ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Start-up aims to improve internal security

Marguerite Reardon CNET News.com

Published: 25 Jan 2005 09:40 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A start-up has launched software designed to stop leaks of sensitive business information by focusing on the greatest risk: insiders.

On Monday, software maker Vontu introduced version 4.0 of its Vontu gateway, which sits on a network and monitors the content of email and instant messages. The San Francisco-based company said the product will stop emails that violate security policies from being sent.

"The ability to block the leaks of sensitive or confidential business information is of tremendous benefit and value to those individuals charged with minimizing data security and privacy risks," said Larry Ponemon, head of the Tuscon, Arizona, think tank the Ponemon Institute.

For years, companies have focused security efforts on keeping hackers out of their networks. But research indicates that insiders cause more security problems than the average hacker.

Companies such as Vontu and its rival Vericept have built data interception products that monitor email, instant messages, FTP files and other electronic communications on corporate networks, sniffing for leaks of sensitive information.

Up to this point, these products have only generated reports about insiders' behaviour. Now Vontu will allow companies to filter traffic and block inappropriate messages, the company said. The software, which works in real time, can look for contextual clues in a message to determine whether or not it is all right to send. Policies can also be set so that specific information, such as a particular file containing software source code, can be directly matched and blocked.

The Vontu software only stops information from being sent over email. It does nothing to prevent a partner or a disgruntled employee from downloading information onto a data stick via a USB port or printing the information and walking out the door with it.

Studies indicate that most security breaches are the result of well-intentioned employees inadvertently violating security policies. Vontu CEO Joseph Ansanelli said that the new release is intended to avert such breaches, but noted that such data interception products are only a small piece of the overall solution for businesses.

"Today, insider protection is at zero," he said. "With every release of our product, we're taking steps to increase that protection. I think the market will evolve very much like the firewall market did. First, you had gateway products protecting the perimeter, and now you have personal firewalls sitting on desktops."

There is one drawback: Because the Vontu product sits within the data path, monitoring and making decisions on traffic in real time, network performance suffers slightly, Ansanelli said.

Adoption of Vontu and similar products will likely depend on whether companies are willing to trade small efficiency losses for a much higher state of data security, Ponemon said.

"Many IT leaders view system efficiency or speed as their primary success measure," Ponemon said. "If IT leaders view these solutions as an incremental overhead burden, even products that reduce security risk may not be readily accepted by them."

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Kyocera

Did you find this article useful?
45 out of 101 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:






Related Jobs

HRS - Operations Support Lead-00055714

Tracking of due audits reminder when audits due to ensure scheduled and completed Qualifications Skills and Knowledge Requirements Knowledge of ...

Spanish Network Engineer Spanish Speaking, CCNA/P, 40k London

Huge opportunity to really define your career as there is a clear progression path laid out with excellent training provided with the latest ...

Oracle DBA - Database Management Non-Live

Implements, monitors and maintains database security and data integrity controls in accordance with system security policies. COMPANY NAME : Sky ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Biometric devices. Do you need one?

When saying “biometrics” I am not thinking about law enforcement, AFIS systems, national ID and visa projects. I first think about personal solutions that will make my life easier.... More

1 comment

Barracuda launches counter-suit agains...

Court cases are never pleasant or simple. The ongoing battle between security companies Trend Micro and Barracuda Networks took a new twist on Wednesday, when Barracuda launched a counter-suit... More

Post a comment

Mobile Speed Demon: Wireless Surpasses...

Mobile Speed Demon: Wireless Surpasses Landline Author: Eric Everson, Founder MyMobiSafe.com As I look around my house and throughout my network of friends, I instantly realize... More

Post a comment