Free Newsletters
Technology & Business Daily

InfoWorld
Log-in | Register

Data leakage prevention becomes a feature

Along with anti-spyware apps, spam filters, IDSes, and firewalls, DLP may go from stand-alone platform to become regular part of bigger packaged security suites


"The point products that are out there are just features at some point, if they don't have all the pieces, like encryption, they won't meet all the expectations that customers have for DLP," Solanki said. "The key is that the same policies have to apply regardless of the device or the data; vendors have done a good job of marketing individual DLP features, but what we've seen among customers is that unless they can view many areas of risk and manage them with the same policy, DLP becomes a much tougher sell."

Some companies who have already been acquired are already questioning the viability of the DLP space they came from.

"The remaining stand-alones will be very challenged, as DLP is going to be absorbed into all types of networking gear," said Derek Smith, chief executive of Oakley Networks, which was acquired by defense industry giant Raytheon for an undisclosed sum in late September. "I think DLP was probably pretty short-lived as the basis for an entire company, because if all you are doing is putting a box on the network, you're simply deflecting the threat of data loss to another vector that you probably can't see."

However, most people in charge of the 35-odd remaining independent providers of DLP tools argue that in many senses it is the larger vendors who have the most work to do.

It is the core anti-virus tools and spam-filtering products of security companies including McAfee, Symantec, and Trend that are becoming rapidly commoditized, an argument that has hung over the sector for years, said Seth Birnbaum, chief executive of Verdasys, an independent DLP vendor.

The big players are trying desperately to shift from selling those types of legacy products into providing the data protection tools that customers are clamoring for, he said.

"Maybe if we were more of a point provider I'd be worried, but we are winning deals today based on a platform approach that includes everything from data discovery and policy creation right through to encryption, which is what customers are looking for and not many people have been able to offer," said Birnbaum.

"These bigger players are going to have a much tougher time trying to realign their entire business around data security since they've been married to all these other product lines for so long," he said. "The stronger point providers will be acquired, and everyone who doesn't have all the necessary pieces of DLP will be wiped out, but there's a lot of room for those of us who are already doing it the right way today."

Other stand-alone vendors admitted that there is probably value to be found in arguments for both independent and integrated DLP systems.

"The answer is that we will probably see escalation of both models," said David Etue, vice president of product management at Fidelis Security, another independent DLP vendor.

"Some of early DLP market success stories were people were who built more of a feature, and I'm not sure if it was their strategy, but they built something that easily became a feature of other things," he said. "At the same time, we obviously believe that those of us who sell a real DLP platform today continue to have a strong opportunity."

Other analysts contend that the stand-alone DLP market does in fact have sustainability but claim that there will only be a few players-- those who have mastered the policy management and enforcement pieces specifically -- who will survive and potentially flourish.

At this point, any company whose products do not offer that level of functionality are probably living on borrowed time, said Rich Mogull, a longtime analyst at Gartner who recently launched his own consulting firm, Securosis.

In the case of the larger vendors such as Symantec, the analyst said that the company will integrate its DLP tools with other products, while also marketing the policy management and enforcement aspect of the technology as a stand-alone product.

"There are a lot of elements of content monitoring and protection that can be integrated on the firewall, the end point, or in e-mail, and those more narrow providers who address only those things will probably go away," Mogull said. "For Symantec to connect Vontu's DLP to its end-point products makes sense, but there's still a market for the technologies used to create, manage, and enforce the policy, something for all these other systems to plug back into."

"The independent companies who already have a platform and can address the high-level business problems of protecting data will likely be the ones who get acquired next," he said. "But there's probably only a dozen or so left like that, because many of the companies that have identified themselves as DLP only solve a small part of the problem."

Matt Hines is a senior writer at InfoWorld.
« PREVIOUS PAGE | 1 | 2 


Talkback:

commentPost a Comment

 

MOST COMMENTS

 
 





Virtualization: A Step by Step Approach to Success
Your virtual machines can be up and running in a matter of minutes. HP and Citrix have integrated XenServer with HP ProLiant servers and management tools, powered by hardware-assisted Intel Virtualization Technology to enable high- performance, cost-savings solutions for server consolidation and disaster recovery. Sponsor: HP

»  Click here to view this Webcast
  Virtualization Solutions Guide
This comprehensive IT Strategy Guide covers Virtualization and puts you at the forefront of the discussion. You'll learn all you need to know from the cost of virtualization, how to implement it for your business, how to back it up safely and which products are best. Sponsored by Riverbed

»  Click here to download now

- Special Advertising Partners -
WHITE PAPERS
 

» Technology White Papers Library

Technology White Papers by Topic

Technology White Papers E-mail Alert

Find out when the latest white paper is available:
 
 
INFOWORLD MARKETPLACE
 
» BUY A LINK NOW
 
 

Video

 
 
 

Podcasts

 
IFW Daily 09/05/2008

Sun to craft software stack into NAS appliances, former CA CEO Sanjay...

 
 

 

Columnists

 
 
 

Resource Center


Ads by techwords beta  [See your link here]
 




Sponsored Technology Links

 
 
 HOME  NEWS  BLOGS  PODCASTS  VIDEOS  TECHNOLOGIES  TEST CENTER  EVENTS  CAREERS   About | Advertise | Awards | RSS | Contact Us 

Copyright © 2008, Reprints, Permissions, Licensing, IDG Network, Privacy Policy, Terms of Service.
All Rights reserved. InfoWorld is a leading publisher of technology information and product reviews on topics including viruses,
phishing, worms, firewalls, security, servers, storage, networking, wireless, databases, and web services.

CIO :: ComputerWorld :: CSO :: Demo :: GamePro :: Games.net :: IDG Connect :: IDG World Expo
Industry Standard :: IT World :: JavaWorld :: LinuxWorld :: MacUser :: Macworld :: Network World :: PC World :: Playlist