Tuesday, April 12, 2016

On Premise DLP for Cloud-first Organizations

More often than not cloud-first organizations still engage in on premise DLP projects.  The mentality being that on prem DLP has a solid use case (file shares, etc.).

With many orgs now leveraging Exchange Online or Gmail, as well as cloud file sharing (e.g., Box, Dropbox, OneDrive, Dive), is this the best strategy?

No, most of these orgs would be better off to first focus on:

  • Cloud App Security Brokers (CASB) solutions (e.g., CloudLock, Centrify)
  • Whole Disk Encryption / EMM / MDM (e.g., BitLocker / Intune, AirWatch)
  • Email / EDM DLP
  • Web Filtering DLP
After that, orgs should focus on these investments to tie up any residual risk:
  • Database Crypto
  • IRM / RMS / DRM
  • NAC / NAP


No comments:

Post a Comment