Услуга · Information security

Data protection

The first step is not buying a monitoring system but answering the question of what exactly needs protecting. Without that answer any such system produces a stream of alerts that stops being opened within a month.

List
what exactly is valuable
Media
we encrypt the disks
Channels
we restrict what leaves
Review
on the alerts

What the work includes

The order is: find the data, restrict access, close the routes out, watch for breaches. Skipping the first step devalues the rest.

Discuss the scope

What we protect

We sort information by value. Otherwise everything has to be guarded equally, and that does not work.

Media encryption

Laptop disks and removable drives. A lost encrypted laptop is an annoying episode; an unencrypted one is an incident requiring notification.

Removable disks

Permission by list, connection logging, and a total ban where sensitive information is handled.

Mail and printing

Restricting the sending of attachments outside and the printing of documents marked confidential.

Channel monitoring

Transmission monitoring systems with rules written to your own classification.

Incidents

The order of actions and reporting on what triggered and how it ended.

How it goes

The order never changes: we start with prohibitions on paper and in access rights, and connect specialised products afterwards.

01

List

We compile a list of what is genuinely valuable. Usually it is a few per cent of the total volume of company data.

02

Cheap measures

Encrypting laptops, restricting media in critical departments, cleaning up rights.

03

Monitoring

We install the system without blocking and spend a month gathering a real picture of what happens.

04

Blocks

We switch prevention on only once the flow of false positives has been brought down to a reasonable level.

An unencrypted laptop left in a taxi is the most common data-loss scenario. Yet disk encryption is built into modern operating systems and is switched on centrally without a single purchase. There is simply no cheaper measure in information security.

Questions and answers

Put the question differently: what happens if this ends up with a competitor or in the open. Usually a list of a few items emerges - the client base, contract terms, developments, personnel records. Everything else does not need top-grade protection.

No. A large share of the channels is closed by built-in tools: removable media policies, mail server rules, restricted rights. A dedicated product is needed when the data is highly valuable and evidence for an investigation is required.

Separate them. Work mail and systems should be opened only from managed devices or through a separate secure connection that saves no files. A blanket ban on personal devices is usually not observed.

We will establish what to protect and how

Write what information is critical for you. We will propose measures from simple to complex with cost estimates.