Live data from Hacker News

Ask HN: Should employers pay for employees' phones if 2FA apps are required?

news.ycombinator.com

41–50 of 70 posts

Re: Ask HN: Should employers pay for employees' phones if 2FA apps are required?

#41
Since I don't allow anyone to install stuff on my personal phone - and they probably wouldn't want to store their secure data onto a device that I rooted anyway - then the only option is for the employer to provide a 2FA device.

It doesn't have to be a phone, though. Yubikey is good and affordable.

Re: Ask HN: Should employers pay for employees' phones if 2FA apps are required?

#42
post #37

[flagged]

And then they will use that for all work-related communication. And in secret, they will thank you profoundly for allowing them to just disconnect in the evening, because nobody wants to call THAT phone.

Re: Ask HN: Should employers pay for employees' phones if 2FA apps are required?

#47
post #14
post #10

Earlier quoted context omitted.

In the past I believe this was so that if the phone was lost it could be remote wiped for security. I agree that's a hard no for personal devices though.

It can be less intrusive, but it depends how the person in charge of mobility set things up and the MDM tool capabilities. On Android you can define a device as corporate owned, which mean the employer have full control over the device, or it can be user owned and instead of taking control of the entire device, it makes a sandbox in which the corporate data resides, and the mobility admin can only touch what is insid…

that's almost true, theatre some policies that employer can force that are device wide, like forcing pin unlock or disabling developer settings

Re: Ask HN: Should employers pay for employees' phones if 2FA apps are required?

#49

Personal devices should _never_ be used for work. That allows the line between self-owned work and employer-owned work to be thin/non-existent. That can make it a lot easier for your employer to own your personal projects. Don't do it. Don't use your corporate laptop for personal things, and don't use your personal equipment for corporate things. If they want to use 2FA, they need to provide the 2FA device.

i might be mistaken but i think a lot of the compliance standards go along the lines of do not mix personal and business equipment; to me this includes Phones - and it really should include a separate vlan (at least) for distributed employees.

> separate vlan

What’s that gonna achieve when entire firm has zero trust policy?

Re: Ask HN: Should employers pay for employees' phones if 2FA apps are required?

#50
post #37

[flagged]

> If employer is already paying you a salary, just be grateful. People always act like their employers owe them. You're an employee at will.

Why should anyone "be grateful" for the salary they are owed? They fulfilled their side of the contract.

For that matter, why should employees have to waste their own salary if their employers can't afford a phone to run the apps they require? They should be looking around and getting ready to jump ship.

Post reply on HN