Endpoint security vendor DeviceLock continues to seek partners in order to counter the growing use of removable storage devices - such as memory sticks - in the removal of sensitive information from corporate networks.
DeviceLock announced last week that it was partnering with Ironkey, which claims to provide the world's most secure flash drives offering military grade AES encryption. The two companies said their announcement was aimed to combat the increasing threat of "data leakage from the desktop to the pocket," i.e. sensitive data leaving the company via USB or storage device.
DeviceLock made its name from its ability to enforce security policies related to personal storage devices. "The key functionality of our software is to control any type of internal or local ports or interfaces of the endpoint computer," said Alexei Lesnykh, DeviceLock's business development manager.
This includes controlling which users or groups can access USB, FireWire, Infrared, COM and LPT ports; Wi-Fi and Bluetooth adapters; any type of local, network, or virtual printer; any Windows Mobile and Palm OS-based PDAs and smart phones; as well as DVD/CD-ROMs, floppy drives, and other removable and plug-and-play devices.
According to Lesnykh, a lightweight endpoint software client is installed onto "every computer being protected, but it is completely centrally administered and deployed." Access policies can be defined for the whole of the distributed network, but in addition, every individual end-user agent can have specific end-user access control policies, allowing a fine layer of granularity.
"Our approach is based on loosely-coupled integration," explained Lesnykh. "We partner with people. For example, for encryption we partner with PGP on the software side, and on the hardware side, we partner with people like Lexar Media."
"We opt for integration [with partners] and the code is not merged into our products, so we will not run afoul of U.S. legislation," said Lesnykh. "Because of this, we don't have any problem with U.S. government controls." (After World War 2, it was illegal for the U.S. to sell or distribute encryption technology overseas as it was classified as a munition. Some restrictions still apply nowadays to the export of cryptography.)
Lesnykh points out that DeviceLock is still actively seeking new technical partners, especially in the data leak prevention and encryption fields.
And Lesnykh is clear about the threats organizations are facing from unsecured machines in the corporate network.
"In my experience the biggest threat comes from USB devices," said Lesnykh. "However memory enabled devices, such as smart phones, are also a growing concern. This is because the capacity of personal mobile devices is often the same as USB sticks."
Lesnykh's view is backed up by a Ponemon survey last December, when more than half of the respondents said they had personally copied confidential company information into USB memory sticks, even though more than 87 percent admitted that company policy forbade them from doing so.
Lesnykh meanwhile rates the second most common way for data leaks to occur is via local synchronization, i.e. copying sensitive data from one device to another device locally. The third most commonly leak is via document printing, where is it "very difficult to catch the thief."
"The sales stats are telling us that demand (for USB protection) is growing," said Lesnykh. "Not just in vertical industries such as financial or military. We are seeing large demand from legal, healthcare and even municipalities, and police departments in the UK. The market is growing fast, from large enterprises down to SMB and other industries."
DeviceLock is also apparently fielding a lot of requests from customers regarding controlling the printing of documents. At the moment, DeviceLock offerings context based endpoint security (i.e. specifying which printer can print documents), rather than content based end point security (but it is looking to add this at a later stage).
Lesnykh insisted there are no other hidden costs for central management and administration components - "although these are very advanced and natively integrated with Microsoft Active Directory."
Latest on Intrusion Detection & Prevention
- Distributed DoS attacks surging in scale, ISPs report
- 'Ruthless' Trojan steals 500K bank, credit card log-ons
- Intel's Moorestown would make iPhone less secure
- UK privacy watchdog slams databases, year of data loss
- IT wary of insider attacks as economy slows down
- Microsoft looks to secure Web content
- Clumsy staff more dangerous than hackers: survey
- Student gets jail for crashing university servers
- US gov't increasing efforts to fight ID theft, report says
- Slideshow: How DNS cache poisoning works
Security Essentials
- Good security in recessionary times
- Security ROI: Fact or Fiction?
- NetWitness releases free version of security software
- Study: critical infrastructure often under cyberattack
- Crooks can make $5M a year shilling fake security software
- Sun exec: IT security should follow business needs
- Clumsy staff more dangerous than hackers: survey
- When the watchdog is the underdog
- Mafiaboy grows up; a hacker seeks redemption
- Ouch! Security pros' worst mistakes
TechWorld Jobs (beta)
Recent Jobs
TechWorld Blogs
-

TalkingTech
The view from the top of IT with TechWorld Editor Rodney Gedda
-

Entrenched
Cooking up better code, IDG's developers reveal some of their secrets
-

Broadband Voice
Darren Pauli digs in from the front line of Australia's broadband battleground
Recent blog posts
- An open storage stack? I like the sound of that
- The mobile clone wars: fighting for a better phone experience
- Stopping the "Clean Feed"
- Identifying web platforms
- Clean Feed ‘not technically possible’
- No Clean Feed - well duh!
- Conroy's content cops still on the cards
- Will open source ruin the economy? Please help
- Linux kernel 2.6.27 is out!
- Falling off the ob_start stack
Recent comments
- Hello this is Brianna
11 hours 38 min ago - Turn any PC into a media center
1 day 1 hour ago - How About the Correct Title?
1 day 16 hours ago - who are you kidding?
1 day 21 hours ago - Seriously, how much did they pay for this advertisement
3 days 12 hours ago - SF Bay Area - free Seminar on Enterprise Cloud Computing
3 days 15 hours ago - video conferening but not telepresence...
3 days 23 hours ago - SAMSUNG OLED 40" TECHNOLOGY
4 days 7 hours ago - What was the question again, oh well this was prepared earlier
6 days 14 hours ago - Worldwide broadband prices continue to drop which means ? in AU
6 days 15 hours ago - Not a Problem Here in Australia and New Zealand
1 week 1 day ago - Clear the air
1 week 2 days ago - Tabbed browsing, Quick Find,
1 week 5 days ago - Microsoft details plans for new social bookmarking tool
1 week 6 days ago - There is a 3rd party tool
2 weeks 1 day ago - Demise of Windows
2 weeks 1 day ago - new OS
2 weeks 1 day ago - Re: Favicon
2 weeks 2 days ago - Multi Camera Kino
2 weeks 2 days ago - Favicon
2 weeks 3 days ago



