News

So what is “DLP”?

Data Loss Protection “DLP
 Today’s security solutions are focused on the perimeter to deal with external threats, but Gartner reports that 70% of threats come from inside the organisation? So only a fraction of the incidents of data loss are being prevented.
 
So if that is the case then what does it mean? What’s the cost?
To list a few examples:
• Data loss damages corporate reputation
• Average cost for companies is $6.3 million (Obviously highly dependant on the size of the business in question but you get the picture)
• Data loss results in major financial loss
• UK figures show that the average cost of each record compromised was £47, costing companies who reported a breach an average of £1.4 million.
• Data loss compromises competitive advantage
• Data loss can affect compliance
 
Who does it affect?
There have been plenty of recent examples of data being lost or misappropriated in the national press, this is all down to data being moved around without protection or control.  Edge security does not provide any cover in these circumstances.
Examples of some people who have been affected:
• 25 million child benefit recipients
• 5,000 prison staff
• 21,000 patients at Colchester University Hospital
• 600,000 members and would be members of The Royal Navy, Royal Marines and RAF.
• The above we only know about because they are in the public domain and rules require that data loss is reported.  In the corporate world we can assume that losses are happening but are not reported.
 
So what can you do about it?
It’s a real and existing issue that is not going to go away, if anything it is likely to get worse as mobile phones morph into devices that are connected to corporate networks, Web2.0 sites and personal networks at the same time.   Network users expect to be able to work anywhere, the government is encouraging flexible working hours and environmental groups are talking up the “Green” benefits of your employees working from home to avoid polluting the air with their cars and clogging up the roads.
 
So going backwards doesn’t look like an option although I am sure it will be tried by a few optimistic IT Managers….
 
The most obvious way forward is to revisit security policy and begin to protect the data itself and not the network or devices. If all your critical business value is held within the data itself then it’s this that needs to be monitored and secured.
 
So what is DLP?
A DLP solution provides the ability to Secure and Control Data that is:
• On the move – inbound, outbound and inside the company
• Static – On Servers / Application data
• In use – being amended / worked on
• Who is using it and what are they doing with it?
 
The most important thing to understand about DLP is that it is not one product, it’s a concept which is achieved using a blend of applications configured as a customized solution to meet your organizations specific needs.
 
 
If you are interested in discussing how the issues described in this article may affect your business  and how to prepare for it then please get in touch with us on 01189070070 and we will arrange for one of our security consultants to speak with you.

In this section

Call me back

If you wish, we can give you a call to discuss your needs

Us, elsewhere…

Vendors
2010 - HP Preferred Partner
Certified CISCO partner
CITRIX - Silver Solution Partner
Professional Service Certified - Net App - Gold Partner
VMWare Partner & Enterprise Solution Provider
Symantec Silver Partner