3 ms·
Watch out for what all permissions that software agent has. Big firms when they issue their own hardware often install such agents that have ability to not jus
by _gsmq 5y ago
Watch out for what all permissions that software agent has.
Big firms when they issue their own hardware often install such agents that have ability to not just monitor activity, but also wipe out data or change user account credentials.
I personally find it weird if the ask is to install such agent on BYOD (personal device), since not just the company data, but your personal data can also be wiped out remotely, or your account credentials can be changed remotely locking you out of your own device.
- neonnomad 5y agoThe agent is read-only and has no capability to wipe a device, it is a read-only agent that we have security validated with a third party. You can see my other responses in the thread around what it collects but it is just system information to ensure the device is meeting the appropriate security/compliance controls for the company to meet its compliance obligations. Source: I am the Drata CISO
- illud_tempus 5y ago> The agent is read-only and has no capability to wipe a device, it is a read-only agent that we have security validated with a third party. And you can change that over night, without notice to anyone not actively monitoring your platform for such messages. Why is that your policy. You expect a high level of trust. And still you engage in dark anti-patterns that nukes any kind of trust for anyone who know how to read.