Aberdeen’s 4th Annual Data Loss Prevention Report

Aberdeen Defines Key Characteristics of “Best in Class” DLP Users; What You Can Learn from Them
Last week, Aberdeen Group released its fourth annual report on data loss prevention (DLP). The report, “Content-Aware, The 2010 Data Loss Prevent Report” by analyst Derek Brink, CISSP, concludes “… companies achieving top results successfully use content-aware technologies to identify sensitive data across multiple channels, and to invoke a range of remediation options to enforce their established security policies. In doing so, they reap the substantial benefits of fewer actual incidents of data loss or data exposure, fewer audit deficiencies, and lower operational cost.”
The report details a number of characteristics and practices, as well as hurdles, of top organizations in deploying DLP. While much has been said about the market and choices for DLP, this report is unique in defining what organizations are doing today with DLP and why or why not, as well as metrics.
Interestingly, top performers as identified in this report noted staff bandwidth and complexity of DLP solutions as the big challenges, while others were challenged by organization issues and lack of policy. As we have said over and over, here at Code Green Networks, we believe simplicity and cost-effectiveness are key to DLP success.
So what can you, as an existing or potential user of DLP, learn from these companies? One interesting finding is that for those organizations denoted as best in class, 93% of data loss or exposure incidents were inadvertent – not malicious. This compares to just 65% for all others. Does having a DLP solution in place mean fewer malicious, or deliberate, data exposure incidents? Financially, top performers invested about $90,000 more than others in total cost of DLP but avoided $6.8 million in costs associated with data loss or exposure – 75 times the return on their investment. So-called “laggards” reported an increase of almost 4 times that of best in class brethren in increase in data loss or exposure incidents.
You can get this report and learn how your colleagues and other organizations are using DLP, simply register at http://v1.aberdeen.com/includes/asp/sponsored_registration.asp?ci=/launch/report/benchmark/6575-RA-content-aware-data-loss.asp&spid=30410182&camp=2


