think you know symantec?info.exclusive-networks.co.uk/rs/472-uvn-404/images/symantec_gdp… ·...

13
Think You Know Symantec? Working Together to Secure the Cloud Generation CLIVE GLADWIN Information Security SE, Symantec #thinkyouknowsymantec

Upload: dangkhanh

Post on 11-Mar-2018

215 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

Think You Know Symantec?Working Together to Secure the Cloud Generation

CLIVE GLADWIN

Information Security SE, Symantec

#thinkyouknowsymantec

Page 2: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

Legal Disclaimer

The materials contained in this presentation are not intended to provide, and do not constitute or comprise, legal advice on any particular matter and are provided for general information purposes only.

You should not act or refrain from acting on the basis of any material contained in this presentation, without seeking appropriate legal or other professional advice.

Page 3: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

Agenda

• Portfolio

• Legislative Landscape

• Prepare, Protect, Detect, Respond

• Key Processes

Page 4: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

DLPSecure Web Gateway

RiskInsight

Secure Mail Gateway

Web Application Firewall

Advanced Threat Protection

MalwareAnalysis

Cyber SecurityServices

IT SystemManagement

Endpoint Protection

EDR

Endpoint CloudVIP

Identity

LocalIntelligence

File

UR

L

Wh

itel

ist

Bla

cklis

t

Cer

tifi

cate

Mac

hin

e Le

arn

ing

SIEM Integration

Data CenterSecurity

EncryptionContent Analysis

Performance Optimization

Cloud Secure Web

GatewayCloud DLP

CASB

Managed PKIEmail Security

Data Center Security

Cloud Sandbox

WebsiteSecurity

Encryption

Compliance Management

EncryptedTraffic

Management

Security Analytics

SOC Workbench

Third Party Ecosystem

ON

P

RE

MIS

ES

CLO

UD

Cloud Data Protection

Page 5: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

Laws, Regulations, Standards et al…EU Level

General Data Protection Regulation (GDPR)All Industries holding Personal Data

Network Information Security Directive (NISD) a.k.a Cyber DirectiveCritical National Infrastructure: Financial Services; Energy; Water; Food; Transport; Health; Government; and

Emergency Services

UK LevelDPA 10 Steps Cyber Essentials FTSE 350 Cyber

Industry LevelFinancial Services

CBEST / FCA / PRA

PCI / PSD

MAS / Swiss / Lux

Energy / Utilities

Health and Safety

CREST

CPNI

PCI / DSS

Global StandardsISO 27001 ISO 27005 ISO 27018 COBIT

Page 6: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

Reducing Risk: Preparation to Response

PREPARE PROTECT DETECT RESPOND

Understand personal data &

risk posture.Protect personal data from

malicious attack & misuse.

Provide rapid detection.

Understand impact of breach.Respond efficiently & effectively.

Mitigate risk.

Data Discovery and Privacy

Impact AssessmentsData Loss Prevention

Risk Posture Assessment

and RemediationControl Compliance Suite / Endpoint

Management

Information Protection and

GovernanceData Loss Prevention / CASB/ Encryption

/ Authentication

Threat ProtectionSEP / DCS / ATP / Email Security / Web Security

Monitoring, Threat Intelligence

and Cyber ExpertiseCyber Security Services

Advanced Persistent Threat

DetectionATP / Unified Analytics

Crisis Management and

Incident ResponseCyber Security Services

Cyber InsuranceUnified Analytics

Cloud Data Risk Posture

AssessmentSymantec CASB

Data Encryption & TokenizationProxySG, Cloud Data Protection

Advanced Persistent Threat

DetectionSSL Visibility, CAS/MA, Security

Analytics

Incident Response and

Network ForensicsSecurity Analytics

Page 7: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

PREPARE

• Understand personal dataN

ee

dA

cti

vit

yS

ym

an

tec

• Assess and Manage Risk

Posture

• Privacy Impact Analysis

• Data Discovery

• Data Governance

Assessment

• Personal Data Workflows

Symantec

Data Loss Prevention

Cloud Access Security

Broker

• Risk Assessment

• Compliance Monitoring and

Reporting

• Malicious Activity

Assessment

Symantec

Control Compliance Suite

System Management

Page 8: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

• Protect personal data from misuseN

ee

dA

ctiv

ity

Sym

ante

c Te

chn

olo

gy• Protect personal data from

malicious attack

• Information Governance Design• Data Loss Prevention• Integrated Systems

Symantec:Data Loss Prevention

EncryptionMulti-factor authentication

Cloud Access Security Broker

• System Integration• Outsourcing / Hosting• Technology Implementation

Symantec:Threat ProtectionAdvanced Threat ProtectionEmail threat protectionData Centre Security

PROTECT

Page 9: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

DETECT

• Provide rapid detectionN

eed

Acti

vit

yS

ym

an

tec

Te

ch

no

log

y

• Understand impact of

breach

• Threat Intelligence

• Cyber Expertise

Symantec:

Cyber Security Services

Data Loss Prevention

Cloud Access Security

Broker

Threat Protection

• Incident Response Services

• Risk Assessment and

Remediation

Symantec

Incident Response Service

Page 10: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

RESPOND

• Respond efficiently &

effectively to be compliantNeed

Acti

vit

yS

ym

an

tec

Tech

no

log

y• Mitigate risk

• PR / Crisis Management

Symantec

Cyber Security Services

Analytics

• Managed Services

• Systems Integration

• Incident Response Services

Symantec:

Threat Protection

Data Loss Prevention

Cloud Access Security

Broker

Multi-factor authentication

Page 11: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

Secure Transfer and Storage of Collected Data

EncryptionMPKI

Collect Process Retain & Secure Manage

Define and Locate Personal Data

Secure Devices that Collect

Personal Data

Record Consent from Data Subjects

Detect and Block Threats to Data in

Use

Privacy Impact Assessments

Validate Data Processors

Restrict Processing of Data have to

Retain

Prevent Data Loss

Control Access to Data

Risk Management of Info Lifecycle

Validate Data Subjects Invoking

Rights

Educate DPOs on Cyber Risk

DLP Classification Policies

MPKIWebsite Security

DCS:SA

Deepsight / CSSSEP / ATP / DCS

.Cloud / DLP

CCS Vendor Manager

Access Control

Encryption

DLP Encryption

Access Control

SAM / VIP / MPKI

Encryption / DLPSEP / ATP / DCS

DLP EncryptionPhishing

Awareness

Secure Transfer and Storage of Collected Data

EncryptionMPKICASB

SSL Visibility

Minimise, Anonymise, Erase Data

Page 12: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

Working Together to Secure the Cloud Generation

3 Email Series – Download from

http://info.exclusive-networks.co.uk/Think-You-Know-Symantec-Campaigns.html

GDPR Campaigns-in-a-box

Page 13: Think You Know Symantec?info.exclusive-networks.co.uk/rs/472-UVN-404/images/Symantec_GDP… · Working Together to Secure the Cloud Generation Secure Web DLP Gateway Risk Insight

www.thinkyouknowsymantec.com

Working Together to Secure the Cloud Generation

Think You Know Symantec?Working Together to Secure the Cloud Generation

THANK YOU

&

ANY QUESTIONS