7
DLP Tools, from Policing to Understanding User Vulnerabilities Yazan Almasri MSc, CISSP, PMP, ITIL Information Security Director, Aramex International

Dlp tools, from policing to understanding user vulnerabilities

Embed Size (px)

Citation preview

Page 1: Dlp tools, from policing to understanding user vulnerabilities

DLP Tools, from Policing to Understanding User Vulnerabilities

Yazan Almasri MSc, CISSP, PMP, ITIL

Information Security Director, Aramex International

Page 2: Dlp tools, from policing to understanding user vulnerabilities

WHY DLP?

Data

Apps

Host

Network

PhysicalSecurity in

Dep

th

Data Leak P

reventio

n

Page 3: Dlp tools, from policing to understanding user vulnerabilities

Deployment

Endpoint

Descriptive Data Matching

Tuning Period

Detection only

Page 4: Dlp tools, from policing to understanding user vulnerabilities

• Regex

• False Positives

• Performance

• Privacy*

• Encryption

• Investigation

Challenges

*International DLP Related Privacy Laws - Google Maps

Page 5: Dlp tools, from policing to understanding user vulnerabilities

… an eye opener Awareness Problems

Unauthorized Apps

Unauthorized Access

Questioning Access Models

Departing Employees

Understand The Business

Open Access to Shares

Incident Response

PCI Compliance

Password Sharing

Page 6: Dlp tools, from policing to understanding user vulnerabilities

Success Factors

Success Factors

Trust

Management

Policy

AwarenessHR Support

Legal Team

Classification

Page 7: Dlp tools, from policing to understanding user vulnerabilities

Questions