Frank Coggrave
Frank Coggrave
R E L A T E D   C O N T E N T
ADVERTISEMENT

Bugwatch: Reducing the risk from P2P downloads

How employee use of peer-to-peer sites is more than just a nuisance

Frank Coggrave, vnunet.com 08 Jul 2004
ADVERTISEMENT

Each week vnunet.com asks a different expert to give their views on recent virus and security issues, with advice, warnings and information on the latest threats.

This week Frank Coggrave, UK regional director of Websense, examines the legal implications for businesses and IT directors of employee use of P2P networks.

P2P is a concern to any organisation, but on a more critical level it is also illegal.

Downloading pirate material not only infringes on existing copyright laws but, since March this year, it is a breach of the European Union Directive on the Enforcement of Intellectual Property.

This recently created intellectual property legislation makes US digital media rights laws pale in comparison. Under the European directive, counterfeiters and pirates will be prosecuted, facing fines and other civil penalties for breaching intellectual property rights.

It is hardly going to do much good for a company's reputation if one of their employees is accused or prosecuted under these new regulations. If pirated music is found on the company's servers then, arguably, the companies could be complicit, with an accusing finger pointed at the IT director.

So what can IT directors do to avoid opening their systems to abuse? Should they prevent employees accessing the internet?

Although this would put an immediate end to the problem, such a draconian approach would do little for employee morale and could reduce workers' productivity, especially as a large number of staff need to use the internet to fulfil their job.

Even requesting employees to avoid certain websites and refrain from downloading applications cannot be a completely foolproof solution.

It is a fact of life that there will always be a group of users that persist in disobeying the rules, especially if they think it's harmless.

At the same time, companies should bear in mind the absence of any real business advantages of P2P applications - which pride themselves on beating defences and infiltrating networks - and consider forbidding users to download them in the first place.

Ultimately, the buck stops with the IT director, who has the overall responsibility to ensure that the appropriate controls - policy, procedures, education - are implemented to mitigate the risks (and costs) associated with the use of pirated software in the enterprise.

It is the IT director's job to ensure that employees are using the internet sensibly, according to pre-agreed company guidelines. It is not the duty of the internet service providers or of the file-sharing software providers to regulate how their systems are used.

Companies need to draw up clear internet access policies for employees and ensure that they are communicated effectively and enforced throughout the organisation.

Otherwise employees will continue to use their company internet connections for non-work reasons. That's not only a lot of wasted employee time and bandwidth; it could ultimately have serious legal repercussions for the business.

See also:

Europe-wide survey finds 'massive ignorance' over spyware  01 Nov 2004
Legal action loomingBritish Phonographic Industry targets 'hardcore' UK uploaders  04 Oct 2004
New laws to fight piracyArt Act and Pirate Act provide sweeping new powers to imprison offenders  28 Jun 2004
Legal music downloadsThe music industry has finally worked out how to make money out of internet music downloads. But will legal online music services be as popular as P2P sites?  18 Jun 2004
The many dangers lurking in P2P software could affect every internet-connected business  31 Mar 2004
Record bosses weigh up tough line on copyright breaches  16 Jan 2004
RIAAThe US trade body is now bringing the full weight of the law to bear on individuals who dare to download a track or two from the web. But the users are fighting back ...  01 Aug 2003

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| Aston Carter
C# Web Developer, Finance, London Financial Services Required: C#, ASP.NET, AJAX Fantastic opportunity not to be missed!! This is a great opportunity to work on a unique objectives that no other company is doing working ... more >
| JAM Recruitment
Senior Hardware Engineer Scotland/Edinburgh Communication Systems Permanent Position 40-45K+Benefits A leading organisation involved with the design and development of data acquisition systems and synthesis boards for a range of radar, signal intelligence and software radio ... more >
| JAM Recruitment
FPGA Engineer Defence/Safety Critical Buckinghamshire Permanent Position 45K+Benefits A leading UK defence organisation requires an experienced digital design engineer to strengthen its existing development team due to a number of long-term projects that have recently ... more >
| JAM Recruitment
DSP Engineer 3 Months Contract Hertfordshire £Excellent Rates£ This position requires you to have experience of measurement algorithms development for the generation and analysis of digital wireless communication standards including GSM, EDGE, UMTS, WLAN and ... more >
More job opportunities