Endpoint security vendor DeviceLock continues to seek partners in order to counter the growing use of removable storage devices - such as memory sticks - in the removal of sensitive information from corporate networks.
DeviceLock announced last week that it was partnering with Ironkey, which claims to provide the world's most secure flash drives offering military grade AES encryption. The two companies said their announcement was aimed to combat the increasing threat of "data leakage from the desktop to the pocket," i.e. sensitive data leaving the company via USB or storage device.
DeviceLock made its name from its ability to enforce security policies related to personal storage devices. "The key functionality of our software is to control any type of internal or local ports or interfaces of the endpoint computer," said Alexei Lesnykh, DeviceLock's business development manager.
This includes controlling which users or groups can access USB, FireWire, Infrared, COM and LPT ports; Wi-Fi and Bluetooth adapters; any type of local, network, or virtual printer; any Windows Mobile and Palm OS-based PDAs and smart phones; as well as DVD/CD-ROMs, floppy drives, and other removable and plug-and-play devices.
According to Lesnykh, a lightweight endpoint software client is installed onto "every computer being protected, but it is completely centrally administered and deployed." Access policies can be defined for the whole of the distributed network, but in addition, every individual end-user agent can have specific end-user access control policies, allowing a fine layer of granularity.
"Our approach is based on loosely-coupled integration," explained Lesnykh. "We partner with people. For example, for encryption we partner with PGP on the software side, and on the hardware side, we partner with people like Lexar Media."
"We opt for integration [with partners] and the code is not merged into our products, so we will not run afoul of U.S. legislation," said Lesnykh. "Because of this, we don't have any problem with U.S. government controls." (After World War 2, it was illegal for the U.S. to sell or distribute encryption technology overseas as it was classified as a munition. Some restrictions still apply nowadays to the export of cryptography.)
Lesnykh points out that DeviceLock is still actively seeking new technical partners, especially in the data leak prevention and encryption fields.
And Lesnykh is clear about the threats organizations are facing from unsecured machines in the corporate network.
"In my experience the biggest threat comes from USB devices," said Lesnykh. "However memory enabled devices, such as smart phones, are also a growing concern. This is because the capacity of personal mobile devices is often the same as USB sticks."
Lesnykh's view is backed up by a Ponemon survey last December, when more than half of the respondents said they had personally copied confidential company information into USB memory sticks, even though more than 87 percent admitted that company policy forbade them from doing so.
Lesnykh meanwhile rates the second most common way for data leaks to occur is via local synchronization, i.e. copying sensitive data from one device to another device locally. The third most commonly leak is via document printing, where is it "very difficult to catch the thief."
"The sales stats are telling us that demand (for USB protection) is growing," said Lesnykh. "Not just in vertical industries such as financial or military. We are seeing large demand from legal, healthcare and even municipalities, and police departments in the UK. The market is growing fast, from large enterprises down to SMB and other industries."
DeviceLock is also apparently fielding a lot of requests from customers regarding controlling the printing of documents. At the moment, DeviceLock offerings context based endpoint security (i.e. specifying which printer can print documents), rather than content based end point security (but it is looking to add this at a later stage).
Lesnykh insisted there are no other hidden costs for central management and administration components - "although these are very advanced and natively integrated with Microsoft Active Directory."
Latest on Intrusion Detection & Prevention
- Two years on, Estonia hardens its electronic defenses
- DNS attack downs Internet in parts of China
- Is the U.S. ready for government-sponsored cyberattacks?
- Identifying the source of corporate threats
- Creative ways to fight data leaks
- Microsoft patch rate surged in second half of 2008
- Attackers exploit critical PowerPoint vulnerability
- New 'scareware' Trojan holds users to ransom
- All five smartphones survive PWN2OWN hacker contest
- Conficker's next move a mystery to researchers
Security Essentials
- Good security in recessionary times
- Security ROI: Fact or Fiction?
- NetWitness releases free version of security software
- Study: critical infrastructure often under cyberattack
- Crooks can make $5M a year shilling fake security software
- Sun exec: IT security should follow business needs
- Clumsy staff more dangerous than hackers: survey
- When the watchdog is the underdog
- Mafiaboy grows up; a hacker seeks redemption
- Ouch! Security pros' worst mistakes
TechWorld Jobs (beta)
Recent Jobs
TechWorld Blogs
-

TalkingTech
The view from the top of IT with TechWorld Editor Rodney Gedda
-

Entrenched
Cooking up better code, IDG's developers reveal some of their secrets
-

Broadband Voice
Darren Pauli digs in from the front line of Australia's broadband battleground
Recent blog posts
- Nokia remains 'open' to Android amid Symbian renaissance
- KDE's Seigo gives sneak peek at version 4.3
- Was the iPhone 3G S worth queuing up for?
- Has Oracle started its mammoth technology consolidation?
- iPhone 3.0: the detail is the process, not the features
- TechWorld.com.au goes mobile
- Should Dell buy Palm? Stranger things have happened
- A big week for Linux: is user friendliness finally in sight?
- Apple, Android rain on Palm's Pre parade
- The clone attack is becoming unstoppable
Recent comments
- PSP Nintendo
13 hours 23 min ago - Interesting report. You were
1 day 9 hours ago - Are you sure it is in Sydney?
1 day 20 hours ago - The mobile market has
2 days 4 hours ago - Great news.
Sms spam should
3 days 1 hour ago - now what am I gonna do with
3 days 4 hours ago - ozlotteries.com not ozlotto.cm
3 days 5 hours ago - OLAT Release
3 days 16 hours ago - and i was sure i would win...
3 days 20 hours ago - Hi SolidRadicle,
I am looking
3 days 21 hours ago - Not if I can help it
3 days 21 hours ago - Ozlotto Tips Scam
4 days 1 hour ago - Great post.
It's very
4 days 1 hour ago - Excellent review! I'm glad
5 days 22 hours ago - iTunes Helper
1 week 1 day ago - Update the link to OrangeHRM web site
1 week 2 days ago - Very informative article
1 week 2 days ago - Google Chrome is still being directed to bing instead of google
1 week 2 days ago - regd: Software Magazine
1 week 2 days ago - I seem to have missed a point
1 week 3 days ago










Comments
Post new comment