While many security solutions (e.g., CASB, ATP, MTD, DMARC/SPF, EDR) look to catch malware / ransomware threats before they are experienced, isn't the response to a ransomware incident a service continuity challenge?
With proper RPO terms, as well as tested BCP/DR procedures, ransomware response should be relatively painless. The real concern is your ecosystem, as many third parties wont have the same governance regarding BCP/DR as a large enterprise.
Showing posts with label CASB. Show all posts
Showing posts with label CASB. Show all posts
Monday, March 6, 2017
Tuesday, February 7, 2017
Vetting Security Policies
There always seems to be a considerable gap between policy development and execution.
This often stems from a delineation between the org that develops versus audits said policies.
Beyond administrative controls, many companies are now deploying security solutions (e.g., DLP, CASB, EMM/MDM, MAM, IAM/IDM, DMARC/SPF, ATP) w/ policy engines. To implement either admin and/or technical safeguards and not validate their utilization is a noticeable risk.
This often stems from a delineation between the org that develops versus audits said policies.
Beyond administrative controls, many companies are now deploying security solutions (e.g., DLP, CASB, EMM/MDM, MAM, IAM/IDM, DMARC/SPF, ATP) w/ policy engines. To implement either admin and/or technical safeguards and not validate their utilization is a noticeable risk.
Tuesday, January 3, 2017
Why Enterprise DLP Solutions Will Go Away
Large, traditional, enterprise DLP deployments will go away as organizations look to leverage multiple, integrated DLP solutions. The reasons for this include:
With that said, the real question is what else will be migrated away from on premise?
- A focus on cloud & mobile solutions, & a migration away from on premise
- Consolidation of vendor solution capabilities (e.g., CASB, DLP, DCAP, RMS, DMARC, SPF)
- Portable / interoperable policies / rules (e.g., SCAP, CTP)
- A focus on agile deployments
- Cost / economies of scale
With that said, the real question is what else will be migrated away from on premise?
Labels:
CASB,
CTP,
DCAP,
DLP,
DMARC,
enterprise,
integrated,
RMS,
SCAP,
SPF
Wednesday, July 13, 2016
Dropbox & Bring Your Own Key (BYOK)
With cloud service providers (CSPs) moving to embrace business consumers' needs to secure their environments, more and more are embracing BYOK and / or the use of cloud application security brokers (CASB).
However, Dropbox is lagging behind. Is this because of their strengths in the B2C market? Maybe, but with the announcement that Salesforce will now support BYOK, Dropbox seems to be the last of the Mohicans.
Is this a smart or dumb move? Time will tell, though the latter seems to be the case.
However, Dropbox is lagging behind. Is this because of their strengths in the B2C market? Maybe, but with the announcement that Salesforce will now support BYOK, Dropbox seems to be the last of the Mohicans.
Is this a smart or dumb move? Time will tell, though the latter seems to be the case.
Subscribe to:
Posts (Atom)