Radicati Group – Content Aware DLP Solutions Panel

Today I participated in a panel discussing Content Aware Data Loss Prevention hosted by the Radicati Group.

Slides and Audio for the panel are available from the Radicati Group Website here

Posted in DLP | Comments Off

DLP Remains a Top Priority for Healthcare Organizations

The Information Security Media Group published the results of their annual survey of of information security professionals in healthcare organizations providing an outlook for 2013 Health Information Security Today.

“Top investments for the year ahead are an audit tool or log management system, a data loss prevention system and a mobile device management system.”

Healthcare Information Security Priorities

 

source: Health Information Security Today 2013 Outlook

Posted in DLP, Healthcare, HIPAA, HITECH | Comments Off

Code Green Networks Partners with Egnyte for cloud DLP

December 14th, 2012 – Sunnyvale, CA – Code Green Networks announced today that it has partnered with Egnyte to bring Data Loss Prevention to cloud based File Sharing, Backup, Collaboration and Local Cloud Technologies. The two companies have been working together to connect Code Green Networks TrueDLP and the Egnyte Hybrid cloud file server.

“Egnyte provides enterprise file sharing with IT control over whether files are stored locally or in the cloud. Combined with Code Green Networks’ TrueDLP, our customers have a tool to ensure that regulated and sensitive files aren’t inadvertently moved from local storage to the cloud,” said Ben Rice, Vice President of Business Development, Egnyte.

A Data Loss Prevention solution must include the ability to monitor and control the flow of sensitive data from organizations into the cloud. TrueDLP has the ability to scan the Egnyte Hybid file server for confidential data before it is transmitted to the cloud. Additionally, this partnership will allow organizations to use TrueDLP to periodically scan their Egnyte cloud for confidential data.

“This partnership allows organizations to move their data to the cloud with confidence” says Code Green Networks Director of Product Management Chris Leffel “Now organizations have the tools to scan their environments for confidential or regulated data before it is moved to the cloud, during the move to the cloud and after its moved to the cloud.”

About Code Green Networks
Code Green Networks delivers affordable data loss prevention solutions that protect private employee and customer information and safeguard intellectual property across all electronic communications channels. The company’s easy-to-deploy, easy-to-manage content inspection appliances rapidly detect and prevent potential data leaks, helping organizations automate compliance and mitigate risks from internal breaches that can result in loss of revenue, financial penalties, and irreparable damage to a corporation’s image, brand, and customer loyalty. Please visit www.codegreennetworks.com for more information.

About Egynte
Over 1 billion files are shared daily by businesses using Egnyte Hybrid Cloud file server. Egnyte´s unique technology provides the speed and security of local storage with the accessibility of the cloud. Users can easily store, share, access and backup files, while IT has the centralized administration and control to enforce business policies. Egnyte, founded 2007, is based in Mountain View, California and is a privately held company backed by venture capital firms Google Ventures, Kleiner Perkins Caufield & Byers, Floodgate Fund, and Polaris Venture Partners. For more information, please visit www.egnyte.com or call 1-877-7EGNYTE.

Posted in Press Releases | Comments Off

BYOD, iOS, and DLP

Rich Mogull over at Securosis has written a great set of posts detailing the different options for managing iOS devices in your environment and making sure they don’t become a source of data loss.

There is a whole spectrum of options available for securing enterprise data on iOS, depending on how much you want to manage the device and the data. “Spectrum” isn’t quite the right word though, because these options aren’t on a linear continuum — instead they fall into three major buckets:

  • Options for unmanaged devices
  • Options for partially managed devices
  • Options for fully managed devices

Read the rest: iOS Data Security: Protecting Data on Unmanaged Devices

Posted in BYOD, DLP, iOS | Tagged , , | Comments Off

Data Loss Prevention (DLP) Best Practices for PCI Compliance

The Payment Card Industry Data Security Standard (PCI DSS) was first released in late 2004 as a means to ensure that merchants were meeting accepted levels of security when they transmit, process, and store cardholder data. PCI DSS 2.0 was released on October 26, 2010 to provide greater clarity and flexibility of the standard making it easier for merchants to implement.

Currently there is no single technology that can satisfy all of the requirements of PCI DSS 2.0; however, today’s Data Loss Prevention (DLP) tools have the ability to successfully address three of the Payment Application (PA) DSS requirements to demonstrate PCI compliance:

  • PA-DSS Requirement #3 – Protect stored card holder data
  • PA-DSS Requirement #4 – Encrypt transmission of card holder data across open, public networks
  • PA-DSS Requirement #11 – Regularly test security systems and processes

In this video Chris Leffel, Code Green Network’s Director of Product Management, discusses how organizations are using DLP tools to address the requirements above and comply with PCI DSS 2.0.

To find out how Code Green Networks TrueDLP can help you comply with various industry and government regulations visit our Web site: www.codegreennetworks.com

Posted in Data Leakage Prevention, Data Loss Prevention, DLP, PCI DSS 2.0, Video | Comments Off