Companies are struggling to identify and protect sensitive information. Confidential customer data, intellectual properties, trade secrets and legal documents are being shared against authorization, costing organizations millions in restitution. Because this sensitive information is so easily accessible, in today's open environments, the need for data security has amplified. Data, in all forms, is at risk: Data at rest - sitting on the network or shared drives, data in motion - data being sent via email, Instant Message, web postings, etc. and data in use - data saved on removable media devices, such as: USB drives, CD's, floppy disks, iPod's , cameras, etc.
Recently, the severity of data protection and insider threats has significantly increased. Information that is being stored on the network and various removable media devices is getting into the hands of outsiders, thus, violating state and federal enforced laws and regulations designed to protect such data: Sarbanes Oxley, GLBA, HIPAA , CA SB1386, CA AB1950, Payment Card Industry (PCI) Data Security Standard, The Patriot Act,
FISMA, FERC/NERC, and others.
Data Loss Prevention is a system which performs real-time data classification of ALL outbound transmissions from the Network and automatically enforces security policies on security violations including blocking.
The key is to protect the content, not the file. So if the same content resides in multiple files of different formats, the system must still detect it and enforce an action on the transmission.
New programs requiring the use of unconventional protocols are becoming increasingly more prevalent. Furthermore, despite company policies forbidding the practice, employees frequently utilize peer to peer applications. Microsoft Networks and similar protocols, initially designed for LAN, are perfectly capable of working over the Internet. Finally, malicious applications (e.g., viruses and worms) can be utilized to transfer data across a broad variety of protocols. So
supporting just SMTP, HTTP, FTP and IM is a real limitation
and is NOT DLP.
|