Symantec Data Loss Prevention. Las tendencias mundiales nos muestran que el mayor porcentaje de perdida y robo de datos responde a la falta de visibilidad y el error en el manejo de los mismos. Conozca como prevenirse.
Symantec Webinar Part 1 of 6 The Four Stages of GDPR Readiness
Symantec Data Loss Prevention 9
1. Symantec Data Loss Prevention Las tendencias mundiales nos muestran que el mayor porcentaje de perdida y robo de datos responde a la falta de visibilidad y el error en el manejo de los mismos. Conozca como prevenirse. Ariel Beliera, Account Systems EngineerFrancisco Della Paolera, Corporate Business Manager Symantec South of Latin-American Region Vontu: Now Part of Symantec
2. 2 Key Questions Facing Today’s CISO What are the challenges? What is Data Loss Prevention (DLP)? Why Symantec DLP and how does it work? Why customers choose Symantec DLP?
3. 3 CORPORATIONSWITHOUT WALLS DATA EXPLOSION THE ROLEOF SECURITY The Vanishing Perimeter The Office is “Anywhere” Outsourcing and Offshoring Data is Everywhere Structured Data, Unstructured Content IP, Customer, and Classified Data Risk and Compliance Business Enabler Limited Budget Security for a Wide Open World CONFIDENTIAL
4. Do You Know… How best to prevent its loss? How is it being used? Where is your confidential data? 4
5. What is Data Loss Prevention? DISCOVER PROTECT MONITOR DATA LOSS PREVENTION (DLP) 5
76. Symantec DLP Architecture MTA or Proxy NETWORKPROTECT DISCOVER STORAGE NETWORKPREVENT ENFORCEPLATFORM MONITOR NETWORK MANAGEMENTPLATFORM ENDPOINTPREVENT SPAN Port or Tap DISCOVER ENDPOINT DMZ SECURED CORPORATE LAN Disconnected 15
77. Continuous Risk Reduction Baseline 1000 Remediation 800 Notification 600 Incidents Per Week 400 Prevention 200 0 Risk Reduction Over Time 16
78. Gartner Magic Quadrant for Content-Aware Data Loss Prevention Symantec positioned in the leaders quadrant in the Gartner Magic Quadrant for Content-Aware Data Loss Prevention, 2009 This Magic Quadrant graphic was published by Gartner, Inc. as part of a larger research note and should be evaluated in the context of the entire report. The Gartner report is available upon request from Symantec. The Magic Quadrant is copyrighted June 2009 by Gartner, Inc. and is reused with permission. The Magic Quadrant is a graphical representation of a marketplace at and for a specific time period. It depicts Gartner’s analysis of how certain vendors measure against criteria for that marketplace, as defined by Gartner. Gartner does not endorse any vendor, product or service depicted in the Magic Quadrant, and does not advise technology users to select only those vendors placed in the “Leaders” quadrant. The Magic Quadrant is intended solely as a research tool, and is not meant to be a specific guide to action. Gartner disclaims all warranties, express or implied, with respect to this research, including any warranties of merchantability or fitness for a particular purpose. Source: Magic Quadrant for Content-Aware Data Loss Prevention; by Eric Ouellet, Paul E. Proctor; June 22, 2009 17
79. Why Symantec DLP is the Safe Choice Measurable Risk Reduction Complete Coverage Only Unified Data Loss Prevention Solution Global Market Leader 18
83. The Shift in Data Security Threat Insider vs. The Hacker Inadvertent vs. Malicious Breaches since 2005: 1380 and counting > 318M records 96% of leaks are due to faulty processes or oversight 1% malicious Other 1% manager approved 50% of leakage is due to business process 46% of leakage is due to employee oversight Hacker 48% Insider 52% Data compiled from industry sources including EPIC.org and PerkinsCoie.com. Source: Symantec Data Loss Prevention Risk Assessment findings. 22 Symantec Confidential - Do Not Copy or Distribute
84. Impact of Data Loss £47 per Consumer Record in UK 318 Million Records Breached Since 2005 $600 Billion IP Theft a Year Globally Cross Industry…. 23 Symantec Confidential - Do Not Copy or Distribute
85. 318 million personal records have been exposed by data breaches since 20051 85% of security execs claimed at least one reportable security breach involving data loss in the last year2 52% of Chief Information Security Officers believe data leakage to be a top driver of their security spending3 65% increase in spending on Data Loss Prevention since 06, as the number one most promising new security technology4 Top of Mind for Chief Information Security Officers 24 Growing Concern
86. What is Data Loss Prevention? How best to prevent its loss? How is it being used? Where is your confidential data? DISCOVER PROTECT MONITOR DATA LOSS PREVENTION (DLP) 25
87. Data Loss Prevention Drivers Customer Data Social Security Numbers Credit Card Numbers Protected Health Info Corporate Data Financials Mergers and Acquisitions Employee Data Intellectual Property Source Code Design Documents Pricing Confidential Data Types 1:400 messages contains confidential data 1:50 network files is wrongly exposed The Risk The Risk 4:5 companies lost dataon laptops 1:2 companies lost dataon USB drives 26
88. Symantec Data Loss Prevention PROTECT MANAGE DISCOVER MONITOR Endpoint Network Storage Symantec Data Loss Prevention Endpoint Discover Symantec Data Loss Prevention Network Monitor Symantec Data Loss Prevention Network Monitor Symantec Data Loss Prevention Endpoint Discover Symantec Data Loss Prevention Network Discover Symantec Data Loss Prevention Network Discover Symantec Data Loss Prevention Network Protect Symantec Data Loss Prevention Endpoint Prevent Symantec Data Loss Prevention Network Prevent Symantec Data Loss Prevention Network Prevent Symantec Data Loss Prevention Network Protect Symantec Data Loss Prevention Endpoint Prevent Symantec Data Loss Prevention Endpoint Prevent Management Platform Symantec Data Loss Prevention Enforce Platform
89. Network Symantec Data Loss Prevention Network Monitor Symantec Data Loss Prevention Network Prevent Symantec Data Loss Prevention Endpoint Storage Symantec Data Loss Prevention Endpoint Discover Symantec Data Loss Prevention Network Discover Symantec Data Loss Prevention Endpoint Prevent Symantec Data Loss Prevention Network Protect Management Platform Symantec Data Loss Prevention Enforce Platform
90. DLP Complements Symantec Solutions Symantec Data Loss Prevention Complementary Symantec Solutions Network Symantec DLP Network Prevent Symantec DLP Network Monitor Symantec Brightmail Gateway* Symantec IM Manager Endpoint Symantec DLP Endpoint Prevent Symantec DLP Endpoint Discover Symantec Management Console Symantec Endpoint Encryption Symantec Network Acess Control Symantec Endpoint Protection Storage Symantec Backup Exec System Recovery Symantec DLP Network Protect Symantec DLPNetwork Discover SymantecVeritas Netbackup SymantecEnterprise Vault SymantecBackup Exec ManagementPlatform Symantec DLP Enforce Platform Symantec Control Compliance Suite Symantec Security InformationManager** Symantec Enterprise Security Manager 29 *Formerly known as Symantec Mail Security 8300 ** In the process of being incorporated into Symantec Control Compliance Suite
119. Symantec DLP TrueMatch™ Detection IDMIndexed Document Matching EDMExact Data Matching DCMDescribed Content Matching Structured DataCustomer Data Unstructured DataIntellectual Property Described Data • Non-indexable data• Lexicons• Data identifiers • Designs/Source/Financials• Derivative & passage match• Near perfect accuracy • Customer/Employee/Pricing • Partial row matching • Near perfect accuracy • 5M+ docs per server • 300M+ rows per server 31 31
120. Complete Coverage: Discover Find data wherever it is stored File servers Distributed machines Document and email repositories Web content and applications Databases Create inventory of sensitive data Scheduled scanning Incremental scanning “Out of compliance” scan mode Manage data clean up Incident match count File details (date, owner) Access control information Data owner look up 32 32 32
121. Complete Coverage: Monitor Understand how data is being used Network protocol coverage Endpoint event coverage Content- and context-aware detection Automated sender/manager notification Monitor on the network Standard hardware Signature-based protocol recognition Gigabit monitoring without “sampling” or dropped packets Queue incidents Monitor at the endpoint Online and offline Unmanaged devices and OSes On-screen pop up notification
122. Complete Coverage: Protect Proactively secure stored data Relocate data to an encrypted location Automatically quarantine, copy, or remove data Broadest scan target coverage Prevent confidential data loss Real-time blocking on network and endpoint Conditionally quarantine/route emails for encryption Selectively remove content from web postings Certified ICAP integration with leading web proxies Support for all SMTP compliant MTAs Enforce confidential data policies Real-time email notifications Seamless interaction with Web 2.0 sites On-screen pop-up notification on the endpoint “Ransom note” in place of relocated stored data 34
123. Complete Coverage: Manage Universal DLP Policy “Define once, enforce everywhere” 60+ pre-built policy templates Custom detection and response rules Accurate TrueMatch Detection Content and context, enterprise scale Comprehensive EDM, IDM, and DCM Automated Remediation and Workflow Automated action and response “5 second incident triage” “One-click response” Comprehensive Reporting 40+ pre-configured reports Business unit risk assessment Scalable and Secure Management Distributed architecture with high-availability Advanced security design 35 35 35
124. Symantec DLP Success Model Focus Target High-Risk Data and Identify Exposure Communicate Manage Risk, Deliver Results Design Prepare Data Loss Policy, Remediation and Risk Reduction Blueprint ACCUMULATED KNOWLEDGE Implement Protect and Prevent: Engage Users
Objective of Slide:Define measurable risk reductionGive three Customer resultsProblemSolutionBenefitScriptHere are three examples of Customers who use the Data Loss Prevention solution to protect their confidential data. Across industries, organizations turn to Symantec to reduce their level of data loss risk. In fact, 1 in 3 FORTUNE 100 Customers are a Symantec Data Loss Prevention Customers. Here are three Customers, from three different industries, who reduced their risk of data loss after implementing our solution:1. A leading healthcare provider needed to protect over 1 million patient records and demonstrate compliance with HIPAA (Health Insurance Portability and Accountability Act). They are using Symantec Data Loss Prevention to block Protected Health Information (PHI) from leaving their organization via email or USBs. Within one year of deploying the solution, they saw a 70% reduction in the number of data loss incidents as a result of automated policy enforcement. (Sharp HealthCare)2. A F100 Financial Services company needed to maintain their brand reputation, and protect their confidential company and customer data. They are using Symantec Data Loss Prevention to automatically send email notifications to their employees when they violate corporate data security policies. Since deploying the solution, they’ve reduced their data loss risk by 80% due to employee education. (New York Life)3. A Global Manufacturing company needed to protect their intellectual property, such as CAD diagrams, to prevent overseas competitors from stealing their product designs. They are using Symantec Data Loss Prevention’s advanced detection technology to fingerprint all of their confidential design documents and accurately detect matches against data being sent, stored or copied. As a result of the solution, they have seen a 98% reduction in unauthorized sharing of design specs. (Caterpillar)Are you experiencing similar challenges?Across industries we’ve helped organizations to safeguard their confidential information. As I mentioned 1 in 3 F100 is a Symantec DLP Customer, in fact within the F100:9 of the top 10commercial and investment banks6 of the top 10insurance companies4 of the top 5 healthcare providers4 of the top 5 credit card companies6 topenergy and utilities companies8 topmanufacturing companies12 toptechnology companies13 topretail brands14 toppublic sector organizations… are Symantec Data Loss Prevention Customers[Click]
Objective of SlideDemonstrate market leadership.Communicate how global companies across industries are using Symantec Data Loss Prevention.Customize the text in the grey boxes as needed:25% of the FORTUNE 100 8 of the top 10 commercial and investment banks (Citigroup, BofA, JPMorganChase, MorganStanley, Goldman Sachs, PNC Bank, Charles Schwab, Barclays) 6 of the top 10 insurance companies (AIG, Allstate, Prudential, NY Life, The Hartford, and Progressive) 4 of the top 5 healthcare providers (UHG, Aetna, CIGNA, Humana) 4 of the top 5 credit card companies (Visa, Mastercard, Discover, AMEX)6 top energy and utilities companies (Southern, Waste Management, Xcel Energy, DTE Energy, Pinnacle West Capital, World Fuel Services) 8 top manufacturing companies (Nikon, Alliance One International, Pitney Bowes, Honeywell, CAT, Dow Corning, CHS, Northrup-Grumman) 12 top technology companies (Cisco, Finisar, NetApp, Tech Data Corp, Xerox, Cadence, Motorola, Verisign, Google, Sony, Qualcomm, Symantec!)13 top retail brands (Big Lots, Blockbuster, Cabela’s, CarMax, CVS, Dollar General, eBay/PayPal, Mary Kay, McDonald’s, Nordstrom, Retail Ventures, Safeway, United Rentals) 14 top public sector organizations (Career Education, DeVry, NYC DOE, Education Management, San Jacinto College, University of Nebraska, University of Rochester, William Rainey Harper College, DLA, DoD, FDIC, NHS, Office of Director of National Intelligence, US Army) ScriptWe are the choice of global market leaders. We have customers across various industries: healthcare, insurance, retail, financial services, manufacturing and high tech.1st column: DLP continues to gain momentum in the heath care industry where PCI compliance and HIPAA are key drivers (we have 4 of the top 5 healthcare providers – United HealthGroup, Aetna, CIGNA, Humana)2nd column: Symantec Data Loss Prevention dominates the insurance industry with 6 top insurance companies – AIG, Allstate, Prudential, New York Life, The Hartford and Progressive). 3rd column: 12 top retail brands are Symantec DLP customers and they too need to protect pricing and promotion information as well as credit card information for PCI compliance and brand protection4th column: Symantec Data Loss Prevention also dominates the financial services industry with 8 of the top 11 commercial and investment banks. 5th column: Symantec DLP customers include 10 top technology companies who need to protect Intellectual Property including source code and pricing information. We also have manufacturing customers who have purchased DLP primarily to also protect IP. Caterpillar for example needed to protect manufacturing and design documents from competition. NetApp needed to protect proprietary source code from misuse as development expands to India and China, while also defining shareable, open source code. Motorola shared with us that they had to protect their phone designs as there was a 90 day window from when a phone was launched until competitive solutions were on the market. [Click] In fact, we have been positioned as a leader in the Gartner MQ for the last 3 consecutive years. (Note this can not be printed or mentioned in a public recording) . We have the most experts dedicated to Data Loss Prevention. One in four FORTUNE 100 companies is a Symantec DLP customer.
Objective of SlideDemonstrate market leadership.Communicate how global companies across industries are using Symantec Data Loss Prevention.Customize the text in the grey boxes as needed:25% of the FORTUNE 100 8 of the top 10 commercial and investment banks (Citigroup, BofA, JPMorganChase, MorganStanley, Goldman Sachs, PNC Bank, Charles Schwab, Barclays) 6 of the top 10 insurance companies (AIG, Allstate, Prudential, NY Life, The Hartford, and Progressive) 4 of the top 5 healthcare providers (UHG, Aetna, CIGNA, Humana) 4 of the top 5 credit card companies (Visa, Mastercard, Discover, AMEX)6 top energy and utilities companies (Southern, Waste Management, Xcel Energy, DTE Energy, Pinnacle West Capital, World Fuel Services) 8 top manufacturing companies (Nikon, Alliance One International, Pitney Bowes, Honeywell, CAT, Dow Corning, CHS, Northrup-Grumman) 12 top technology companies (Cisco, Finisar, NetApp, Tech Data Corp, Xerox, Cadence, Motorola, Verisign, Google, Sony, Qualcomm, Symantec!)13 top retail brands (Big Lots, Blockbuster, Cabela’s, CarMax, CVS, Dollar General, eBay/PayPal, Mary Kay, McDonald’s, Nordstrom, Retail Ventures, Safeway, United Rentals) 14 top public sector organizations (Career Education, DeVry, NYC DOE, Education Management, San Jacinto College, University of Nebraska, University of Rochester, William Rainey Harper College, DLA, DoD, FDIC, NHS, Office of Director of National Intelligence, US Army) ScriptWe are the choice of global market leaders. We have customers across various industries: healthcare, insurance, retail, financial services, manufacturing and high tech.1st column: DLP continues to gain momentum in the heath care industry where PCI compliance and HIPAA are key drivers (we have 4 of the top 5 healthcare providers – United HealthGroup, Aetna, CIGNA, Humana)2nd column: Symantec Data Loss Prevention dominates the insurance industry with 6 top insurance companies – AIG, Allstate, Prudential, New York Life, The Hartford and Progressive). 3rd column: 12 top retail brands are Symantec DLP customers and they too need to protect pricing and promotion information as well as credit card information for PCI compliance and brand protection4th column: Symantec Data Loss Prevention also dominates the financial services industry with 8 of the top 11 commercial and investment banks. 5th column: Symantec DLP customers include 10 top technology companies who need to protect Intellectual Property including source code and pricing information. We also have manufacturing customers who have purchased DLP primarily to also protect IP. Caterpillar for example needed to protect manufacturing and design documents from competition. NetApp needed to protect proprietary source code from misuse as development expands to India and China, while also defining shareable, open source code. Motorola shared with us that they had to protect their phone designs as there was a 90 day window from when a phone was launched until competitive solutions were on the market. [Click] In fact, we have been positioned as a leader in the Gartner MQ for the last 3 consecutive years. (Note this can not be printed or mentioned in a public recording) . We have the most experts dedicated to Data Loss Prevention. One in four FORTUNE 100 companies is a Symantec DLP customer.