think you know symantec?info.exclusive-networks.co.uk/rs/472-uvn-404/images/symantec_gdp… ·...
TRANSCRIPT
Think You Know Symantec?Working Together to Secure the Cloud Generation
CLIVE GLADWIN
Information Security SE, Symantec
#thinkyouknowsymantec
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
Legal Disclaimer
The materials contained in this presentation are not intended to provide, and do not constitute or comprise, legal advice on any particular matter and are provided for general information purposes only.
You should not act or refrain from acting on the basis of any material contained in this presentation, without seeking appropriate legal or other professional advice.
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
Agenda
• Portfolio
• Legislative Landscape
• Prepare, Protect, Detect, Respond
• Key Processes
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
DLPSecure Web Gateway
RiskInsight
Secure Mail Gateway
Web Application Firewall
Advanced Threat Protection
MalwareAnalysis
Cyber SecurityServices
IT SystemManagement
Endpoint Protection
EDR
Endpoint CloudVIP
Identity
LocalIntelligence
File
UR
L
Wh
itel
ist
Bla
cklis
t
Cer
tifi
cate
Mac
hin
e Le
arn
ing
SIEM Integration
Data CenterSecurity
EncryptionContent Analysis
Performance Optimization
Cloud Secure Web
GatewayCloud DLP
CASB
Managed PKIEmail Security
Data Center Security
Cloud Sandbox
WebsiteSecurity
Encryption
Compliance Management
EncryptedTraffic
Management
Security Analytics
SOC Workbench
Third Party Ecosystem
ON
P
RE
MIS
ES
CLO
UD
Cloud Data Protection
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
Laws, Regulations, Standards et al…EU Level
General Data Protection Regulation (GDPR)All Industries holding Personal Data
Network Information Security Directive (NISD) a.k.a Cyber DirectiveCritical National Infrastructure: Financial Services; Energy; Water; Food; Transport; Health; Government; and
Emergency Services
UK LevelDPA 10 Steps Cyber Essentials FTSE 350 Cyber
Industry LevelFinancial Services
CBEST / FCA / PRA
PCI / PSD
MAS / Swiss / Lux
Energy / Utilities
Health and Safety
CREST
CPNI
PCI / DSS
Global StandardsISO 27001 ISO 27005 ISO 27018 COBIT
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
Reducing Risk: Preparation to Response
PREPARE PROTECT DETECT RESPOND
Understand personal data &
risk posture.Protect personal data from
malicious attack & misuse.
Provide rapid detection.
Understand impact of breach.Respond efficiently & effectively.
Mitigate risk.
Data Discovery and Privacy
Impact AssessmentsData Loss Prevention
Risk Posture Assessment
and RemediationControl Compliance Suite / Endpoint
Management
Information Protection and
GovernanceData Loss Prevention / CASB/ Encryption
/ Authentication
Threat ProtectionSEP / DCS / ATP / Email Security / Web Security
Monitoring, Threat Intelligence
and Cyber ExpertiseCyber Security Services
Advanced Persistent Threat
DetectionATP / Unified Analytics
Crisis Management and
Incident ResponseCyber Security Services
Cyber InsuranceUnified Analytics
Cloud Data Risk Posture
AssessmentSymantec CASB
Data Encryption & TokenizationProxySG, Cloud Data Protection
Advanced Persistent Threat
DetectionSSL Visibility, CAS/MA, Security
Analytics
Incident Response and
Network ForensicsSecurity Analytics
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
PREPARE
• Understand personal dataN
ee
dA
cti
vit
yS
ym
an
tec
• Assess and Manage Risk
Posture
• Privacy Impact Analysis
• Data Discovery
• Data Governance
Assessment
• Personal Data Workflows
Symantec
Data Loss Prevention
Cloud Access Security
Broker
• Risk Assessment
• Compliance Monitoring and
Reporting
• Malicious Activity
Assessment
Symantec
Control Compliance Suite
System Management
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
• Protect personal data from misuseN
ee
dA
ctiv
ity
Sym
ante
c Te
chn
olo
gy• Protect personal data from
malicious attack
• Information Governance Design• Data Loss Prevention• Integrated Systems
Symantec:Data Loss Prevention
EncryptionMulti-factor authentication
Cloud Access Security Broker
• System Integration• Outsourcing / Hosting• Technology Implementation
Symantec:Threat ProtectionAdvanced Threat ProtectionEmail threat protectionData Centre Security
PROTECT
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
DETECT
• Provide rapid detectionN
eed
Acti
vit
yS
ym
an
tec
Te
ch
no
log
y
• Understand impact of
breach
• Threat Intelligence
• Cyber Expertise
Symantec:
Cyber Security Services
Data Loss Prevention
Cloud Access Security
Broker
Threat Protection
• Incident Response Services
• Risk Assessment and
Remediation
Symantec
Incident Response Service
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
RESPOND
• Respond efficiently &
effectively to be compliantNeed
Acti
vit
yS
ym
an
tec
Tech
no
log
y• Mitigate risk
• PR / Crisis Management
Symantec
Cyber Security Services
Analytics
• Managed Services
• Systems Integration
• Incident Response Services
Symantec:
Threat Protection
Data Loss Prevention
Cloud Access Security
Broker
Multi-factor authentication
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
Secure Transfer and Storage of Collected Data
EncryptionMPKI
Collect Process Retain & Secure Manage
Define and Locate Personal Data
Secure Devices that Collect
Personal Data
Record Consent from Data Subjects
Detect and Block Threats to Data in
Use
Privacy Impact Assessments
Validate Data Processors
Restrict Processing of Data have to
Retain
Prevent Data Loss
Control Access to Data
Risk Management of Info Lifecycle
Validate Data Subjects Invoking
Rights
Educate DPOs on Cyber Risk
DLP Classification Policies
MPKIWebsite Security
DCS:SA
Deepsight / CSSSEP / ATP / DCS
.Cloud / DLP
CCS Vendor Manager
Access Control
Encryption
DLP Encryption
Access Control
SAM / VIP / MPKI
Encryption / DLPSEP / ATP / DCS
DLP EncryptionPhishing
Awareness
Secure Transfer and Storage of Collected Data
EncryptionMPKICASB
SSL Visibility
Minimise, Anonymise, Erase Data
Working Together to Secure the Cloud Generation
3 Email Series – Download from
http://info.exclusive-networks.co.uk/Think-You-Know-Symantec-Campaigns.html
GDPR Campaigns-in-a-box
www.thinkyouknowsymantec.com
Working Together to Secure the Cloud Generation
Think You Know Symantec?Working Together to Secure the Cloud Generation
THANK YOU
&
ANY QUESTIONS