Quick Wins with Data Loss Prevention
How to Make DLP Work for You
Rich Mogull, CEO & Analyst Securosis, L.L.C. John Dasher, Senior Director, Data Protection, McAfee Mark Moroses, Assistant CIO, Continuum Health Partners
Quick Wins with Data Loss Prevention How to Make DLP Work for You - - PowerPoint PPT Presentation
Quick Wins with Data Loss Prevention How to Make DLP Work for You Mark Moroses, Assistant CIO, John Dasher, Senior Director, Rich Mogull, CEO & Analyst Continuum Health Partners Data Protection, McAfee Securosis, L.L.C. Agenda Rich
Quick Wins with Data Loss Prevention
How to Make DLP Work for You
Rich Mogull, CEO & Analyst Securosis, L.L.C. John Dasher, Senior Director, Data Protection, McAfee Mark Moroses, Assistant CIO, Continuum Health Partners
2
Agenda
– Low-Hanging Fruit: Quick Wins with DLP
– How Continuum uses McAfee DLP to protect sensitive patient data
– McAfee DLP solution overview
Rich Mogull! Securosis, LLC!
typically user and group based.!
back to warm bodies.!
leading obstacle to DLP deployments.!
(SPAN/ Mirror)!
Network!
deployment!
Endpoint!
credentials!
Storage!
your Active Directory and DHCP servers).!
servers.!
key storage repositories (you generally only need a username/password pair to connect).!
Single Data Type ! Information Usage !
Single Type !
when possible.!
Information Usage !
identify usage patterns.!
ID! Time! Policy! Channel! Severity! User! Action! Status!
1138! 1625!
PII! Email! 1.2 M! rmogull! Blocked! Open!
1139! 1632!
HIPAA! IM! 2! jsmith! Notified!Assigned!
1140! 1702!
PII! HTTP! 1!
192.168.0.213!
None! Closed!
1141! 1712! R&D/Product X!
USB! 4! bgates! Notified!Assigned!
1142! 1730!
Financials! Storage! 4!
192.168.1.94!
Encrypt! Escalated!
1143!
12/1/08!
Source Code!
Cut/Paste!
12! sjobs! Confirm! Open!
Evaluate results! Tune policy! Add protection! Expand scan scope! Baseline scan!
Integrate with Infrastructure! Define Initial Policy!
rmogull@securosis.com! http://securosis.com! AIM: securosis! Skype: rmogull! Twitter: rmogull! Securosis, L.L.C.!
Deploying Data Loss Prevention Mark Moroses, Assistant CIO, Continuum Health Partners
22
Background
– Regulations - HIPAA – Joint commissions to certify best practices – Regular audits
– Must be able to ensure enforcement – Need to prove policies are being followed
Solution
– IT supporting physician’s needs
– Documented inappropriate data leakage, which helped secure budget
– McAfee DLP has become the starting point for investigations – Investigations now able to occur much faster
– Proving compliance with policies and demonstrating working controls – Predictable technology and process speed future audits, reduce manpower requirements
23
Lessons Learned
– Physician with prior first-hand experience
– “Soft opening” – Communicated roll-out plan
– No “ready, fire, aim” – Work closely with HR & Legal stakeholders
24
John Dasher, Senior Director, Data Protection, McAfee
McAfee Data Protection 26
Static DLP Leaks Data
Violations
Data
McAfee Data Protection 27
Static DLP Leaks Data
Violations Bit Bucket
Data
McAfee Data Protection 28
McAfee DLP Leverages Data
Violations
Data
McAfee Data Protection 29
McAfee DLP Leverages Data
Violations Capture
Data Intelligence
Data Fast, accurate policy creation and rapid, in- depth investigations
McAfee DLP 9 Advantages
Tight Product Integration
Deployment Velocity
Data Analytics
31
McAfee DLP Solution – What Others Say
SC Magazine finds McAfee Host DLP “to be a good value for customers looking for a lot of features and a lot of flexibility in both data leakage control and enterprise rights management.” NetworkWorld found that McAfee has a “very practical understanding of the role of DLP in a modern organization” with “innovative features, excellent user interfaces, and a clear vision for the future of DLP.”
32
McAfee DLP Resources
http://www.mcafee.com/us/enterprise/optimize/data_protection.html
– 10 Steps to Protecting Your Data – Low Hanging Fruit: Quick Wins with DLP – Forrester Research Total Economic Impact of McAfee DLP – McAfee 48-hour Data Risk Assessment
http://www.mcafee.com/us/enterprise/products/data_protection/ data_loss_prevention/index.html
– Continuum and BCI customer case studies
http://siblog.mcafee.com/category/data-protection/
Q&A