Safe computing when traveling abroad
Last updated:
Is there a trip abroad in your future? Learn how to prepare your devices for travel, keep your data safe while on the go, and what actions to take upon your return.
Getting prepared
Limit the number of devices you take on your trip. The fewer devices, the less risks.
Generate a back-up or temporary MFA code so you do not need your MFA device to connect to the network. Or, authenticate with your smartphone. Multi-factor authentication is an added layer of security to protect you while traveling and using available wireless networks.
Consider taking a loaner device rather than your personal equipment. This will limit the amount of data at risk should your laptop be lost, stolen, or searched. PC and Macintosh laptops with appropriate up-to-date security protections are available for checkout from DoIT.
If you can not take a loaner device, sanitize your devices (phone, laptop, apps) by backing up the information and removing all sensitive information not needed during your travels.
Update and patch all:
- Operating systems (set them to auto update)
- Browsers (Firefox, Chrome, Safari, Edge, etc.)
- Apps (antivirus, banking, financial, etc.)
Empty your Trash/Recycle Bin and enable screen lock and timeout functions prior to travel. Record and store your laptop’s serial number.
Activate tracking tools like Apple’s Find My or Google’s Find My Device. These tools let you locate, lock, or erase your device remotely if it goes missing.
Check which apps can access your location and personal data. Disable location tracking for apps you won’t use.
For 1Password users: go to the Travel Mode feature to temporarily remove sensitive data vaults from your devices before you leave.
Visit the U.S. State Department’s web site to obtain information about the safety and security of the country you are visiting and to enroll in the Smart Traveler Enrollment Program (STEP). You can also go to the International Safety and Security site for
Is the country you are traveling to on the sanctioned or embargoed country list?
Minimize data transported or accessed while abroad. Particularly identify and safeguard data subject to regulations and laws, which include:
- International Traffic in Arms Regulations (ITAR) or Export Administration Regulations (EAR)
- Controlled Unclassified Information (CUI)
- Personally identifiable Information (PII)
- Protected health information (HIPAA)
- Student information (FERPA)
- Sensitive financial information
Evaluate the sensitivity of the information you are considering taking by knowing in many countries/cultures there is no expectation of privacy. Backup all information you do take and leave the backup at work. Use Spirion (Identity Finder) to locate and remove restricted data. Remove all external storage media (e.g. CDs, USBs, etc.) from the computer before you travel.
Contact your mobile phone service provider and ask what they recommend for international cellular service while traveling. Consider leaving your normally used devices at home and traveling with a clean unlocked device that does not have sensitive information or personal account information on it. You can also consider purchasing an inexpensive local “burner” phone on arrival (often available for purchase on arrival at an international airport). Device theft is a growing problem in many locations around the world, so avoid traveling with a device you cannot afford to lose.
They contain more than just your name and flight information. Once scanned, they reveal information about your frequent-flier number which could help a hacker steal earned miles or access other personal information contained in the account.
During your stay
- Be vigilant that nobody is trying to steal information from you by spying or eavesdropping while you’re using your devices.
- Limit electronic and face-to-face discussion of sensitive information.
- Wait to discuss sensitive matters upon return or use a known secure mechanism.
- Do not use computers or faxes at foreign hotels or business centers for sensitive matters.
- Do not charge your devices by connecting them to charging stations, computers, televisions, DVRs, etc.
- Do not allow foreign storage devices (e.g. USB, CDs, etc.) to be connected to your laptop, tablet, or phone.
- Do not download new apps or allow your operating system or existing apps or programs to update.
- Do not click on links in messages or use links to move from internet site to site.
We understand that some of this may not be feasible. In China, you may be required to use local application-based e-payments or local applications for public transit or other public messaging. It is always best to have a borrowed device to install this software.
- Keep devices with you whenever possible.
- If you leave them behind, store them in the hotel safe.
- Turn off auto connect.
- Turn off Bluetooth and wifi capabilities when not in use.
- Turn off your cellular phone when not in use, particularly if you have a data plan enabled. Using Airplane Mode will simplify the activation or deactivation of wireless capabilities.
This is particularly advisable in countries where there is no expectation of privacy. See the U.S. State Department’s web site for country specific issues.
In general, when accessing University systems, minimize the length of time and amount of information accessed. Use VPN whenever possible to connect to campus resources, unless you are in a country that doesn’t allow encryption.
Report loss or theft of information or electronic devices to help@doit.wisc.edu.
Upon your return
Please remove any information from the laptop prior to returning it. Any information that resides on the laptop at the time of its return to the Help Desk will be removed upon its return.
If you took your personal computer, we highly recommend that the laptop is analyzed for malware, unauthorized access and if necessary re-built before next use. DoIT can assist in this effort.
Consider changing passwords for all systems you accessed while traveling.