Home > Ask the Information Security Experts > Questions & Answers > Should keystroke loggers be used in enterprise investigations?
Ask The Security UK Expert: Questions & Answers
EMAIL THIS

Should keystroke loggers be used in enterprise investigations?

Ed Skoudis EXPERT RESPONSE FROM: Ed Skoudis

Pose a Question
Other Security UK Categories
Meet all Security UK Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 11 October 2007
Should keystroke loggers be used in an enterprise setting?

>
EXPERT RESPONSE
This is a very good question, and one that should be considered carefully by all enterprise information security personnel engaged in investigations. Keystroke loggers can provide a great deal of insight into what a perpetrator may be up to inside an enterprise. Furthermore, if the perpetrator is using corporate assets, and you've got warning banners that clearly spell out that all computer use is subject to monitoring, you've got the groundwork laid for running a keystroke logger. But, hold on! There are two more hoops that you need to jump through before gathering your first keystroke.

I would never run a keystroke logger in an enterprise setting unless I first got a written approval from both an in-house lawyer and human resources personnel. The lawyer can check to make sure that your corporate policies, training and warning banners all limit an employee's presumption of privacy in the enterprise. The HR folks can similarly verify that reasonable suspicion of wrongdoing exists and warrants the use of a keystroke logger. In effect, the lawyer and HR review acts as a series of checks and balances on your actions. Don't view them as an annoying obstacle. Instead, realize that they are there to help you avoid a potential personal lawsuit from the target of your investigation!

More information:

  • Learn how unified threat management (UTM) products can be used against remote control Trojans and keystroke loggers.
  • Have you used a keystroke logger in your organization, or would you consider doing so? SearchSecurity.com wants to hear from you.


  • Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


    RELATED CONTENT
    Security Policies and Awareness
    Security is a people business, don't forget it
    Appliance provides network access protection on school campus
    How to prevent clickjacking attacks with security policy, not technology
    Privacy, data protection must be built into system design, says ICO
    Can policy thwart disgruntled employee data leaks?
    Setting up a remote access security policy
    Security policies often ignored, non-existent, survey finds
    Information Commissioner turns up the heat on data breach culprits
    DLP useless when companies fail to classify data
    Finance sector poor at achieving outsourcing success

    RELATED GLOSSARY TERMS
    Terms from Whatis.com − the technology online dictionary
    Financial Services Authority  (SearchSecurityUK.com)
    IISP (Institute of Information Security Professionals)  (SearchSecurityUK.com)

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary



    Search and Browse the Expert Answer Center
    Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
    Browse our Expert Advice

    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    SEARCH 
    TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Site Map




    All Rights Reserved, Copyright 2008 - 2009, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts