Download as pdf or txt
Download as pdf or txt
You are on page 1of 4

Data Sheet: Data Loss Prevention

Symantec™ Data Loss Prevention Enforce Platform


Define, deploy, and enforce data loss policies from a central console that manages all Symantec
Data Loss Prevention products

Describing, fingerprinting, and learning are critical to


achieving high detection accuracy and preventing data loss.
Without accuracy, your Data Loss Prevention system will
generate numerous false positives and negatives. False
positives waste limited time and resources on investigating
and resolving incidents that do not actually violate security
policy. False negatives obscure gaps in security by allowing
data loss and putting your organization at risk of a breach.

Key ffeatures
eatures

Over
Overview
view • Described Content Matching protects structured and
unstructured data; it is best used when it is impossible or
Symantec™ Data Loss Prevention Enforce Platform is the
impractical to collect all the content to be indexed.
central web-based management console and incident
repository that is used across all Symantec Data Loss • Exact Data Matching protects structured data, typically
Prevention products. It is where you define, deploy and stored in a database, and is designed to scale to very large
enforce data loss policies, respond to incidents, analyze and data sets (e.g. hundreds of millions of records).
report policy violations, and perform system administration. • Indexed Document Matching protects unstructured data
Enforce Platform is deployed on a single server and is stored in documents and detects exact and derivative
supported by an Oracle® database, which stores historical content matches.
incident and system information. • Vector Machine Learning is a new and exclusive Data Loss
Prevention technology that protects unstructured text by
Comprehensive data detection technolog
technologyy
training the system using example positive and negative
Enforce Platform accurately detects all types of confidential documents.
data, wherever it is stored or used. It uses three classes of
How it works
detection technologies to provide complete and accurate
coverage across your endpoint, network, and storage • A major credit agency uses Exact Data Matching to

systems: fingerprint every United States citizen’s personally


identifiable information (PII) – first name, last name and
Describing protects structured and unstructured data by
social security number – stored in their customer database.
looking for content matches on keywords, expressions or
patterns, and signatures. • A large high tech company uses Vector Machine Learning
to protect millions of lines of source code stored across
Fingerprinting protects structured and unstructured data by
highly distributed repositories.
looking for exact or partial content matches on indexed data
sources and documents.

Learning protects unstructured textual data by building a


statistical model using example documents and calculating
content similarity.

Page 1 of 4
Data Sheet: Data Loss Prevention
Symantec™ Data Loss Prevention Enforce Platform

Proven polic
policyy authoring and tuning framework • One-click smart responses combine multiple responses to

Enforce Platform enables you to write policies once and reduce incident remediation time: change status, send

enforce them everywhere. With our out-of-the box policy notification, add note, or apply file protection.

templates, data identifiers, and solution packs, you can • Out-of-the-box and custom reports provide all of the
quickly and easily reduce data loss risk starting on day one. functionality needed to support compliance and audits, gain

Key ffeatures
eatures visibility, identify data loss risk trends, and empower
business units to secure sensitive data.
• Policy templates for national and international data
privacy laws and regulations, including The Health How it works

Insurance Portability and Accountability Act (HIPAA), The chief information security officer (CISO) at a major bank
payment card industry (PCI), and European Union Data uses incident reporting to regularly communicate risk and
Protection Directive. engage business data owners in data loss prevention.

• Data identifiers combine pattern matching with data


Broad inte
integration
gration capabilities with open platf
platform
orm
validators to accurately detect national identifiers and other
Symantec Data Loss Prevention offers the greatest
PII.
flexibility to extend your DLP capabilities. The Symantec™
• Solution Packs contain pre-configured policies, response
Data Loss Prevention FlexResponse™ Platform is an
rules, user roles, and reports tailored for specific industries,
exclusive application programming interface (API) that
including financial services, healthcare, and federal.
integrates with third-party services and automatically
How it works applies protection to exposed files.
A multinational company with offices in the United States Key ffeatures
eatures
and Europe uses the European Union Data Protection
• Email and file-based encryption integration with PGP™
Directive policy template to monitor bank card numbers in
NetShare from Symantec™, PGP™ Universal Gateway Email
outbound email.
from Symantec™, and Symantec™ Endpoint Encryption

Comprehensive reporting and remediation workflow Removable Storage Edition.

Ninety percent of data loss prevention (DLP) is about what • Enterprise Rights Management integration with Microsoft®

you do after you find sensitive data. Enforce Platform is Windows Rights Management Services (RMS), Oracle®

where you can view reports, automatically notify users of Information Rights Management (IRM), Liquid Machines™,

violations, and enable automatic workflow responses. and GigaTrust™.

Comprehensive incident reporting and remediation enables • Security Information and Event Management (SIEM)
you to take the right action at the right time and integration provides easy export of incident information to
communicate data loss risk to your business units. SIEM systems, including Symantec™ Security Information

Key ffeatures
eatures Manager.

• Automated remediation workflow allows you to take action How it works

immediately without administrator or user intervention: When a user tries to copy a file containing cardholder data
notify user, request justification, encrypt email or file, to a USB, Data Loss Prevention triggers Endpoint
quarantine file, or block action. Encryption to encrypt the file via FlexResponse.

Page 2 of 4
Data Sheet: Data Loss Prevention
Symantec™ Data Loss Prevention Enforce Platform

Online ex
exchange
change ffor
or polic
policyy collaboration and content Language and localization support

Stay ahead of updates to data privacy regulations and newly Data Loss Prevention offers broad language and localization
released technologies through the Symantec Data Loss support for international deployments, including policy
Prevention Exchange, a new online community for current authoring, detection, end-user notifications, and localized
users of Data Loss Prevention. operating systems:

Key ffeatures
eatures • Detection support for more than 25 languages, including

• Access to new policy content independent of release Hebrew, Arabic, languages in Western and Central Europe,

cycles and product versions. and Asia.

• Collaborate on policy best practices and content with Data • User interface support for Chinese, Spanish, English,

Loss Prevention users and partners. Brazilian Portuguese, Russian, Japanese, French, and
Korean.
Technical Specifications
Additional S
Symantec
ymantec Data LLo
oss Prevention Products
Sys
ystem
tem Architecture
Symantec delivers a proven solution to discover, monitor,
protect, and manage confidential data wherever it is stored
or used.

Symantec Data LLo


oss Prevention ffor
or Endpoint

• Symantec™ Data Loss Prevention Endpoint Discover scans


for sensitive data stored on laptops and desktops in order to
inventory, secure, or relocate the data.

• Symantec™ Data Loss Prevention Endpoint Prevent


monitors and blocks confidential data from being
transferred, sent, copied, or printed by desktop or laptop
Sys
ystem
tem Requirements
users.

Symantec Data LLo


oss Prevention ffor
or Net
Network
work

• Symantec™ Data Loss Prevention Network Monitor


inspects all network communications for sensitive data.

• Symantec™ Data Loss Prevention Network Prevent Email


redirects, quarantines, or stops outbound messages
containing sensitive data.

• Symantec™ Data Loss Prevention Network Prevent Web


stops or removes sensitive data from outbound web
communications.

Page 3 of 4
Data Sheet: Data Loss Prevention
Symantec™ Data Loss Prevention Enforce Platform

Symantec Data LLo


oss Prevention ffor
or Storage Symantec World Headquarters
• Symantec™ Data Loss Prevention Network Discover 350 Ellis St.
identifies sensitive data exposed on file servers, Mountain View, CA 94043 USA
collaboration platforms, websites, desktops, laptops, and +1 (650) 527 8000
other data repositories. 1 (800) 721 3934
www.symantec.com
• Symantec™ Data Loss Prevention Data Insight Enterprise is
for governance of unstructured data.

• Symantec™ Data Loss Prevention Network Protect


remediates exposure of sensitive data.

How to learn more about Data Loss Prevention


Visit our website
http://www.symantec.com/business/data-loss-prevention

Speak with a Data Loss Prevention Product Specialist in


the U.S.
Call (415) 829-5013

Speak with a Data Loss Prevention Product Specialist


outside the U.S.
For specific country offices and contact numbers, please
visit our website.

About Symantec
Symantec is a global leader in providing security, storage,
and systems management solutions to help consumers and
organizations secure and manage their information-driven
world. Our software and services protect against more risks
at more points, more completely and efficiently, enabling
confidence wherever information is used or stored.
Headquartered in Mountain View, Calif., Symantec has
operations in 40 countries. More information is available at
www.symantec.com.

Copyright © 2011 Symantec Corporation. All rights reserved. Symantec and the Symantec Logo are trademarks or registered trademarks of Symantec Corporation or its affiliates in the U.S. and other countries.
Other names may be trademarks of their respective owners.

Symantec helps organizations secure and manage their information-driven world with IT Compliance, discovery and retention management, data loss prevention, and messaging security solutions.
21189690 05/11

Page 4 of 4

You might also like