3 ms·
Top search result is from Gartner: alarm bells ringing. Data loss prevention seems to be enterprise speak for doing as much intrusive monitoring you can do, in
by emj 3y ago
Top search result is from Gartner: alarm bells ringing. Data loss prevention seems to be enterprise speak for doing as much intrusive monitoring you can do, in as neutral speak as possible.
1984 is so appealing for so many people, it seems like it is just a book about the tendencies that power can take when it is not guided by sane principles. I have always been employed in a high trust capacity since I was a young adult, there is not a technically feasible system in the world that could prevent me from wrecking havoc in a company. Social ones though, they are extremely effective.
- dsr_ 3y agoEvery so often a client asks if we are using a DLP, and if not, why not. All the DLPs rely on, effectively, regular expression searches of traffic. This is fine if what you need to protect are SSNs, phone numbers, credit card numbers... but if your data is not easily recognized that way, they don't work. If you ask the DLP vendors about their threat model -- and the salespeople generally don't know what a threat model is -- it's always a set of stories about a salesperson who clicks the download-as-CSV button on a CRM system, a DB reporting specialist who generates a report full of raw passwords and credit card numbers, and an off-shore programmer who sends AWS credentials via email. Hopefully you can spot the non-DLP prevention mechanisms for all of these...
- oblio 3y ago> Hopefully you can spot the non-DLP prevention mechanisms for all of these... What is it?
- wil421 3y agoWhat does any of this have to do with theft? In most lawful places, if you dump source code and documents to take with you it’s not going to end well. https://www.cnbc.com/amp/2020/08/04/anthony-levandowski-gets-18-months-in-prison-for-stealing-google-self-driving-car-files.html https://www.cnbc.com/amp/2020/08/04/anthony-levandowski-gets...