and updates.

This field is for validation purposes and should be left unchanged.
Keep up with the latest in HR...
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

 

It also differs wildly across age groups, with a much larger 58% of 16 to 24 year olds and 48% of 25 to 34 year olds stating awareness of having had continued access to a former employer’s systems or data. This continues to decrease for older age groups, averaging just 21% for those aged over 55, which could be attributed to younger age groups moving jobs more frequently, but does suggest that the issue is a growing one.

Acting on access

Of the 36% that were aware of their continued access, 9% actually chose to use it, meaning nearly one in 10 ex-employees access systems or data from their former employers. Once again, this tended to be higher for younger age groups, averaging 13% for all those aged 16 up to 34.

Industry sectors

The worst industry sectors for allowing their ex-employees to continue to access systems are surprising, with HR and recruitment and IT being the joint top, along with arts and culture at 46%. This suggests that those industries that should know better, are in fact worse than the rest.

Job roles

The most likely job role for an ex-employee with continued systems or data access to have is marketing, with a huge 68% of this sample stating this was the case. The next highest is potentially even more worrying, with 56% of those handling sensitive company data working in legal roles continuing to have access after leaving an employer.

François Amigorena, CEO of IS Decisions, said, “As the number of disparate systems and networks we use in our every day working lives increases, it’s natural that access management is becoming a more difficult problem to address for organisations. Marketing departments apparently suffer from this worst of all; between email, social media, CRM systems and everything else there is a lot to cover.

“The fact is though, that an ex-employee is more likely to have incentive than anyone to put this access to malicious use. Former employees are probably the greatest insider threat, yet they are the easiest to address; just make changing passwords and deactivating accounts a part of the termination process. Yet businesses are failing to do this, and worse still businesses in the industries you would most expect this to be standard procedure, IT and HR, are failing even more than the rest.”

Download From Brutus to Snowden: a study of insider threat personas.

Latest news

Employers prioritise cost control over growth as confidence remains weak, CIPD says

Rising labour, energy and operating expenses are keeping employers cautious on hiring, pay and investment despite a modest rise in recruitment intentions.

Ciara Harrington: Why an AI strategy without skills visibility is just guesswork

Organisations are racing to adopt AI, but does the workforce actually have the skills to use it in meaningful, productive ways?

Maureen Kyne on hidden problems in workplace reporting

“Upward bullying is frequently buried within aggregated HR reporting, labelled as ‘conflict’ or ‘personality clashes’, masking its true impact and preventing meaningful oversight.”

Scott Mills preparing unfair dismissal claim against BBC after Radio 2 sacking: report

The former Radio 2 presenter is reportedly preparing an unfair dismissal claim against the BBC following his removal earlier this year.
- Advertisement -

Alison Lucas & Lizzie Bentley Bowers: Why your offboarding process is as vital as onboarding

We know that beginnings shape performance and culture, so we take time to get them right. Endings are often rushed, avoided or delegated to process.

Reward gaps leave part-time and public sector staff ‘at disadvantage’

Unequal access to staff perks leaves part-time and public sector workers less recognised despite strong links between incentives and engagement.

Must read

Richard Evens: Employee want access to life saving equipment

Every year thousands of people die of cardiac arrest...

Melissa Whiting: Why it’s time to give women the chance to lead the world

"These are not issues of gender or diversity; they’re ones of humanity."
- Advertisement -

You might also likeRELATED
Recommended to you