HP Wolf Security researched platform security and its shortcomings.
A new report from HP Wolf Security reveals serious device lifecycle security problems. Insufficient attention to hardware and firmware security leads to risks and inefficiencies, according to the study.
Platform security often overlooked
HP Wolf Security surveyed more than 800 IT and security decision makers and 6,000 home workers worldwide. The report states that 81 percent of IT decision makers see hardware and firmware security as a priority, but investments in it are often ignored. This creates risks throughout the device lifecycle, from selection to decommissioning.
During vendor selection, 34 percent of IT decision makers report that vendors do not pass cybersecurity audits. During onboarding, 53 percent share weak BIOS passwords with multiple users. Additionally, more than 60 percent do not perform timely firmware updates due to a fear of making mistakes (FOMU).
The loss or theft of devices costs organizations $8.6 billion annually. Nearly 20 percent of home workers reported a lost device only after 25 hours. This highlights the need for better monitoring. When dismantling devices, 47 percent are concerned about data security, which complicates recycling and contributes to e-waste.
Solutions for a safer life cycle
The report makes recommendations to improve security. IT, security and procurement teams should work more closely together in vendor selection. The use of zero-touch onboarding can improve security during installation. For ongoing management, rapid implementation of firmware updates is crucial.
Monitoring and recovery should also be strengthened, with tools to remotely lock or wipe devices. Finally, secure erasure of hardware and firmware data is recommended to recycle or reuse devices responsibly.
The survey results highlight the need for a new approach that focuses on platform security from the beginning to the end of the lifecycle. HP calls on organizations to adopt a zero-trust approach and prioritize security in device procurement and management.