{"id":101543,"date":"2016-09-23T14:59:38","date_gmt":"2016-09-23T18:59:38","guid":{"rendered":"http:\/\/www.bu.edu\/tech\/?page_id=101543"},"modified":"2021-04-26T13:26:28","modified_gmt":"2021-04-26T17:26:28","slug":"securing-your-devices","status":"publish","type":"page","link":"https:\/\/www.bu.edu\/tech\/support\/information-security\/securing-your-devices\/","title":{"rendered":"Securing Your Devices"},"content":{"rendered":"<p>It&#8217;s important these days to make sure our devices are secure &#8211; thank you for taking the time to learn more about that!<\/p>\n<p>Boston University has policies&#8211;the\u00a0<a href=\"http:\/\/www.bu.edu\/policies\/minimum-security-standards\/\">Minimum Security Standards<\/a>\u00a0that provide the security requirements for devices being used to access sensitive information. \u00a0This page is a supplemental guide that we hope will help make it easier to secure all of your devices. \u00a0BMC Security policies can be accessed on any BMC computer or on BMC wireless by visiting Section 40 on the <a href=\"http:\/\/internal.bmc.org\/policy\/\" target=\"_blank\" rel=\"noopener noreferrer\">Policy &amp; Procedure website<\/a>.<\/p>\n<p>In general, the easiest and most important thing you can do to secure each of your devices is to <strong>set a password<\/strong>. If you do not already have a password on your device, put one on right now. Many of the security features that come with your device are not activated until a password is set. \u00a0Here\u00a0are a few tips on how to come up with a <a href=\"https:\/\/www.bu.edu\/tech\/about\/security-resources\/bestpractice\/passwords\/\">strong password<\/a> that is easy to remember. \u00a0Also, <b><i>never share your password with anyone.<\/i><\/b>\u00a0 Every person needs to have their own account and their own password.\u00a0 If something occurs and your password was used, <i>you<\/i> are responsible.\u00a0 Don\u2019t share your password with your students or research assistants; don\u2019t post your password on a piece of paper next to the computer.<\/p>\n<h3>What are you securing?<\/h3>\n<div class=\"bu_collapsible_container \" aria-live=\"polite\" data-customize-animation=\"false\"><h4 class=\"bu_collapsible\" aria-expanded=\"false\"tabindex=\"0\" role=\"button\">Smartphones and Tablets<\/h4><div class=\"bu_collapsible_section\" style=\"display: none;\"><\/p>\n<p>Here are the top things you can do to secure your phone and tablet:<\/p>\n<ol>\n<li><strong>Set a passcode<\/strong>. Follow <a href=\"https:\/\/www.bu.edu\/tech\/about\/security-resources\/bestpractice\/passwords\/\">best practices<\/a> and set auto logoff\/screen lock to no more than 15 minutes. This is the easiest way to prevent an unwanted visitor from accessing all of those pictures, messages, apps and notes that you hold so dearly. \u00a0For many modern smart phones and tablets, simply setting a password, automatically encrypts much of the most sensitive contents.<br \/>\n[Instructions for:\u00a0<a href=\"http:\/\/support.apple.com\/kb\/ht4113\">iPhone and iPad<\/a>,\u00a0<a href=\"http:\/\/www.howtogeek.com\/253101\/how-to-secure-your-android-phone-with-a-pin-password-or-pattern\/\">Android<\/a>,\u00a0<a href=\"https:\/\/www.isunshare.com\/windows-10\/3-ways-to-create-password-for-user-account-in-windows-10.html\">Windows<\/a>,\u00a0<a href=\"http:\/\/helpblog.blackberry.com\/2012\/08\/set-blackberry-password\/\">BlackBerry<\/a>,\u00a0<a href=\"http:\/\/www.microsoft.com\/surface\/en-us\/support\/security-sign-in-and-accounts\/all-about-accounts\">Microsoft Surface RT<\/a>]<\/li>\n<li><strong>Turn on Encryption.\u00a0<\/strong>If setting a passcode did not automatically encrypt your phone or tablet, make sure to enable the native encryption (encryption comes standard with most phones)<br style=\"clear: both;\" \/>[Instructions for: <a href=\"https:\/\/www.cnet.com\/how-to\/how-to-encrypt-your-ios-or-android-device\/\">iPhone and iPad<\/a>, <a href=\"https:\/\/www.cnet.com\/how-to\/how-to-encrypt-your-ios-or-android-device\/\">Android<\/a>, <a href=\"https:\/\/www.windowscentral.com\/how-enable-device-encryption-windows-10-mobile\">Windows<\/a>, <a href=\"http:\/\/helpblog.blackberry.com\/2014\/09\/how-to-encrypt-your-media-card-using-blackberry-10\/\">BlackBerry<\/a>, <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/2855131\/how-to-enable-bitlocker-device-encryption-on-windows-8-rt\">Microsoft Surface RT<\/a>]<\/li>\n<li><strong>Keep your system and applications up to date<\/strong>. Check to see that your device and applications are up to date, then set them to update automatically. This is the quickest way for the developer to provide you with the most up-to-date protection and can patch security holes that leave you vulnerable.<br \/>\n[Instructions for:\u00a0<a href=\"http:\/\/support.apple.com\/kb\/ht4623\">iPhone and iPad<\/a>,\u00a0<a href=\"http:\/\/www.wikihow.com\/Update-an-Android\">Android<\/a>,\u00a0<a href=\"https:\/\/support.microsoft.com\/en-us\/help\/12662\/windows-phone-update-your-windows-phone\">Windows<\/a>,\u00a0<a href=\"http:\/\/www.blackberrytroubleshooting.com\/software\/47.asp\">BlackBerry<\/a>,\u00a0<a href=\"http:\/\/www.microsoft.com\/surface\/en-us\/support\/performance-and-maintenance\/install-software-updates-for-surface\">Microsoft Surface RT<\/a>]<\/li>\n<li><strong>Download Apps from trusted sources sources only.<\/strong>\u00a0If an app looks like it&#8217;s coming from a suspicious source, that&#8217;s probably because it is. \u00a0<strong>Pay attention to permissions and rights that the app requests.<\/strong>\u00a0When an app asks for permission to make changes to your device, take the time to read through the changes.\u00a0 The original app may have been tested for malware by the app store, but updates come straight from the author, not from the app store. This is a commonly used way to compromise phones and tablets.<\/li>\n<li><strong>Install antimalware.\u00a0<\/strong>Yes, even on your phone, and set it up to automatically update and scan. There are a number of trusted vendors available online. Android phones also now come with a form of <a href=\"https:\/\/support.google.com\/accounts\/answer\/2812853?hl=en\">built in protection<\/a>.<\/li>\n<li><strong>Enable Find my Devices.<\/strong> Consider enabling services that allow you to locate your phone if it is lost, send a message to it, or even wipe its contents remotely if you need to.\u00a0<br style=\"clear: both;\" \/>[Instructions for: <a href=\"https:\/\/www.apple.com\/icloud\/find-my-iphone\/\">iPhone and iPad<\/a>, <a href=\"https:\/\/support.google.com\/accounts\/answer\/6160491?hl=en\">Android<\/a>, <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/11585\/windows-phone-find-a-lost-phone\">Windows<\/a>, <a href=\"http:\/\/helpblog.blackberry.com\/2012\/10\/find-lost-blackberry\/\">Blackberry<\/a>]<\/li>\n<li><strong>Use the VPN.<\/strong>\u00a0Be wary of connecting to insecure WiFi hotspots. The WiFi you might use to check your email or your bank account balance at your local cafe is likely not protected and is transmitting information to you without encryption. For a more secure option, choose to connect through a VPN\u00a0<a href=\"https:\/\/vpn.bu.edu\" title=\"VPN connection to BU\">like the one offered here at BU<\/a>. For instructions on installing and using a VPN on your device look\u00a0<a href=\"https:\/\/www.bu.edu\/tech\/support\/remote\/vpn\/use\/\">here<\/a>.<br \/>\nBoston Medical Center\u00a0also has a secure remote connection option; for details, contact the BMC\u00a0Service Center at 617-414-4500<\/li>\n<li><strong>Back up your device. <\/strong>It is important to back up your device to prevent any data lost in the event that it is lost or stolen.<\/li>\n<li><strong>Reset your device.\u00a0<\/strong>In the event that your device is lost or stolen, you have an easy way to securely erase the data stored on your device. This will help you to avoid becoming a victim to a compromised device.<br style=\"clear: both;\" \/>[Instructions for: <a href=\"https:\/\/support.apple.com\/en-us\/HT201274\">iPhone and iPad<\/a>, <a href=\"http:\/\/www.wikihow.com\/Reset-Your-Android-Phone\">Android<\/a>, <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/10666\/windows-phone-reset-my-phone\">Windows<\/a>, <a href=\"http:\/\/support.blackberry.com\/kb\/articleDetail?ArticleNumber=000018998\">Blackberry<\/a>]<\/li>\n<\/ol>\n<p><\/div>\n<\/div>\n\n<div class=\"bu_collapsible_container \" aria-live=\"polite\" data-customize-animation=\"false\"><h4 class=\"bu_collapsible\" aria-expanded=\"false\"tabindex=\"0\" role=\"button\">Laptops and Desktops<\/h4><div class=\"bu_collapsible_section\" style=\"display: none;\"><\/p>\n<p>Here are the top things you can do to secure your laptop and desktop:<\/p>\n<ol>\n<li><strong>Use a password<\/strong>.\u00a0Follow <a href=\"https:\/\/www.bu.edu\/tech\/about\/security-resources\/bestpractice\/passwords\/\">best practices<\/a> and set auto log-off\/screen lock to no more than 15 minutes. This is the easiest way to prevent a thief from accessing sensitive information.<br \/>\n[Instructions for setting a password:\u00a0<a href=\"https:\/\/www.isunshare.com\/windows-10\/3-ways-to-create-password-for-user-account-in-windows-10.html\">Windows 10<\/a>,\u00a0<a href=\"http:\/\/support.apple.com\/kb\/ht1274\">Mac<\/a>]<\/li>\n<li><strong>Encrypt your hard drive<\/strong>. If you work with medical information, financial account information, or social security numbers belonging to other people your device needs to be encrypted.\u00a0\u00a0Encryption is available for free from <a href=\"https:\/\/www.bu.edu\/tech\/services\/cccs\/desktop\/device-security\/\">Boston University<\/a>, and personal computers now come standard with encryption, but you must turn it on for both Mac (<a href=\"http:\/\/support.apple.com\/kb\/ht4790\">FileVault<\/a>) and Windows machines (<a href=\"https:\/\/support.microsoft.com\/en-us\/windows\/turn-on-device-encryption-0c453637-bc88-5f74-5105-741561aae838\">Bitlocker<\/a>).<br \/>\nEncryption is also available for free from Boston Medical Center. \u00a0You can request the software using the\u00a0<a href=\"https:\/\/bmc.service-now.com\" target=\"_blank\" title=\"BMC Service Request System\" rel=\"noopener noreferrer\">BMC Service Request System<\/a>\u00a0 or by\u00a0contacting the Service Center at 617-414-4500<\/li>\n<li><strong>Keep your computer and applications updated<\/strong>. Patches are delivered through updates to help close any vulnerable holes you might have on your system, protecting you from malicious attempts to corrupt your computer. Though the updates may seem like a nuisance, pick a convenient time to perform them (no more than 30 days from notification) or have them installed automatically.<br \/>\n[Instructions for:\u00a0<a href=\"https:\/\/www.lifewire.com\/how-to-change-windows-update-settings-2625778\">Windows<\/a>,\u00a0<a href=\"https:\/\/support.apple.com\/en-us\/HT201541\">Mac<\/a>,\u00a0<a href=\"http:\/\/www.java.com\/en\/download\/help\/java_update.xml#manual\">Java<\/a>,\u00a0<a href=\"http:\/\/helpx.adobe.com\/acrobat\/kb\/install-updates-reader-acrobat.html\">Adobe Acrobat<\/a>,\u00a0<a href=\"http:\/\/www.adobe.com\/software\/flash\/about\/\">Flash<\/a>]<\/li>\n<li><strong>Use a secure connection\u00a0(often called a &#8220;VPN&#8221;) to connect to the internet<\/strong>. Secure connections provide a protected encryption tunnel for information to travel through between your computer and the network. This is particularly important when you connect to WiFi hotspots in public areas, where any information you send across the internet can otherwise be easily read by anyone else on that same network. \u00a0[<a href=\"https:\/\/vpn.bu.edu\/\" title=\"VPN Connection to BU\" target=\"_blank\" rel=\"noopener noreferrer\">Connect to the BU VPN<\/a>,\u00a0For more information on BMC Secure Remote Access, please contact Boston Medical Center\u2019s Service Desk at 617-414-4500.]<\/li>\n<li><strong>Install Threat Protection Software.<\/strong>\u00a0These types of software will help prevent both active and passive cyberattacks.\u00a0<a href=\"https:\/\/www.bu.edu\/tech\/services\/cccs\/desktop\/device-security\/endpoint-protection\/\">CrowdStrike<\/a>\u00a0is available for free from BU for both Mac and Windows computers.<br \/>\nFor more information on security software for BMC owned devices, please contact Boston Medical Center\u2019s Service Desk \u00a0using the\u00a0<a href=\"https:\/\/bmc.service-now.com\" target=\"_blank\" title=\"BMC Service Request System\" rel=\"noopener noreferrer\">BMC Service Request System<\/a>\u00a0 or calling 617-414-4500.<\/li>\n<\/ol>\n<p><\/div>\n<\/div>\n\n<div class=\"bu_collapsible_container \" aria-live=\"polite\" data-customize-animation=\"false\"><h4 class=\"bu_collapsible\" aria-expanded=\"false\"tabindex=\"0\" role=\"button\">USB Sticks and CDs<\/h4><div class=\"bu_collapsible_section\" style=\"display: none;\"><\/p>\n<p>Securing the devices you use for backup or file transfer is just as important as securing the devices you use for everyday activity, USBs and CDs are significantly easier to lose or have stolen because of their portability. It is very important to make sure that the information you keep on these devices is protected by encryption.<\/p>\n<p>Here are the top things you can do to secure your USBs and CDs:<\/p>\n<ol>\n<li><strong>Choose a device with hardware encryption built-in<\/strong>. Though typically a little more expensive, hardware encryption offers a high level of security at the core of your device. Consider this option if you&#8217;re looking for the best protection.<br \/>\n&#8212; Or \u00a0&#8212;<br \/>\n<strong>Set up encryption for your device.<\/strong>\u00a0If \u00a0your device does not have built-in encryption, you can encrypt it yourself. Once your device is encrypted a password will be required to access all files and folders, making it that much more difficult for someone else to gain access.\u00a0Boston University also provides it&#8217;s <a href=\"https:\/\/www.bu.edu\/tech\/services\/cccs\/desktop\/device-security\/\">own encryption service<\/a>.<\/li>\n<li>Store your password safely. Resist the urge to write the password to your device directly on the CD or attached to the USB. Should you need to share the password, it should be provided via a secure network like\u00a0<a href=\"https:\/\/www.bu.edu\/tech\/comm\/email\/datamotion\/\">DataMotion SecureMail<\/a><br \/>\nSecure Email and secure file transfer solutions are\u00a0also available from\u00a0Boston Medical Center. \u00a0For details, contact \u00a0the Service Center at 617-414-4500 or by\u00a0using the\u00a0<a href=\"https:\/\/bmc.service-now.com\" target=\"_blank\" title=\"BMC Service Request System\" rel=\"noopener noreferrer\">BMC Service Request System<\/a>.<\/li>\n<\/ol>\n<p><\/div>\n<\/div>\n\n<div class=\"bu_collapsible_container \" aria-live=\"polite\" data-customize-animation=\"false\"><h4 class=\"bu_collapsible\" aria-expanded=\"false\"tabindex=\"0\" role=\"button\">Email<\/h4><div class=\"bu_collapsible_section\" style=\"display: none;\"><\/p>\n<p>Just as important as securing your devices is using secure e-mail for communications when sensitive information is involved. Regular e-mail is not encrypted or protected in any way. If a message is ever sent across the public Internet (for example as will happen if your mobile device downloads the e-mail message), the message may be intercepted and read by someone else.<\/p>\n<p>Secure e-mail solutions are available from both BU and BMC:<\/p>\n<ul>\n<li>BU &#8211;\u00a0<a href=\"https:\/\/www.bu.edu\/tech\/comm\/email\/datamotion\/using\/\" target=\"_blank\" rel=\"noopener noreferrer\">DataMotion SecureMail<\/a><\/li>\n<li>BMC &#8211;\u00a0For details, contact\u00a0\u00a0the Service Center at 617-414-4500 or by\u00a0using the\u00a0<a href=\"https:\/\/bmc.service-now.com\" target=\"_blank\" title=\"BMC Service Request System\" rel=\"noopener noreferrer\">BMC Service Request System<\/a>.<\/li>\n<\/ul>\n<p><\/div>\n<\/div>\n\n","protected":false},"excerpt":{"rendered":"<p>It&#8217;s important these days to make sure our devices are secure &#8211; thank you for taking the time to learn more about that! Boston University has policies&#8211;the\u00a0Minimum Security Standards\u00a0that provide the security requirements for devices being used to access sensitive information. \u00a0This page is a supplemental guide that we hope will help make it easier&#8230;<\/p>\n","protected":false},"author":4697,"featured_media":0,"parent":99517,"menu_order":20,"comment_status":"closed","ping_status":"closed","template":"","meta":[],"_links":{"self":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/101543"}],"collection":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/users\/4697"}],"replies":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/comments?post=101543"}],"version-history":[{"count":18,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/101543\/revisions"}],"predecessor-version":[{"id":134657,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/101543\/revisions\/134657"}],"up":[{"embeddable":true,"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/pages\/99517"}],"wp:attachment":[{"href":"https:\/\/www.bu.edu\/tech\/wp-json\/wp\/v2\/media?parent=101543"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}