Goldman Sachs incident a boon for data loss prevention?
Comments
Strange you list pretty much all DLP vendors apart from Websense. They led the 2008 Forrester and Gartner analyst reports as the leading technology!
"GTB Technologies 5 Essential Ingredients of a DLP system":
1. Comprehensive channels coverage. DLP systems must cover ALL the relevant channels.
2. Enforcement of the data security policy: the product must be able to effectively block transmission of protected data. Many “DLP†products being sold are actually DLD – Data Leak Detection products. They report what data breaches have occurred, instead of stopping it in real time.
3. Content Inspection: Making decisions based on the form (file type, file attributes etc.) or meta-data (author, language, size of attachment etc.) is NOT enough.
4. Accuracy: a DLP solution has to employ detection technology with virtually zero false positives. The DLP system must be resilient to typical modifications of the data
5. Non-duplicating protected data. If it does, then DLP becomes Data Leak Provoking. But many vendors still sell products, copying the data they are supposed to protect into their internal database. Encrypting such data, or keeping it in the form of the search index is not enough to satisfy this requirement!



