Websense Slowly Extends Reach of Data Loss Prevention Tools

By Peter Sayer
Wed, October 08, 2008

IDG News Service —

Websense CEO Gene Hodges has no plans to join in the wave of consolidation that's sweeping through the enterprise security software industry, with future products the fruit of internal development, not acquisition, he said Wednesday.

The latest addition to the company's range is a data loss prevention tool, Websense Data Security Endpoint, intended to stop company data leaking from employees' PCs. Developed internally, it has the same data characterization engine at its core as the company's gateway security product, Websense Data Security Suite, but works on network endpoints.

"We don't plan to be acquisitive for the next four of five quarters, unless something unusual happens," Hodges said.

He doesn't plan to be acquired either, but that's "in the hands of the gods," he said.

His remarks came hours after rival Symantec said it would buy e-mail security vendor MessageLabs for US$695 million -- and two weeks after McAfee, another company Hodges sees as a competitor, said it would buy network security specialist Secure Computing in a deal worth around $465 million.

Websense's last acquisitions, on the other hand, date back to early last year. In April 2007, it paid $400 million for SurfControl, a U.K. vendor of Web security software, and in January 2007, it closed its acquisition of PortAuthority Technologies for about $90 million.

That slower pace gives Websense time to absorb and integrate the products it acquires, Hodges said.

"It's not good to have lots of undigested products in your range," he said. "Symantec and McAfee both have indigestion."

Websense Data Security Endpoint re-used the gateway data characterization engine it acquired from PortAuthority, a process not without its headaches for the development team.

"We worried a lot about size. The fingerprints for data loss prevention are very large, and updating those frequently causes all the pain you would expect, shifting gigabytes around the network. We worked on making those fingerprints sparser," Hodges said.

The data fingerprints allow the software to recognize three categories of data, he said: standard formats such as credit card or Social Security numbers; structured data such as customer database records and unstructured data such as a company's quarterly earnings press release.

The other elements of the new software, including policy management tools, were developed from scratch.

Those policy tools allow fine-grained control of who can send what kinds of data to whom. Printing off a customer's address and order details might be OK, while printing dozens of customers' Social Security and credit card numbers would be bad. Equally, sending an advance copy of the company's annual earnings report to the external e-mail address of the company's general counsel is fine, but if that same e-mail message goes to a spyware drop-box instead, alarm bells should ring.

"Data loss prevention requires that you block all the potential holes, so the endpoint and the gateway have to be coordinated," he said.

Simplifying that coordination, with a focus on integrated policy management, is Websense's goal for the coming year.

"The next move is to integrate in-the-cloud policy management with on-premises management," Hodges said.

That he said, will allow distributed organizations to choose how they deploy the technology, perhaps installing software on their own servers at headquarters and regional offices, and subscribing to a service "in the cloud" for remote workers, yet managing them all from the same console.

Learn how your answer to this question compares to your peers by taking this quick poll. See how your peers are dealing with the challenge of ensuring a highly capable server infrastructure as technological shifts impact the application server platform.
With increasing data growth, comes increased need for data security.  The existing DLP model, with a focus on compliance/enforcement is not sufficient as the data discovery and classification capabilities are not granular enough.  Read this paper to find how you can efficiently and accurately manage your risk by rapidly inventorying and classifying your data and then developing remediation workflows that support business needs. 
This paper breaks down attack sources into four categories: external, malicious insiders, accidental insiders, and unknown.
The rapid growth of data and technology is creating challenges for organizations as this digital data is considered to be business communications and must be preserved according the same industry-specific regulations governing the retention and discovery of emails and more traditional forms of electronic communications. This paper examines the role that Data Loss Prevention ("DLP") technology can play in helping organizations address the challenges of locating information in response to electronic discovery.
This research, conducted by the Ponemon Institute, focuses on issues relating to the use of data protection solutions such as endpoint encryption and data loss prevention within the workplace.
This report, by Jon Oltsik from Enterprise Strategy Group, examines the need for a new business-centric approach to DLP in order to align business and security requirements.
As greater numbers of datacenter servers transition from the physical to the virtual world, the components of virtualization success come to the fore. What scores of organizations have discovered is that success is derived from an optimal pairing of the right software platform with the right hardware platform.
Have you been looking to hear about customer's experiences with the new VMware vCenter Site Recovery Manager product? View this webcast to learn about VMware customer, Navicure, and their experiences testing and evaluating the recovery manager, their progress in implementing it in their environment and their advice other customers considering using vCenter.
Many enterprises have discovered that the use of virtualization to support desktop workloads creates a range of significant benefits. These benefits include price efficiencies, improved IT management and greater agility and choice for end users.

This VMware sponsored webcast with IDC will provide both quantitative measurement of the business value -- defined as the expected ROI -- and qualitative analysis associated with the use of VMware View™. IDC will also provide an analysis of the View Composer and ThinApp™ features of VMware View, including the business value of these solutions and an overview of how they work.

Attend this webcast to learn about:
- Challenges and barriers that might impede the adoption of desktop virtualization
- Navigating roadblocks to facilitate a strategic implementation
- Optimizing qualitative and quantitative benefits to IT and your business
VMware recently announced VMware vFabric™ Data Director, a new database deployment and operations platform that enables enterprise IT organizations to offer database as a private cloud service. Built on top of VMware vSphere 5, vFabric Data Director enables IT organizations to ontrol database sprawl through automation and consistent policy enforcement and accelerate application development cycles with self-service database management. Attend this webcast to learn how vFabric Data Director can help you build database-as-a-service in your datacenter.
A simple, cost-effective disaster-recovery solution for virtual environments is high on the agenda for IT organizations as they virtualize more business-critical applications with VMware. VMware vCenter™ Site Recovery Manager-the market-leading disaster-recovery product-ensures the simplest and most reliable disaster protection for all virtualized applications. VMware vCenter Site Recovery Manager provides centralized management of recovery plans, enables nondisruptive testing and automates site-failover processes.
Traditional disaster recovery solutions are often too expensive, complex and unreliable to meet business requirements. As a result, IT departments are hesitant to expand disaster protection beyond their most critical applications, largely because they are uncertain whether the quality of the protection is really worth its cost. VMware vCenter™ Site Recovery Manager 5 is the market-leading disaster recovery product that addresses this situation for organizations of all kinds. It complements VMware vSphere to ensure the simplest and most reliable disaster protection for all virtualized applications.
Newsletter Sign-Up »

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all Newsletters | Privacy Policy
Sponsored Links
Resource Center