Remote Work Security Checklist

REFERENCE / 2-PAGE CHECKLIST

Remote Work Security Checklist

Secure your home network, configure VPN, encrypt devices, and follow BYOD best practices for safe remote work.

Home Network Security

Change the default router password. Default passwords are publicly known and easily guessed.
Use WPA2 or WPA3 encryption. This encrypts traffic between your devices and your router.
Change the network name (SSID) to something that does not identify you or your organization.
Keep firmware updated. Router updates include security patches. Check for updates every few months.
Use a separate network for guests if your router supports it. This isolates visitors from your work devices.
Disable WPS (Wi-Fi Protected Setup) if your router has it. WPS is vulnerable to brute-force attacks.

VPN Configuration

Install your organization’s VPN on all devices you use for work.
Set the VPN to connect automatically when you start your device.
Verify the VPN is active before accessing any work systems. Look for the VPN icon in your taskbar or menu bar.
Never access sensitive data on public Wi-Fi without a VPN. Use your phone hotspot as an alternative.
Contact STM if you need help installing or configuring your VPN.

Device Security

Enable full-disk encryption on all laptops. If a laptop is lost or stolen, the data is unreadable without the password.
Enable remote wipe on phones and laptops so you can erase data if a device is lost.
Use screen locks on all devices: PIN, password, fingerprint, or face recognition.
Set auto-lock for 5-10 minutes of inactivity.
Keep devices with you at all times in public. Do not leave them unattended even for a moment.
Never leave laptops visible in cars. Put them in the trunk before you arrive at your destination.
Enable device tracking (Find My for Apple, Find My Device for Android) so you can locate lost devices.

Public Wi-Fi Safety

Use a VPN or phone hotspot before accessing any work systems on public Wi-Fi.
Turn off auto-connect so your device does not automatically join public networks.
Forget public networks after using them so your device does not auto-connect later.
Never access sensitive data (email, EHR, banking) on public Wi-Fi without a VPN.
Use a privacy screen filter on your laptop in public spaces to prevent shoulder surfing.

BYOD (Bring Your Own Device) Rules

Keep work data on approved apps only. Do not store work files in personal cloud accounts.
Do not mix personal and work data on the same device if possible.
Ensure your personal device has encryption and screen lock enabled.
Do not let family members use your work device. They may accidentally expose or delete work data.
Report lost or stolen personal devices that have work access immediately.
Follow the same security practices on personal devices as on organization-owned devices.

This checklist is a supplement to Module 08: Mobile and Remote Work Security. Complete the full module for interactive training and knowledge checks.

Go to Module 08