To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss...

29
SYMANTEC VISION 2014 To the Designer – Where We Need Your Help • Slide 7 – Can you provide a similar high-res image? • Slide 15 – Can you polish up the content so it’s not an eye chart? • Slide 21, 22, 23 – Can you polish up the content so they’re not eye charts? To Catch A Thief: Preventing the Next Fortune 500 Data Breach 1

Transcript of To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss...

Page 1: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

To the Designer – Where We Need Your Help

• Slide 7 – Can you provide a similar high-res image?

• Slide 15 – Can you polish up the content so it’s not an eye chart?

• Slide 21, 22, 23 – Can you polish up the content so they’re not eye charts?

To Catch A Thief: Preventing the Next Fortune 500 Data Breach 1

Page 2: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Outline

• Data breaches in 2014 and beyond

• Key trends in Information Protection

– CDI

• Symantec vision for Information Protection

• Symantec roadmap for DLP

– Hercules

• Call to action

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 2

Page 3: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 3

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy

Mario Espinoza Sr. Director of Product Management, Symantec

Page 4: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 Presentation Identifier Goes Here 4

Breaches increased by 62% in 2013.

Page 5: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 5

Bring Your Own Cloud

Page 6: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 Presentation Identifier Goes Here 6

40% of employees download business data to mobile devices.

Page 7: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 7

Malicious Insiders

Page 8: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 8

Possibly use visuals from keynote here (Information Governance)

Information Protection

Page 9: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

As DLP deployments evolve from

reactive protection… to an advanced

proactive-protection-based model,

contextual information becomes a

critical core component.

Eric Ouellet

Research VP, Gartner

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 9

Page 10: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Key Findings from Our Research

• Many use a combination of tools to accomplish DLP

• Majority using or considering cloud

• Majority support BYOD while less than half still issue mobile phones

• Orgs are looking to holistically manage information risk and insider threat using DLP, information governance, and access management

The Problem

What They’re Doing Today

• E-mail, cloud, and mobile are major concerns

• Orgs want to improve how they run their DLP program

Pain Points

10 The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy

• 1:7 admit to major data breach • Most concerned about customer,

employee, and partner data; financial data; and IP

• Top repositories of concern: Databases and cloud file sharing

Sensitive Data

Page 11: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Help enterprises protect their

sensitive information from:

• Accidental disclosure

• Malicious expropriation

• Unauthorized access

while managing user risk and

enabling the business to adopt

new technology platforms with

confidence.

Our Mission for Information Protection

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy

Page 12: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Our Vision

Information Protection

Content

Access

Context

Identity

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 12

Page 13: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Information Protection: Beyond Preventing Data Loss

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13

Information Protection

Data Loss Prevention

•Context-aware

•User risk analytics

• Information governance

•Access and entitlements management

•Continuous monitoring

• Identity & content-aware

•Cloud & mobile

•Ready for next-gen. datacenter

Same job

new IT landscape

New, bigger jobs

Page 14: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Federate existing and new data sources Analytics for contextual awareness

Continuous monitoring Console for business users

Information Protection

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 14

Endpoint

Information Protection Analytics

Id. & Access Mgmt.

SaaS & cloud

applications

Storage repositories

Detection Policies

Incident management

DLP

Knows: Data classification

Data usage Meta-data Ownership

Data location

Knows: App. usage

User identity User location

Info. Fabric

Identity repositories

Knows: Content Context

User identity Data flow

Reputation Device

Classification C

lassification

Storage

Network

Page 15: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Roadmap: DLP and Information Protection

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 15

1H 2015 2H 2015 1H 2016 2H 2016

Hercules Enabling the Business

• End-user remediation portal

Manageability & Coverage

• OS X agent

• Windows 8.1, Office 2013, & Android support

• Support for OWA & Outlook.com

• Improved agent management, scalability & health monitoring

• IPv6 monitoring

Policy & Detection

• Policy & detection enhancements

• Downloadable policy details

Simplification

• Single-box DLP

1H 2014 2H 2014

Pegasus Cloud

• Cloud e-mail (Office 365)

• Cloud storage (Box, Zone, etc.)

Manageability & Coverage

• Windows Store apps • Native Chrome support • Enhanced support for

collaboration and file sharing apps.

Policy & Detection

• Group-based policy management

Simplification & Cost Reduction

• Advanced analytics for user risk

• Performance improvements for VDI environments

Lyra & Beyond Cloud

• DLP for Salesforce.com Manageability & Coverage

• Full OS X agent support

Policy & Detection

• Policy lifecycle management

• Detection performance enhancements

• OCR support

Integrations

• Mobile

• Information Fabric

• Symantec.cloud

Simplification & Cost Reduction

• Insider risk profiling

Page 16: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Coming Soon – DLP 12.5 “Hercules”

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 16

Page 17: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Key Themes for Hercules

Enabling the business

Improved manageability and coverage

Enhanced policy management and detection

Simplication and cost reduction

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 17

Page 18: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 18

18

Ownership Assignment

Sensitive Data Clean-up

Resource Selection

18

Ownership Assignment

Entitlements Review

Find sensitive data in DLP

Pull into the portal for distribution

Configure Data Owner mapping

Review/edit

Configure/setup workflow(s)

Review progress/status

Automated sync with Enforce

What?

Who?

How?

Data Loss Prevention Access Governance

Configure/setup workflow(s)

Review progress/status

Approve/launch Data Insight actions

Configure Data Owner mapping

Review/edit

Use Data Insight to scan resources

for permissions/monitor usage

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy

Self-Service Portal

Page 19: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014 The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 19

19

Resource Selection

Ownership Assignment

Portal Admin

Workflow Definition

Self-Service Portal

Overall Process & Components

Data Owner/Data Custodian

InfoSec/GRC

Identify sensitive

files and open

shares that need

input from the

business to

remediate

Define actions users

can take and the

timeframe to

complete

remediation

Define ownership

based on usage,

nature of data, or

custodianship

Customize user

communications

and the portal user

experience

Deploy the tool to

engage users

Monitor and

measure progress

Self-Service Portal Supports Business Processes

Page 20: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Self-Service Portal

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 20

The user is notified via email to remediate incidents. The notification indicates urgency to remediate by incident severity.

Users remediate incidents for files that they own.

Page 21: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

OS X Agent

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 21

Benefits

• Discover sensitive data-at-rest residing on OS X systems

• Supports DCM detection

• Managed alongside Windows endpoints from the same console

Page 22: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Single Box DLP

• Officially support single-tier deployments

• Support Enforce, detection servers, and the database collocated on a single physical server

• Windows and Linux support

• Support simultaneous, multi-channel detection, including Network Monitor, Network Prevent, Discover, and Endpoint

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 22

Benefits

• Reduces the amount of infrastructure needed to deploy DLP development and test environments

• Suitable for branch office or small production deployments

Page 23: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Dozens of new features in DLP 12.5!

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 23

Endpoint

• Enhanced scalability – up to 30K agents per Endpoint server

• Dynamic agent configurations

• Agent health birds-eye view

• Expanded Endpoint events

• Exact match IDM

• OWA and Outlook.com support

• Hyperlinks in popups

• Enhanced browser support

• Office 2013 file type support

Policy & Detection

• Downloadable policy details

• Reusable sender/recipient patterns

• New HIPAA policy templates

• CJK tokenization

• Multi-token EDM

Platform

• IPv6 monitoring

Page 24: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Conclusion & Call to Action

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 24

Page 25: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC PROPRIETARY/CONFIDENTIAL – INTERNAL USE ONLY Copyright © 2014 Symantec Corporation. All rights reserved.

Thank you!

The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 25

Mario Espinoza

[email protected]

(650) 863-5459

Page 26: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Information Protection

DLP and Information Protection Roadmap 29

DLP

Mobile / BYOD

DLP

SaaS/Web Email

DLP

Laptop

DLP

Servers

Storage

Gateways (purpose built)

Identity SSO

Universal policies

Advanced Analytics

Transparent Encryption

DLP

DLP

DLP

Access points

29 Information Fabric

2FA

2 Factor Authentication

DLP

Page 27: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Information Fabric

DLP and Information Protection Roadmap

Policy

• Unified governance policies

• Enforceable actions

Visibility

• Information Map

Risk Mitigation

Policy

Visibility

Metadata

NBU Enterprise

Vault

DLP

Data Centre Security

Clearwell

3rd Party

Apps

• Fingerprint

• Classification

• Owner

• Usage

• Location

• Size

• C-Date

• M-Date

• A-Date

• Name

• Data Type

• Tags

30

Metadata

Page 28: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Information Fabric

Presentation Identifier Goes Here 31

Page 29: To the Designer Where We Need Your Help - VOX...Information Protection: Beyond Preventing Data Loss The Future of DLP: 5 Trends Shaping Symantec’s Roadmap and Strategy 13 Information

SYMANTEC VISION 2014

Roadmap: DLP and Information Protection

DLP and Information Protection Roadmap 32

Information Protection

Hercules • End-user remediation portal • OS X agent • Android support • Policy and detection enhancements • DLP agent management enhancements • Single-server deployment

Pegasus • Cloud e-mail support (e.g. Office 365) • Cloud storage scanning (Box, Zone, etc.) • Advanced analytics for user risk

Enterprise DLP

Information Protection

1Q 2014 2Q 2014 3Q 2014 4Q 2014 1H 2015 2H 2015 1H 2016 2H 2016

Lyra • Information Fabric integration • DCS integration • Encryption integration • Case management (workflow) • Policy authoring framework • Regulatory data retention control • Insider risk profiling

Phoenix • Embeddable DLP detection engine • DLP for mobile, identity, and cloud • Scalability enhancements for DLP cloud

Enterprise DLP

Phoenix Simplify DLP • Detection performance and

enhancements (OCR, IDM, Endpoint keywords, Server DI)

Customer Satisfaction • AD group based policy management • Policy versioning and rollback • First class meta data detection