You are on page 1of 96

Zora Arnautovic Regional Sales Manager

Central and Eastern Europe, CEE


Andreea Avrigeanu – Manager of Crucial
systems (Romanian Distributor)
Phone: +40 745 042350; e-mail:
andreea.avrigeanu@crucial.ro
www.crucial.ro/titus
Why is Data Loss a Hot Topic?

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


And….

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Email is the #1 Data Loss Risk

 Compliance Regulation Fines


(PII, PCI DSS, SOX, GLB..)
 Lawsuits
 Embarrassing headlines
 Loss of IP
 Possible risk to public safety

WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS
| © TITUS.
LABS. ALL RIGHTS RESERVED |
Why information classification?

 Security -document classification and labeling


creates awareness of sensitivity of information, and
can trigger further security.
 Retention – classification allows enterprise to build
and enforce retention rules. More efficient use of
storage resources.
 E-Discovery – easy to find relevant documents
when using classification metadata as part of
search.

5
WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS
| © TITUS.
LABS. ALL RIGHTS RESERVED |
Industry Analysts on Data Classification
Gartner Forrester IDC Ferris

Classify your Many critical reasons Classification is User based


information to ensure for classifying important for Policy classification ensures
that the appropriate information – such as Compliance information is
protective controls are ensuring security, identified at time of
implemented in a cost- implementing a creation and facilitates
effective manner retention policy and for a consistent and
optimizing the use of efficient method of
storage finding data in
reasonable time.

ItItall
allstarts
startswith
withData
DataClassification
Classification

6
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Global Data Breach pandemic

Source: http://datalossdb.org/
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
TITUS Classification Solutions
E-Mail Documents

SharePoint

Classification & policy enforcement at the desktop

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


8
Titus Customer Base
Over 1.5 Million Users

Military
Military Government
Government Commercial
Commercial

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


TITUS Partners

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Technology Alone is Not Enough

The Driver
(User) has a
role to play in
Information
Security

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


The Stressed The Overcautious The
The Home Worker Newcomer

The User Community


The Careless The Inexperienced

The Disorganized The Partisan The Spy The Industrious The Lazy

12
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
The Costs of Information Leaks
 In October 2009, a 2,400 page document was leaked
from the British Ministry of Defence called the Joint
Services Protocol 440 which was posted to the
internet.
 In July 2010, a massive document leak occurred of
over 91,000 records covering the U.S. led war in
Afghanistan from 2004 to 2010. This set of records is
referred to as the Afghan War Diary and a subset of
approximately 75,000 records was made available to
the public on the WikiLeaks web site.

1
WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS
| © TITUS.
LABS. ALL RIGHTS RESERVED |
Securing Information from Widespread
Distribution
The most important step in securing information
 The first step in this strategy is to classify documents and
information
 The second step is to automatically assign security
permissions to the documents or information based on its
classification metadata, with the purpose of controlling
access.

1
WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS
| © TITUS.
LABS. ALL RIGHTS RESERVED |
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Classification Selector – Simple for Users
Click Send

Classification pop-
up

Guided classification
Compose email

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Classification in Microsoft Outlook®

Subject Marking

Header

Footer

Disclaimer

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Reduce Inadvertent Disclosure
Policy Verifier:
Before Send

 Trusted Domains
 Safe Recipients
 Content Validation
 No Change/Downgrade
 Maximum Recipients
 Warn on Send

All user messages are customizable

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Detect External Recipients

Click Send
External Address

Classify

Trusted Domains
Warning

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Content Validation

Sensitive content detected


Click Send
Forced classification

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Redaction: Email with PII

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Content Review and Redaction

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Redacted Email

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Check Attached Documents

Message
Upgraded

Classify
Attachment Check
Attach
Document

Document label
added

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Prevent Changes and Downgrades

Attempt downgrade

Downgrade
Compose Reply prevented

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


TITUS + RMS = Automated Protection

User applies TITUS Unclassified info remains shareable


classification label

Forward

Copy

UNCLASSIFIED
Print

RMS RMS Rights


Encryption Management

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Encrypt Transparently

Microsoft RMS automatically


Select applied (S/MIME also
Classification supported)

No RMS user training


required

2
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
TITUS + RMS = Automated Protection

User applies TITUS Unclassified info remains shareable


classification label

Forward

Copy

UNCLASSIFIED
Print

RMS RMS Rights


Encryption Management

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


How does TITUS trigger ADRMS
 Automatically apply RMS Template
 Office 2003-2010
 Outlook 2003-2010
 Can be tied to any label (at any level)

 Exchange Transport Rule (x-header)

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Benefits

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


3
Inbound Classification: Bulk
Click the “T”

Highlight emails
(bulk classification)

Emails
now
classified

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 32


PROVOCAREA: Web-based Email

• Sunteti ingrijorati asupra informatiei pe


care utilizatorii o acceseaza folosind
OWA?

• Vreti sa va asigurati ca mesajele


INTERNE vor ramane INTERNE ?

• Politica Dvs. interna prevede ca toate


email-urile sa fie clasificate (etichetate)?

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Sample Dashboard
Timeline of Message
/Document classification
activity

Policy Activity Summary:


Show the policies in use
within the organization and
the resulting actions

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Remediation Report
 User focused report to determine actions taken on Policy Warnings

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Auditing: Windows Event Logs

Windows
Event Event Log
Viewer details

User
response
recorded

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 37


Events and Reporting
 User activity / decisions can be logged
 Workstation logs can be aggregated and reported on based on
native Microsoft or 3rd party tools

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


3
Message Classification Web Access
Classification and policy enforcement for OWA
emails, meeting requests, and tasks
Key Features Benefits
Classification Enforce classification at point of creation
Selector
Label Marker Raise security awareness through visual
markings
Metadata Generator Interoperate with TMC for Outlook, and enhance
archiving, DLP, perimeter security solutions
Policy Verifier Educate users and stop email slips
OWA Prevent Prevent viewing of confidential information when
using OWA

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 39


TMC Web Access Benefits

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 40


Provide Policy Reminders

Select
classification
Warn on Send
Compose email

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 41


Restrict OWA to Non-Sensitive Data
 The OWA Prevent
feature can be
configured to
prevent users
from viewing
confidential or
sensitive
messages.
 Configuration of
the OWA Prevent
feature is based
on the
classification of
messages being
viewed using
OWA.

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 42


TMC Outlook and OWA Integration

Outlook OWA

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 43


Classification for Mobile Users

• Label Messages
sent from the
BlackBerry
Smartphone or
Windows Mobile
Device

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 44


BlackBerry Classification

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Titus Labs BlackBerry Interop

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


BlackBerry Classification

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Centralized Administration

WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS
| © TITUS.
LABS. ALL RIGHTS RESERVED |
Now Available for Lotus

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Reduce Inadvertent Disclosure
Policy Verifier: Before
Save or Print

 Attachment Checking
 No Downgrade
 Content Scanning
 Document Inspector
 RMS

All messages are


customizable

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED | 51


Classification Selector in Word

Classification pop-up
with guided
classification
Compose
document
and save

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


5
Visual Labels for Awareness

Header/footer

Watermark

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


5
Clasificare document - PowerPoint
TDC Ribbon

Marcaje Vizuale
TDC Task Pane

Marcaje Vizuale

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Clasificare Document - Excel
TDC Ribbon

TDC Task Pane


Marcaje Vizuale

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Customizable Online Help

Reinforces
marking training

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Pre-Announcing

In fact Any File Type is Supported!

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Native Support beyond Microsoft Office

File Type File Extension


Audio Video Interleave AVI
Joint Photographic Experts Group JPEG, JPG, JPE, JIF,JFIF,JFI

QuickTime File Format MOV, QT


Motion Pictures Expert Group MP3
Motion Pictures Expert Group MPEG-4
Portable Document Format PDF
Portable Network Graphic PNG
PhotoShop PSD
Tagged Image File Format TIFF, TIF
Waveform Audio File Format WAV
Microsoft Office 2007/2010 .docx, xlsx, pptx
Microsoft Office 97/2003 .doc, xls, ppt
Open XML Paper Specification .xps

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Easy to Manage

Easily create/modify
organizational data

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Some Practical Use Cases

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Complement your DLP System

Classify Metadata added Control

ICTED
RESTR

• File metadata • DLP false positives


• End-users apply automatically injected reduced
classifications to files • Icon marked • Costly re-work avoided
• No end-user technical
knowledge needed

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


New! One Click Classification
Outlook 2003

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


One Click Classification
Outlook 2007/2010

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


One Click Classification
 Designed for simple configurations
 One classification level
 Up to 8 labels
 Single selection only (no multi-select)
 Works on Outlook 2003, 2007, 2010
 Can be configured with a default classification so that most
emails require no clicks at all!
 Works with all existing TMC features (Safe Recipients, RMS
Integration, Content Validation, etc.)
 Works with the new Help tooltips feature

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Titus Case Studies–Overview
 Large Government Agency Uses Classification Labels to Protect Personally
Identifiable Information
 Fife Constabulary: Classifying Messages with Titus
 G4S Security Services Certified to ISO 27001 Standard for Compliance
 Leading Aerospace Company Meets ITAR and EAR Compliance
Requirements
 Dow Corning User Classification Labels to Help Protect Intellectual Property
  (see attached printings)

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Romania-New Market-New Customer

First Customer in Romania - UniCredit Tiriac Bank

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


G4S Security Services Bulgaria
Integrated Titus solution helped G4S prevent inadvertent data leakage and achieve ISO
27001 Compliance.

Business Challenge Solution Results/Benefits

• Protect PII • Classify emails and • Comply with ISO


• ISO Compliance documents standards
• Prevent data leakage • Apply encryption • Reduce inadvertent
• Control content and protection disclosure
enforce policy • Apply visual markings • Control Access
• Secure Confidential • Apply metadata to • Automate encryption
data leverage existing • Raise awareness with
infrastructure visual labels

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Solution Summary: How They Work Together

TITUS McAfee DLP Customer Value

• Integrated • Content is checked to • Leverage originating


classification by users ensure appropriate user to make
BEFORE save/send Titus metadata is sensitivity decisions
present
• Ensure emails are • Enable automated
going to appropriate • Non-compliant enforcement and
parties content is blocked blocking
• Apply classification • Full detection of non-
metadata marked information
Summary:
How McAfee and TITUS Can Help You

Business Challenge Solution Results/Benefits

• Prevent data leakage • Streamline • Block leakage of


over multiple classification of email sensitive information
channels & documents
• Reduce inadvertent
• Risk Mitigation • Consistently apply disclosures/spillage
classification labels
• Control content and
• Capture classification • Efficiently locate and
enforce policy secure sensitive data
in metadata
• Improve E-Discovery • Enforce information • Enable audit of
security policy at questionable behavior
desktop
McAfee DLP and TITUS

User McAfee DLP

3. Send/Save/Print 4. HBSS/DLP 5. Policy Decision


1. Compose 2. Classify
Agent
Allow

Prevent

Quarantine

6. Return non-classified content for classification Protect

Audit Return
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Example 1:
Confidential Info Too Widely
Distributed Internally

Protect...
• Financial statements
• Personnel data
• HR/Health Benefits
• Hiring plans, etc...

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Example 2:
Confidential Project Plans Sent
Externally

Protect against...
• Emailing personal
accounts
• Domains/countries known
IP/copyright issues
• Competitors, etc...

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Example 3:
Interactive Redaction of
Customer Information

Protect against...
• Distributing Names
• Distributing PII
• Distributing Financial
Details
• Distributing Customer
Details, etc...

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Title
Name
Date
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
TITUS Metadata Security for
SharePoint

 Automates the application


of item level permissions
 Automates changes to any
item level permissions
 Security based on existing
document metadata

WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS
| © TITUS.
LABS. ALL RIGHTS RESERVED |
8
SharePoint Metadata
Metadata columns

8
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Permissions Based on Metadata
Alice is a Finance employee, Bob is in R&D

Policy - In the Product Development library, Finance documents should only be


visible to finance staff

8
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Defining the Metadata Security Policy

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


8
Using Metadata Security

Alice’s
Bob’s
view
view

Bob is not able to see the Finance documents

8
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Benefits

8
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Titus Metadata Security
Supported Platforms
• Windows SharePoint Services 3.0 (WSS 2007)
• Microsoft Office SharePoint Server 2007 (MOSS 2007)
• Microsoft SharePoint Foundation 2010
• Microsoft SharePoint Server 2010 (SP 2010)

Document Types
• Supports all document types, list items and InfoPath
forms

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Native Microsoft SharePoint® Security
• Issue in Enterprise deployments

• Manual permissions management

• Prone to human error / Labor intensive

• More documents = more work

• Result - > Users get access to documents


they shouldn’t

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


TITUS SharePoint Security
• Permissions are automated

• Consistent security

• SharePoint Administrators focus on


higher value projects

• Result - > Users only access content


they should

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


TITUS SharePoint Security Solutions
Essential Security Layer for SharePoint

• Automate item-level permissions

• Apply classification markings for increased user awareness and


accountability

• Automatically convert to PDF for added security

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Provide SharePoint Security Trimming

Ben’s view

Alice’s view

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


SharePoint Document Labeling

Labels for user


awareness

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


SharePoint Document Timestamp and Tracking
Current
User

Support for
•PDF
•Word
•Excel
•PowerPoint

Timestamp

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Over 250 Customers & 1,5 Million Users
Military Government Commercial

• Australian Dept of Defense • Australian Tax Office • TURKCELL


• Belgian MOD • Bank of Canada • UniCredit Bank of Romania
• Canadian Dept of Defense • Essex Police • AT&T
• CENTCOM • Government of Scotland • BAE Systems
• Danish Defense • 15 + UK Police Forces • Barclays Bank
• Lithuanian MOD • Lancashire Police • Boeing
• MNF-Iraq • NASA • Dow Corning
• NATO • UK Nuclear • DRS Technologies
• SOUTHCOM Decommissionning Office
• Fujitsu Services
• STRATCOM • UK Serius Organized Crime
• Goldman Sachs
Agency
• US AirForce
• US Department of Commerce
• Honeywell
• US Navy
• US Dept of Veterans Affairs
• International Monetary Funds
(IMF)
• US Dept of Energy
• Lockheed Martin
• Mazda
• Northrop Grumman
• Pratt & Whitney

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


9
Australian DoD Case Study
Titus Labs Message Classification ensures Australian Department of Defence meets
government-mandated classification standard for email for 100,000 users

Business Challenge Solution Results/Benefits

• Aus standard • Classify email with • Standards compliance


• GOTS replacement Titus Labs • 100,000 users in 10
• Interoperability • Visual markings and days
• Data leakage metadata • Interoperability with
prevention • Policies based on other govt agencies
classification labels

9
WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
In Conclusion

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Inadvertent and Malicious Data Loss

 TITUS is not a Silver Bullet Answer


 We are a foundational aspect of a complete solution
 A very visible and tangible step forward

WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |


Objective/Message
 Titus represents a solution set that increases security
awareness and accountability
 We represent an easily deployed, cost effective “Quick Win”
for today’s post Wiki-Leaks Security Infrastructure
 We are not a DLP solution but we have many DLP like
benefits – and when combined with DLP, we mitigate the risk
with your number one security risk for data loss:

The Authorized User


WWW.TITUS.COM | © TITUS. ALL RIGHTS RESERVED |
Interoperability With Existing Investments

Encryption

DLP DRM

Discovery Archival
Search Storage

WWW.TITUS-LABS.COM
WWW.TITUS.COM
| © TITUS LABS. ALL RIGHTS RESERVED | 99
| © TITUS.

You might also like