Call now for cybersecurity help: 888-646-1616
Holly Sagstetter

10 Android Security Settings for Small and Midsize Businesses you should address today!

November 3, 2022

If you’re not sure which Android security settings to change, you’ve come to the right place. Below are our favorite tips for small and midsize businesses to better protect company data on Android devices. There is one very important step for companies to take first: make sure you are using a Mobile Device Management (MDM) system. This will allow you to enforce some of the security rules we’ll discuss below.

And as for your personal devices? The security settings below absolutely apply as well. Let’s get started.

android security settings

By the way -- are you an iPhone user? Here's an article for you! https://adeliarisk.com/11-iphone-security-settings/

10 Android Security Settings to set up today

Below are 10 important iAndroid device security settings – and honestly, you should set aside a few minutes to get this all done. It’s important!

  1. Use a strong passcode

Follow these instructions to set up a strong passcode: https://www.howtogeek.com/253101/how-to-secure-your-android-phone-with-a-pin-password-or-pattern/   

Usually, the longer and more complex the passcode, the better. Fingerprint / faceprint are ok -- generally, these alternative modes of authentication are fine to use.

  1. Auto-lock is your friend

Follow these instructions to set your device to auto-lock as quickly as possible -- decrease instead of increase: http://smallbusiness.chron.com/increase-lock-out-time-android-30829.html   

  1. Encryption

You don’t need to worry about setting up encryption on your Android if you’re running any version later than 8.0.  It’s already turned on by default IF you have set up a passcode.

If you’re using a version below 8.0, it’s time to upgrade.

Your backup should be encrypted, especially if you’re in healthcare and need to comply with HIPAA. You can tell if it’s encrypted if you’re required to enter your phone PIN/passcode before backing up the data.

  1. Say yes to updates

Always apply security updates as soon as you are prompted to do so.

  1. Find My Phone

If your device is ever lost or stolen, you can use this feature to locate the device.  You can even use it to remotely wipe the device, which is very handy if it contains PHI.  Follow these instructions to turn it on: https://www.google.com/android/find  

  1. Turn on two-factor authentication for your Google ID

Follow these instructions: https://safety.google/authentication/

  1. Never, ever root your phone

Learn more: https://www.bullguard.com/bullguard-security-center/mobile-security/mobile-threats/android-rooting-risks.aspx 

  1. Make sure you understand your phone’s privacy settings

This article can help: https://www.wired.co.uk/article/android-privacy-settings-oreo-security.  Also consider the use of a utility that makes it easy to scan your privacy settings.  Many people use Lookout, but don’t bother with their antivirus products. 

  1. Use a SIM PIN

 If you don't do this, thieves can change the SIM and put it in another unlocked phone. Once they have your SIM in another phone they can request an SMS code for resetting the password to all your accounts. 

Follow these instructions to set up a PIN on your SIM card: https://www.digitalcitizen.life/how-change-or-remove-sim-pin-android-2-steps/ 

  1. Review App Permissions

Accessibility permissions are incredibly powerful and can lead to malware taking action on your behalf, from inside your apps. Regularly review the permissions that each app has been granted and ask yourself if there is a good reason each app has the permissions that it does. Follow these instruction: https://support.google.com/googleplay/answer/6270602?hl=en 

Summary

The Android security settings in this article are important for company and personal devices. Companies should add another layer of protection by utilizing a Mobile Device Management System (MDM). At a minimum, MDM should allow you to enforce passcode usage, and allow you to wipe company data off of a lost/stolen device. 

Guiding clients towards the right MDM option and other cybersecurity solutions is part of our Virtual CISO service. We’ll find the gaps and help you strengthen your cybersecurity posture.

Leave a Reply

Your email address will not be published. Required fields are marked *

Do you think we might be a
good match?

We help over 100 of the best financial services, healthcare, and manufacturing companies across the U.S. with their cybersecurity.
About
Blog
Copyright 2024 Adelia Associates, LLC | All Rights Reserved