Remote Work Security Checklist
45 items across 6 categories. Print this page or save it as PDF for offline reference.
Network Security
- VPN installed and active on all work devices
- VPN kill switch enabled
- Auto-connect enabled for unknown networks
- Home router password changed from default
- Router firmware updated to latest version
- WPA3 (or WPA2-AES) encryption enabled on home Wi-Fi
- Separate Wi-Fi network for work devices (if possible)
- Guest network set up for IoT / personal devices
Account Security
- 2FA enabled on email (Gmail, Outlook)
- 2FA enabled on cloud storage (Google Drive, Dropbox, iCloud)
- 2FA enabled on password manager
- 2FA enabled on work tools (Slack, GitHub, AWS, etc.)
- 2FA enabled on banking / financial accounts
- 2FA method: authenticator app (not SMS)
- Backup / recovery codes saved securely
- Password manager installed with unique passwords
- Connected apps audited and unused ones removed
Device Security
- Full-disk encryption enabled (BitLocker / FileVault)
- OS auto-updates enabled
- Browser auto-updates enabled
- Firewall enabled
- Remote wipe configured (Find My Device)
- Screen lock after 2 minutes of inactivity
- Anti-malware / endpoint protection active
- Webcam cover when not in use
Data Protection
- Automated cloud backup for work files
- Local encrypted backup for critical documents
- Sensitive files stored in encrypted containers
- Work and personal data separated
- Old files and accounts properly deleted
Behavioral Security
- Phishing recognition training completed
- Verify unexpected requests through separate channels
- Privacy screen used in public workspaces
- No sensitive info discussed on public voice/video calls
- Social media does not reveal travel plans in real-time
- USB data blocker used for public charging
- Suspicious emails reported to IT / security team
Travel Preparation
- VPN downloaded and tested before departure
- Destination's internet restrictions researched
- Local SIM / eSIM arranged
- Devices backed up before travel
- Find My Device enabled on all devices
- Bank notified of travel dates
- Emergency contacts documented offline
- Travel-safe vault configured (1Password Travel Mode or similar)
BuySecureVPN Remote Work Security Checklist — buysecurevpn.com — Updated April 2026
Based on NIST Cybersecurity Framework 2.0, CISA Telework Security Guidance, and SANS Institute recommendations.