iSnare.com - Free Content Articles Directory
Authors Contents [Advanced Search][Add OpenSearch][Job Search]
Distribute your articles to thousands of article sites for only $2 and below! Read more...

Index  Computers and Technology
 

Data Leakage - It Takes More Than One Silver Bullet To Stop It

 
[ Contact the Author] [ Send to a Friend] [ Article Publisher] [Make PDF] [ Print] [ Bookmark & Share]
 
Read our Terms of Service before reprinting this article. The submitter specified above has claimed the rights to this article.
Dan Schutte

As you begin to explore Data Leakage, the first awareness is how the perpetrators are usually your own staff. Here we discuss a range of available tools which can be applied to protect against your company. They work in a 'policy-based' framework to enforce security and prevent attempts to leak information. They can be structured to guard against threats specific to your business via your own unique policy requirements. This review will provide you with the knowledge to begin to develop a strategy to control data leakage, and perhaps the vitality of your company.

Types of Solutions

Data Leakage can occur through a variety of methods - some are simple, some complex. As such, there is no single 'silver bullet' to control Data Leakage. However, through a variety of tools and functions, we can manage how-where-when, and who, can access your company's data. These tools can include:

Lexical Analysis - the ability to control email based on the presence of certain keywords and phrases - content filtering. Lexical Analysis can identify passages of confidential text either in the message body or buried within an attachment. With web browsing, it can detect and/or stop attempts to upload confidential text to websites. For example, attempts to use webmail (like Hotmail or Yahoo) to send confidential information.

User Management - the ability to restrict rights for distributing confidential information to authorized persons only. This could mean that financial reports can only be emailed externally by the CFO, or product designs can only be emailed by members of the Executive Team. If another user tries to email a confidential document to an external email address, the message can be blocked and a notification can be sent to your security officer, a supervisor or any other email address you designate. User Management also allows you to restrict the ability to upload certain attachment types to websites. This can prevent unauthorized users from uploading i.e. Excel spreadsheets or CAD files to the Internet without permission.

File Management -allows you to control over 175 different file types. This control can encompass file type, who are the sender and recipient, the presence of key words and other elements. File Management identifies files by the characteristic code signatures of the file type, rather than relying on the name of the file, or the file extension for identification. Using merely the file extension for identification is an unreliable method, and can easily be circumvented by a user by simply renaming the file extension.

File Management Options

There are a wide range of file management options available to protect against data leakage.

Embedded signatures - you can embed code words or alphanumeric markers in confidential documents such as "UNIQUEWORD123," for example. These markers can be made invisible to the reader by making the font white, but they can still be detected by a scan and block any document featuring the code word being sent by an unauthorized user.

Fingerprinting - you can save a copy of any confidential document or file into a "fingerprint" folder. Any email with an attached copy of a file saved in the "fingerprint" folder can then be detected. Any attempt to email or access a restricted file can be blocked and reported.

File Type - specific file types such as CAD, Microsoft Project plans or password protected zip files can be automatically restricted to authorized users only. This prevents general users from emailing files that are not intrinsically related to their job function. They can also detect files embedded inside of other files, such as a Word file inside of an Excel spreadsheet or a database file inside of a zip compressed archive file.

Recipient Blacklisting - allows you to define specific email addresses or domains that you wish to control email communication to. For example, you can set a wildcard rule that states "block all emails to "@mycompetitor.com" unless from the Authorized Users group." This rule would block any email going to your competitor's email domain, coming from an unauthorized email address.

Webmail Blocking - provides the capability to completely block access to blacklisted webmail accounts. However, if you wish to allow users restricted access to webmail for limited personal use, you can block users from uploading certain file types or even adding confidential text.

Anti-virus & Anti-spyware - products will support the use of many popular third-party anti-virus and antispyware scanners. These block Trojan worms and malicious spyware entering your organization via email or the Internet, at the gateway. Viruses and spyware are the most common tools employed by hackers bent on gaining access to confidential information within your organization. Employing a layered approach to virus and spyware protection at the server level also helps to prevent data leakage by external parties.

Conclusion

Effective control of Data Leakage is multi-faceted. The role and policy based structure presents a clear orientation to setting up your systems. As a windfall to the deployment, many organizations discover gaping holes in their current security administration. You will be migrating to a new and disciplined approach to controlling your company's data. Likewise, your policies and permissions will continue to evolve as does your company's direction.

Assure you have the right tools that are dynamic enough to grow and adapt so that your company's interests are always protected. Our tools meet the test daily in monitoring and controlling a company's data. We are in nearly half of all Fortune 500 Companies.

We work with companies to assure their data and messaging is in compliance and secure. Our solutions are state of the art, quick to implement, cost effective and provide the comfort to know your data is secure. A phone discussion is a great way to assess your environment and determine what would be the best action plan. Visit our website www.enclavedata.com to learn more.

You have the responsibility to maintain your company's digital environment, with the right tools you can now also have the control to assure compliance and protect your company's assets.

Important NoticeDISCLAIMER: All information, content, and data in this article are sole opinions and/or findings of the individual user or organization that registered and submitted this article at Isnare.com without any fee. The article is strictly for educational or entertainment purposes only and should not be used in any way, implemented or applied without consultation from a professional. We at Isnare.com do not, in anyway, contribute or include our own findings, facts and opinions in any articles presented in this site. Publishing this article does not constitute Isnare.com's support or sponsorship for this article. Isnare.com is an article publishing service. Please read our Terms of Service for more information.

Dan Schutte is the President of Enclave Data Solutions, specializing in messaging security, content filtering, anti-spam software, email/IM archival and compliance. Visit http://www.enclavedata.com to read actual Case Studies of how companies have successfully protected their data networks and messaging.

Article Tags: data [See Dictionary], email [See Dictionary], file [See Dictionary]
Got a question about this article? Ask the community!
Article published on March 10, 2008 at Isnare.com
 
Rate [Ratings: 4.8 / 5] [Votes: 5]

Data Security - Do You Know Your Risk Is Greater Internally, Than Outside?
Submitted by: Dan Schutte

A lot of effort and expense in Internet security is directed towards 'keeping the bad guys out' This is half the solution...

That's Not An Ipod In The Office Anymore - That's A New Data Security Threat
Submitted by: Dan Schutte

Cell phones, MP3 players, IPods, Instant Messaging, Hotmail accounts - these are all considered 'personal technologies'...

Email In Business - Content Security, Who Is Looking?
Submitted by: Dan Schutte

Email has become vital to business communication and operations Today, more than 90 per cent of workers cannot function as effectively, or at all, without email...

Regulatory Data Compliance - How Does This Affect Your Company?
Submitted by: Dan Schutte

Over the past decade, significant legal requirements have evolved concerning an organization's digital data...

Surf's Up - Web Browsing Is A Serious Concern For Business
Submitted by: Dan Schutte

There are very few jobs today that do not have some interaction with the Internet Web access is now as standard to a business as a phone...

Spam - We Have It, Now How Do We Stop It?
Submitted by: Dan Schutte

If your stock performance has matched the percentage rise of email spam, you will be retiring soon The latest indicators are stating that Spam has nearly doubled in the past year alone...

Email Compliance - Does This Really Mean Me?
Submitted by: Dan Schutte

Introduction Over the past ten years email has evolved into a recognized communications vehicle What began as primarily social use is now ubiquitous in the business world...

Email Archival - Here Is Where Regulatory Compliance Can Actually Improve Your Operation
Submitted by: Dan Schutte

Introduction As the digital age pervades both our personal and business lives, compliance measures are beginning to follow...

Unsecured Instant Messaging - Are You Leaving The Backdoor Unlocked?
Submitted by: Dan Schutte

By now almost everyone has heard of Instant Messaging or IM Depending on your generation, you either are an avid user or your children use it...

How to Install Aftermarket Stereo in Vauxhall Agila
Submitted by: Jack Wylde

DESCRIPTION: The radio installation in VAUXHALL AGILA Some Cars have steering controls from new and when you replace your radio...

Don't Ruin Your Laminator - 4 Reasons to Always Use a Carrier With Your Pouch Laminating Machine
Submitted by: Jeff McRitchie

One of the most important supplies you'll need when getting ready to use a pouch laminator is a carrier...

GBC ShredMaster CC195 Cross-Cut Shredder Review
Submitted by: Jeff McRitchie

If you've visited an office supply store recently or checked out paper shredders on the Internet, it probably seems like paper shredders are all alike, especially in the looks department...

Frequently Asked Questions About Spiral Coil Binding
Submitted by: Jeff McRitchie

Coil binding - also known as spiral binding - is a very popular method of binding, but it can be difficult to understand how it's done...

An Overview of the GBC C-75 Comb Binding Machine
Submitted by: Jeff McRitchie

If you are looking for an inexpensive comb binding machine for your office or home office you might be considering the GBC C75...

5 Great Features of the Rhin-O-Tuff HD6500
Submitted by: Jeff McRitchie

Designed for the heaviest duty users such as print and copy shops, binderies and large organizations, the Rhino Tuff HD6500 is a machine that offers top of the line flexibility and capacity...

Comparing the Swingline SmartCut EasyBlade and EasyBlade Plus Rotary Trimmers
Submitted by: Jeff McRitchie

At first glance, Swingline's SmartCut EasyBlade and EasyBlade Plus may look very similar, except for the price...

Five Reasons to Consider the Rhino-Tuff OD4000 Modular Binding Punch
Submitted by: Jeff McRitchie

Though it may be the smallest of Rhino's electric interchangeable punches, the OD4000 offers you about as much as a binding punch can offer...

Carnival of New Digital Camera Camcorder
Submitted by: Leo Vegner

The category of camcorder is one broad category of the old and new, dynamic and basic offing in the world of digital photography...

DirectAccess Takes the Place of VPN For Windows Seven
Submitted by: Gregg Housh

Microsoft has unveiled Direct Access for Windows 7 and Windows Server 2008, remotely connecting users to their office as if they were right there...

Looking For Reliable Software To Restore Memory Cards Files
Submitted by: Lance Edwards

Well, bad things always happen There is no exception...

Where Can You Sell Your Used Toner Cartridges?
Submitted by: Adriana N

Many hi-tech devices now come with many accessories, components, and specific parts For instance, there are many computer related devices that over time will require new parts...

History of Dell Computers
Submitted by: Adriana Noton

Dell is a well-known computer company that has been around for over 20 years Most people recognize the name and thousands of people buy new Dell products every day...

Windows 7 Buyer Info
Submitted by: Atherton Arkell

There have been so many problems with the Windows XP and Vista operating systems that when the new Windows came out, everyone wanted to be a Windows 7 buyer...

An Insight Of Mini Notebook
Submitted by: Roberto Sedycias

Mini notebook, also known as netbook, is smaller than the standard notebook computer, and has a better battery life...

Isnare.com Footer Divider

© 2004-2009. Isnare Free Articles - An Isnare Online Technologies Free Articles Project. All Rights Reserved.   Privacy Policy