Recourse For Draconian Encryption Requirements? 555
CryoStasis writes in with this question, which likely resulted from the new Massachusetts data security law. "I work for a major hospital in the Northeast. Recently the hospital has taken it upon itself to increase its general level of computer security. As a result they now require full-disk encryption on any computer connected to their network on site. Although I think this stance is perhaps a little over-exuberant, most of these computers are machines that have been purchased with hospital funding. In the department that I work in, however, many of the employees (myself included) bring their own personal machines to work every day. For obvious reasons we're rather reluctant to allow the hospital's IT staff to attempt installation of the encryption software. Those who have allowed the installation have had major problems afterwards, on both Macs and Windows machines — ranging from severe/total data loss to frequent crashes to general slowness — which the hospital does very little to remedy. To make matters worse, the hospital is now demanding that any machine that is used to check email (via email clients or webmail directly) be encrypted, including desktop-style machines at home, which must be brought in to the IT department, as they refuse to distribute the encryption software to the employees for install. By monitoring email access they have begun harassing employees who check email from off campus, stating that their email/login access will be disabled unless they bring in their computers. I have no intention of letting these people install anything on my machine, particularly software of which their IT staff clearly doesn't have a solid grasp. Have other Slashdot readers come across this kind of a problem? Do I have any recourse, legal or otherwise, to stop them from requiring me to install software on my personal machines?"
Re:Make lemonade (Score:3, Funny)
Simple, just grab a pc off of one of the desks and take it home. Be sure to only use it for work. One unfunded mandate deserves another.
Re:Obvious. (Score:2, Funny)
I guess you're right, I foresee companies dissolving their marketing departments left and right in the immediate foreseeable future.
Re:I Concur (Score:2, Funny)
I'm posting at the top because I've never seen such a unified response to an AskSlashdot in the decade I've spent reading this site. I want to inform readers... don't waste your time reading past this point because the rest of the discussion is redundant.
Well, here's something different. See if they would let you check your email from an encrypted virtual machine and then be sure to always use the virtual machine to do anything work-related.