Securing Physical Devices

  • Limit access to the device
  • Keep in secured areas
  • Keep device attended when outside secure areas
  • When storing or leaving devices unattended:
    • Keep devices out of sight where possible
    • Keep device in a secure area
    • Observe device and cables to ensure what is plugged in is expected
  • Implement full disk encryption and passcodes on devices to mitigate risks if device is lost
  • Securely wipe the device when data is no longer needed