dss symantec pgp encryption fortress 2014 - arrowecs - roadshow baltics

54
Innovations in cyber security technologies Arturs Filatovs Business Development Manager March 2014 Arrow ECS RoadShow Baltics Symantec Encryption Building A Digital Fortress

Upload: andris-soroka

Post on 19-Jan-2015

418 views

Category:

Technology


0 download

DESCRIPTION

In March 2014 "Data Security Solutions" participated in ITSEC VAD "Arrow ECS" RoadShow Baltics - Riga, Tallinn and Vilnius! Presentation about importance of encryption in 21st Century. "Building a digital fortress!" by Arturs Filatovs.

TRANSCRIPT

Page 1: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Innovations in cyber security technologies

Arturs Filatovs Business Development

Manager

March 2014

Arrow ECS RoadShow Baltics

Symantec Encryption –

Building A

Digital Fortress

Page 2: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Arturs Filatovs business card

More then 5 years experience in delivering Innovative

IT Security Solutions to Baltic states

Knowledge of more then 25 different IT Security

Solutions

Specialization - Mobile IT Security

Page 3: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Helpdesk Manager

CISO

Director, Desktop Ops

Director, Network Ops

Lets move our hands – who is here today?

Page 4: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

“Data Security Solutions” role in Baltics

Technology vs. Time

Encryption’s role in security

Don't be scared – Encrypt everything

Build Digital fortress with Symantec Tech

Todays To do list

Page 5: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

“Data Security Solutions” business card

Specialization – IT Security

IT Security services (consulting,

audit, pen-testing, market analysis,

system testing and integration,

training and technical support)

Solutions and experience portfolio

with more than 20 different

technologies – cyber-security global

market leaders from more than 10

countries

Trusted services provider for

banks, insurance companies,

government and private companies

(critical infrastructure etc.)

Page 6: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Role of DSS in Cyber-security

Development in Baltics

Cyber-Security Awareness Raising

Technology and knowledge transfer

Most Innovative Portfolio

Trusted Advisor to its Customers

Page 7: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Cybersecurity Awareness Raising

Own organized conference “DSS ITSEC”

5th annual event this year

More than 400 visitors and more than 250 online

live streaming watchers from LV, EE, LT

4 parallel sessions with more than 40

international speakers, including Microsoft, Oracle,

Symantec, IBM, Samsung and many more –

everything free of charge

Participation in other events & sponsorship

CERT & ISACA conferences

RIGA COMM exhibition & conferences

Roadshows and events in Latvia / Lithuania /

Estonia (f.i. Vilnius Innovation Forum, Devcon,

ITSEC HeadLight, SFK, business associations)

Participation in cyber security discussions, strategy

preparations, seminaries, publications etc.

Page 8: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Innovations – technology & knowledge transfer

Innovative Technology Transfer Number of unique projects done with

different technology global leadership

vendors

Knowledge transfer (own employees,

customers – both from private & public,

other IT companies)

Areas include:

Endpoint Security

Network Security

Security Management

Application Security

Mobile Security

Data Security

Cyber-security

Security Intelligence

Page 9: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Our portfolio is most innovative in Baltics!

Page 10: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Some just basic ideas

Page 11: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics
Page 12: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics
Page 13: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Lets Start

Page 14: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

NOW

PAST

Time line

Page 15: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

AND NOW SERIOUSLY

Technology is everywhere

Page 16: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

PC era Mobile era

PC era to MOBILE era

Page 17: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Mobile IT

We are at point where functionality of desktop collides with mobility of mobile device.

Consolidation of IT in 21st Century

Page 18: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Technology development over time

Page 19: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

IT Must Evolve To Meet New Demands

• Transactional Apps

• Structured Data

• Centralized information

• Perimeter-based security

• On-premise infrastructure

• Collaborative Apps and Social Media

• Unstructured data

• Distributed information

• People are the new perimeter

• Virtual Infrastructure and Cloud

Information-

Centric

System-Centric

Page 20: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Endpoints: The Borderless Enterprise

1Based on 130,000,000 records lost (Datalossdb.org) and $202 per record (Ponemon Institute) 2http://www.darkreading.com/security/encryption/showArticle.jhtml?articleID=211201139

3Symantec Global Internet Security Threat Report, Trends for 2008

Field

Data Center Headquarters

Field Offices

Point of Sale

Point of Sale

Corporate data copied onto USB drive

$262 Million: Estimated cost of the Heartland Payment Systems

breach1

1 in 10 people have lost a laptop, smart phone, or USB drive with corporate

information on it3

Trojans, malware, unauthorized software

12,000 Laptops lost in United States airports every week2

Customer email stored on mobile phone

Page 21: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Cloud is taking us much higher…

Page 22: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Choose the right cloud smart way..

Page 23: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Passwords?

Page 24: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

When we have to change our password...

Page 25: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Who from you are using encryption?

What will happen if data will be lost/stolen?

Who will be responsible?

When you are sending confidential data via post, how

do you secure it?

Some questions?

Page 26: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Greek generals used Scytel to encrypt and decrypt

messages (Symmetric encryption)

Encryption beginnings – Sparta/ Greeks/ Rome

Page 27: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

In what our organizations believe today

SSL/ TLS/ VPN/ HTTPS – this is only

data in motion using x.509

Page 28: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

What we use for document security

E-Signatures – Limited functionality for

document encryption data at rest/ data in motion

Not User friendly (smart cards, Card readers,

USB tokens … )

Page 29: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Separate solutions less security

Page 30: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

NSA did “great work…”

Hmmm....NSA?

Page 31: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Cyber criminals don't sleep

Page 32: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Encryption threats by Ponemon Institute

Our Users are our weakest link

Page 33: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Mobility - Potential For Data Loss

47% of corporate data resides on mobile devices

43% of employees lost a device with company data

32% of employees didn’t report the loss or theft in a timely fashion

Page 34: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Our users weakest link

*Symantec Global Internet Security Threat Report

1 in 10 people have lost a laptop,

smart phone, or USB drive with corporate information on it*

32% of employees didn’t report the

loss or theft in a timely fashion*

Page 35: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Data protection priorities Ponemon

Page 36: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Concerns from customer side

Hardware-based encryption is

faster and it’s an option on Dell

and other PCs.

Why do I need encryption if I

have DLP or Endpoint

monitoring?

We are going to wait for our

Windows 7 rollout in our

environment and use Bit locker

How to recover encrypted

info?

Master key is security risk for

us.

Page 37: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Encryption is not a rocket science

Page 38: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Encryption is easy

Page 39: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Centralized key administration is solution

Page 40: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Endpoint Data

Protection

• PGP Whole Disk

Encryption

• SEE FDE

• SEE RSE

• PGP Portable

• SEE Device Control

Pro

du

cts

O

bje

cti

ves

Tasks

File and Server

Protection

• PGP NetShare

• PGP Command Line

Email

Protection

• PGP Desktop Email

• PGP Gateway Email

• PGP PDF Messenger

• PGP Support Package

for BlackBerry

• PGP Mobile

Management

• PGP Universal Server

• PGP Key Management

Server

Keep data secure

Meet compliance objectives

Protect the business

Control costs and liabilities

Protect data at rest Protect data in motion Protect data in use

Don't be scared – Encrypt everything

Page 41: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Oh Boy do we

got solution for you!

Page 42: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Build Digital fortress with Symantec

42

Smartphone Solutions • PGP® Mobile

• PGP® Support Package for BlackBerry®

Full Disk Encryption (FDE) • PGP® Whole Disk Encryption

• Symantec Endpoint Encryption (EE) FDE

File/Folder/Shared Server Encryption • PGP® NetShare

End-End Email and IM Encryption • PGP® Desktop Email

Gateway Email Encryption • PGP® Gateway Email

Management

Central Management of

Encryption Applications

PGP® Universal ™ Server

Key Management

PGP® Key Management

Server (KMS)

Device and Media Encryption • PGP Portable

• SEE Removable Storage Edition (RSE)

• SEE Device Control

FTP/Batch and Backups • PGP® Command Line

Page 43: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Full Disk Encryption

Full disk encryption for desktops, laptops, and Windows® servers. Supports Windows®, Mac OS® X, and Linux® platforms • Encrypts desktops, laptops, and USB-attached drives

• Protects against personal computer loss, theft, compromise and improper disposal

• Reduces risk of loss of PII (Personally Identifiable Information) and other sensitive data

• Supports Windows, Mac OS X, and Linux

43

PGP Whole Disk Encryption; SEE Full Disk Encryption

Page 44: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Removable Media Protection

Removable Storage Encryption

• Secure portable data at rest

– Enforce mandatory removable storage encryption policies

– Access and re-encrypt data from any PC or Mac

• Granular file- and folder-based encryption

– Allow encrypted and unencrypted data on user devices

– Enforce policy-controlled exemptions by file type and device

Centralized – Integrated Management Console

Policies Auditing

Removable Media

Encryption

SEE Removable Storage Encryption

Page 45: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

PGP® Email Protection

Symantec Encryption - Confidential 45

PGP® Desktop Email Desktop-based Email Encryption • Automatic end-to-end email encryption

PGP® PDF Messenger

PGP Universal™

Gateway Email Gateway-based Email Encryption

• Clientless email encryption

PGP® Support Package

for BlackBerry® Encryption for BlackBerry Email

• Native client access to encrypted email

PGP® Mobile Encryption for Windows Mobile Devices

• Encrypted Email

• Encrypted Files and Folders

PGP® Viewer for iOS Encrypted Email Viewer App for iOS

• Decrypts and views messages

• Verifies digital signatures

Page 46: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

File/Folder Encryption

46

User file protection

Shared file protection

Distributed file protection

Protect shared files and folders

Protect transferred files and folders

Protect individual files and folders

PGP NetShare, PGP Command Line

Page 47: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

PGP® File and Server Protection

PGP® NetShare Shared File Protection

• Protect data exchanged between users via shared network folders

PGP® Command

Line

Scriptable Encryption • Integrate encryption into data transfer, data

distribution and data backup processes

Page 48: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

PGP or Symantec Endpoint Encryption?

Selling Symantec Encryption Products 48

• Symantec’s strategic direction for Endpoint Encryption is to “converge” the solutions into a single offering.

• In the interim, Symantec will provide full support for both Endpoint Encryption technologies.

Products

Customer Need Default Play

Exceptions

Existing SEE/GE

Customer

DAR U.S. Fed

SmartBuy

Active Directory + MSFT Stack

Endpoint Encryption

PGP Whole Disk Encryption SEE Full Disk Encryption

PGP Portable SEE Removable Storage Encryption

SEE Device Control SEE Device Control

Email Encryption

PGP Desktop Email

PGP Gateway Email

PGP Mobile

PGP Support Package for BlackBerry

Server / File Encryption PGP NetShare

PGP Command Line

Management PGP Universal Server and PGP Key Management Server (KMS)

Page 49: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Defense-In-Depth: Encryption + DLP

Network DLP / Gateway Encryption • Automatically encrypt emails containing sensitive data

• Notify employees in real time/context about encryption policies and tools

Storage DLP / File-Based Encryption • Discover where confidential data files are stored and automatically apply

encryption

• Ease the burden to IT staff with near transparence to users

Endpoint DLP / Removable Storage Encryption • Target high risk users by discovering what laptops contain sensitive data

• Protect AND enable the business by targeting encryption efforts to sensitive data moving to USB devices

Page 50: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

MTA or Proxy

DLP + PGP Universal Gateway Email

Receive email 1

2 Check email content for encryption policy violations

3 No violation - email sent

4 Violation detected - re-route to encryption server

5 Email encrypted and sent

PGP Universal Server

Key Benefits: • Automate gateway encryption; ease burden on end users

• Enforce and report on encryption policies

Page 51: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Complete Encryption Platform

Page 52: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Technology lifecycle from 3-6 year to 6-12 months

Encryption will help you sleep tight

Don’t be scared to encrypt all type of data

Centralized key management is important

One encryption solution for different type of date

Select DSS as your trusted security advisor – we

work with Symantec (PGP) more than 5 years already!!

Takeaway

Page 53: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Think security first

www.dss.lv

[email protected]

+371 27194080 / +371 29162784

Page 54: DSS Symantec PGP Encryption Fortress 2014 - ArrowECS - RoadShow Baltics

Think security first