Q&As
Creating a BYOD Policy for Information Law Compliance
How do I develop a bring your own device (BYOD) policy?
Focus on the Policy objective—protecting Company information
The objective of a BYOD policy should be to ensure company information is adequately protected, while facilitating more Flexible working by users. Any security measures adopted by the company as part of BYOD should only go so far as is necessary to achieve this objective and be proportionate, considering individuals' personal privacy.
Define who is covered by the policy
Limit BYOD to those users who it is desirable to allow to work in this way, eg allowing suppliers/partners/customers to connect to the company network using their own devices adds complexity and potentially increases risk. Give BYOD users access only to the specific company IT systems they need to use in this way, rather than the entire company network.
Specify the devices covered by the policy
Detail the relevant technical specifications for devices that
To view the latest version of this document and thousands of others like it,
sign-in with LexisNexis or register for a free trial.