Find White Papers
Home
About Us
List Your Papers
    
> McAfee Inc > McAfee Buyer's Guide to Data Protection

McAfee Buyer's Guide to Data Protection

White Paper Published By: McAfee Inc

Data-Protect critical information anywhere it goes. Implementing data protection products and processes can be daunting. Make the right decisions by exploring what is available and what makes sense for your organization. Use this simple guide to evaluate different vendor offerings.



Tags : 
mcafee, security, compliance, security tools, sans, data protection, dlp, midmarket

McAfee Inc
Published:  Jul 27, 2009
Type:  White Paper
Length:  17 pages

Sponsored by McAfee
Data Protection Prospective
Vendor Checklist
A SANS Whitepaper - July 2009 Written by Barbara FilkinsSummary
Data-centric protections need to address data discovery and classification, incident work-flow, policy creation/management and data movement detection. The breadth of technology required to accomplish all of this is broad, covering:
. F ully-integrated encryption for end points for data in use, in motion and at rest within applications (e-mail, file servers, etc.), including sensitive data transferred onto portable storage devices
. H ost-based DLP for localized detection and prevention of data leakage for data in use, data in motion, and data at rest
. N etwork DLP with data discovery and analysis, network monitoring (with extensive protocol and application parsing support), and prevention capabilities for both inbound and outbound content
How should a management team go about evaluating today's encryption and emerging data leakage prevention (DLP) tools? What questions should they ask of the vendor provider(s)? How does a management team determine which solution being proposed will meet the most requirements for today-and in the future? How do they even set requirements without due diligence and discovery technologies to assist in locating and classifying what it is they need to protect? How do they weigh specific business requirements to product features? How do they gauge the stability of the vendor? How do they compare pricing models (per user, per server) and such additional factors as growth potential and integration with other vendor products to optimize their investments?
Organizations need a way to map business needs against all these challenges in procuring a technical solution. To help, SANS has developed the following Prospective Vendor Checklist. In it, requirements have been organized into broad categories to include:
. H ost/network data leakage protection and encryption (how the product functions)
. Management and support (how the product can be managed)
. Company profile and pricing (how viable the vendor is, what services it offers, and product pricing)
This checklist can be sent to prospective vendors, and can be used in combi-nation with our interactive Data Protection Requirements Worksheets to calculate ratings and compare vendors.
SANS Analyst Program 1 Data Protection Prospective Vendor ChecklistProspective Vendor Checklist
Section Data Protection Requirements MEETS? COMMENTSYES NO1 Data Leakage Protection1.1 Discovery, Retention, Searching for Data at Rest (on end points, servers, file shares), In Use and In Motion (on the network over email and in Web traffic, being copied onto external devices, etc.)1.1.1 Discovery: Ability to discover unmarked or unknown dataMarks, indexes, and securely retains:Unfiltered data analyzed by network sensors Unfiltered files that have been analyzed from end points and servers Unfiltered files analyzed from Wiki, FTP and Web serversDocuments sent over unfiltered traffic1.1.2 Retention Registration (fingerprinting a repository's files)Provide inventory (i.e., full listing of files, fingerprinted or not)1.1.3 SearchSearch based on specified time periodsSearch for indexed content based on: Keywords, expressions, content patterns, document type (Word, Excel, CAD, etc.)Hash functions (i.e., MD5 hash)Location, system/device typeFile owner, port, path, age of fileActions and tools related to the operating system (e.g., clipboard, screen capture)Email and email attachments, based on specified sender/recipient Applications, including Web applicationsOther (i.e., not covered by existing rules, client defined)
SANS Analyst Program 2 Data Protection Prospective Vendor ChecklistProspective Vendor Checklist
Section Data Protection Requirements MEETS? COMMENTSYES NO1.2 Monitoring, Alerting, and Enforcement1.2.1 Monitoring: Discover, identify, correlate, analyze and log every instance of sensitive data movement or use (e.g., removal, modification, or transmission attempt) to include:Host Data processed within application on hostApplication being accessed (clipboard, printscreen, others that commonly capture data)Content traversing endpoint by application access (including from clipboard, printscreen)Over I/O channels (bus, Bluetooth, LPT, etc.)Archive tools (winzip, tar... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search