Skip to main content
SolarWinds MSP
  • Login
  • Support
  • Partnerships
    • Partnerships Overview
    • Solution Provider Program
    • Technology Alliance Program
    • Distributor Program
SolarWinds MSP
  • Products
    • SolarWinds N-central Automate what you need. Tackle complex networks. Try this remote monitoring and management solution built to help maximize efficiency and scale.
    • SolarWinds RMM Start fast. Grow at your own pace. Try this powerful but simple remote monitoring and management solution.
    • SolarWinds EDR Defend against ransomware, zero-day attacks, and evolving online threats with Endpoint Detection and Response
    • SolarWinds Backup Manage data protection for servers, workstations applications, documents and Microsoft 365 from one SaaS dashboard.
    • Mail Protection & Archiving Protect users from email threats and downtime.
    • Password Management Easily adopt and demonstrate best practice password and documentation management workflows.
      • Passportal Demo
    • PSA & Ticketing Manage ticketing, reporting, and billing to increase helpdesk efficiency.
    • Remote Support Help support customers and their devices with remote support tools designed to be fast and powerful.
  • Solutions

    I'm looking for...

    • Security Solutions
    • Monitoring Solutions
    • Efficiency Solutions
  • Resources
    • Blog
    • Webcasts & Events
    • Ask the N-central Experts
    • Daily Live Demos
    • RMM Foundations Training
    • Upcoming Events
    • Upcoming Webcasts
    • Resource Center
    • COVID-19 Resources
    • Resource Library
      • Case Studies
      • Product Information
      • eBooks
      • White Papers
      • Infographics
    • SolarWinds MSP Free Tools
    • GDPR Resource Center
    • Security Resource Center
    • MSP Institute Webinar Series
    • MSP Advice Project
  • About
    • Contact
    • Customer Success
    • Worldwide sales and support
    • Careers
    • Awards and Recognition
    • Get A Quote
    • Newsroom
      • Press Releases
      • In The News
      • Media Contacts
      • COVID-19 Response
    • Leadership Team
    • Legal
      • Cookie Policy
      • Privacy Notice
      • Software Services Agreement
      • Terms of Use
      • Backup Fair Use Policy
    • Security
      • SolarWinds Security Statement
      • Vendor Data Protection Requirements
    • Support
  • IT Departments
  • Contact Sales
    • Get A Quote
    • General Inquiry
  • TRY NOW
    • SolarWinds RMM
    • SolarWinds Backup
    • MSP Manager
    • SolarWinds Passportal
    • SolarWinds N-central
    • SolarWinds Mail Assure
    • SolarWinds Risk Intelligence
    • SolarWinds Take Control
  • Request a Quote
  • Try Now
    • SolarWinds RMM
    • SolarWinds N-central
    • SolarWinds Backup
    • MSP Manager
    • SolarWinds Mail Assure
    • SolarWinds Passportal
    • SolarWinds Risk Intelligence
    • SolarWinds Take Control
Request quote
Filter Blogs
  • Filter by:
  • MSP Business
    • Automation
    • Backup & Disaster Recovery
    • Security-series
    • Best Practices
    • Business
    • Business Growth
    • Business Risk
    • Cloud Computing
    • Customer Service
    • Cybersecurity
    • Cybersecurity Awareness Month
    • Data
    • GDPR
    • Internet of Things
    • IT Support
    • ITSM
    • LOGICcards
    • Machine Learning
    • Mail
    • Managed Services
    • Marketing
    • Mobile
    • Networking
    • Operations
    • Podcast
    • Product
    • PSA
    • Remote Management
    • Research & Trends
    • Risk Intelligence
    • Security
    • Security Vlog
    • Service Desk
    • Services & Support
    • The Head Nerds
    • Tips & Advice
    • Training
Home Blog MSP Business Internet of Things Protecting Customers from IOT Threats
Internet of Things

Protecting Customers from IOT Threats

By SolarWinds MSP
26 May, 2020

Over the past few years, smart devices have proliferated rapidly. Traditional IT management brings some level of uniformity and predictability—there are only a certain number of workstations, servers, and mobile devices a team needs to manage. But with the sheer number of devices gaining chips—from watches to speakers to refrigerators—teams have to adapt their security approaches.

Today, we’ll cover some challenges and solutions for protecting customers from vulnerabilities in internet of things (IoT) devices. 

What counts as an IoT device?

For the purposes of this post, let’s refer to anything with a chip that connects to a network as an IoT device. This includes such things as smart speakers, watches, refrigerators, doorbells, and thermostats—plus many more. Odds are many workplaces have these devices in them—just consider the number of people with smart watches tethered to their cell phones. But with so many workers shifting to working from home offices, the devices that could potentially compromise sensitive corporate information have increased in number. 

Attacks on these devices can bring devastating consequences. Researchers have found that, “57% of IoT devices are vulnerable to medium- or high-severity attacks.” Many of these attacks can be the launching point for lateral movement that leads to further compromises on networks. However, this shouldn’t lead to fear—there are simple steps you and your users can take to address the security threats IoT devices present.  

Tips for IoT security

CTA Image

Password and Documentation Management

Request a Demo Learn More

IoT devices rarely get the level of managed monitoring most other devices do. However, making sure these devices don’t infect your customers’ corporate resources often only requires a few simple steps. 

  • Awareness: Most users are at least somewhat aware their computers can catch viruses. Fewer think of the security flaws inherent in IoT devices (until they see a service they use end up on the news). A simple reminder to your customers and their users can go a long way. Remind them that if it contains personal data or can be used to eavesdrop on them, it needs to be secured. The goal isn’t to scare people; you simply want them to be aware enough to take common-sense precautions to reduce their risk. 
  • Passwords: Password security is absolutely crucial for IoT devices. Make sure to set strong passwords for any devices under management and advise your customers and users to set strong passwords as well. Often, users may forget their smart thermostat has a web application that can be broken into, so remind them to think of locking down any devices that connect to the internet.  
  • Multifactor authentication: Most IoT devices have web portal pages, mobile apps, or both. For example, Wi-Fi enabled scales or blood pressure monitors might allow you to log in and track your biomarkers over time or even share this information with your doctor. This leaves potentially sensitive health information open to attack. Having users turn on MFA gives them an additional check in the event someone tries to break into their account. 
  • Mobile app permissions: We’ve mentioned both web and mobile applications, but this warrants its own discussion. Like any other mobile application, users should be wary of giving the app too much access. A smart thermostat doesn’t necessarily need to track your location, for example, or have the ability to read/write to social media accounts. Remind users to be careful of the access they give to applications. 
  • Segment your network: The other tips rely on users pitching in and remembering to do the right thing. But you can still take steps to avoid needlessly exposing your customers’ networks. If there’s a device you can’t manage, put it on a guest network and only allow approved devices and users onto the main network. This can help prevent an IoT device from being the entry point toward your most sensitive data on the network. 
  • Update: All devices need to remain up to date with the latest software and firmware. You can handle this yourself for any managed devices, but it’s worth impressing the importance of this practice on your users as well. 
  • Keep your other layers strong: IoT devices are only one part of your ecosystem. Make sure to keep strong layers on other elements—from patching to endpoint protection to email security. Additional devices do give criminals extra access points, but the fundamentals still apply. 

Protecting the internet of things

IoT devices are nothing new. Each device can have its own intricacies and levels of security. However, despite the added complexity you can still protect the wider network and company data with a few simple steps. 

 

We mentioned the importance of password security in this article. As the number of devices and application grows, maintaining strong passwords can quickly become hard to manage. SolarWinds® Passportal is built to help you enforce password best practices across your own team. It can help your team automatically generate strong passwords, gain one-click access to accounts, and can even let you quickly grant or revoke access as needed. Learn more by visiting passportalmsp.com.

 

Additional reading

IoT Security for Your Devices
Why IoT Is the New BYOD—Only Worse
MSPs: Seize the Speed of IOT Change
You might also like...
Security

January 2021 Patch Tuesday: One Actively Exploited Vulnerability and a Few Likely to Be

Security

December 2020 Patch Tuesday—A quiet(er) finish to a busy year in vulnerabilities

Security

Documentation Management API and Why It’s Important for the MSP Business

Security

What Is FIPS-140-2 Standard and When Is It Required?

Security

Malware-as-a-Service: A Crucial Reason Why Security Has Grown More Complex

Security

National Computer Security Day—It’s Not Just About the Computer Anymore

Want to stay up to date?

Get the latest MSP tips, tricks, and ideas sent to your inbox each week.

Loading form....

If the form does not load in a few seconds, it is probably because your browser is using Tracking Protection. This is either an Ad Blocker plug-in or your browser is in private mode. Please allow tracking on this page to request a subscription.

Note: Firefox users may see a shield icon to the left of the URL in the address bar. Click on this to disable tracking protection for this session/site

Recent Posts
  • January 2021 Patch Tuesday: One Actively Exploited Vulnerability and a Few Likely to Be
  • TAP Blog Series: Maximizing Your Service Delivery Opportunity
  • Why Do MSPs Choose SolarWinds Backup? IT Central Station Finds Out
  • Seven Features Remote Assistance Software Should Have
  • TAP Blog Series: Creating Your Automation Strategy—Three Key Components You Must Have in Place
Categories:
  • Security (229)
  • Tips & Advice (122)
  • Best Practices (94)
  • Managed Services (86)
  • Backup & Disaster Recovery (82)
  • Business Growth (75)
  • The Head Nerds (74)
  • IT Support (41)
  • Business (39)
  • Cybersecurity (37)
  • Automation (36)
  • Mail (33)
  • Operations (33)
  • Remote Management (27)
  • ITSM (25)
  • Data (21)
  • Cloud Computing (21)
  • Networking (21)
  • Marketing (14)
  • Product (11)
  • PSA (10)
  • Services & Support (4)
  • Mobile (4)
  • Risk Intelligence (4)
  • Service Desk (4)
  • Internet of Things (3)
  • Customer Service (3)
  • GDPR (2)
  • Research & Trends (2)
  • Training (2)
  • Business Risk (1)
  • LOGICcards (1)
Show moreless
SolarWinds MSP

Products
  • SolarWinds RMM
  • SolarWinds N-central
  • SolarWinds Backup
  • SolarWinds EDR
  • SolarWinds MSP Manager
  • SolarWinds Mail Assure
  • SolarWinds Risk Intelligence
  • SolarWinds Take Control
  • SolarWinds Passportal
  • All Products Use Cases
Solutions
  • Security Solutions
  • Monitoring Solutions
  • Efficiency Solutions
  • Identify which RMM solution is right for me
  • Drive Efficiency with Automation
  • Manage my MSP Business More Efficiently
  • Manage my IT Department More Efficiently
  • Layered Security
  • Cross-Platform Support
  • Data-Driven Insights
About
  • About Us
  • Careers
  • Newsroom
  • Leadership Team
  • Upcoming Events
  • Subscription Preferences
  • SolarWinds
  • SolarWinds Trust Center
  • COVID-19 Response
Support
  • SolarWinds RMM
  • Solarwinds N-central
  • SolarWinds Backup
  • SolarWinds Mail Assure
  • SolarWinds Take Control
  • SolarWinds MSP Manager
  • Solarwinds Risk Intelligence
  • Solarwinds Threat Monitor
  • SolarWinds Passportal
  • SolarWinds Take Control Downloads
  • Backup & Recovery Downloads
  • Service Status

Footer 2

  • Legal Documents
  • Privacy
  • California Privacy Rights
  • Security Information
  • Sitemap

© SolarWinds MSP Canada ULC and SolarWinds MSP UK Ltd.
All Rights Reserved.