Proactive IT Security
 
Norman Device Control top

Device Control

Enforce USB Security Policies for Removable Media Devices, Data Encryption and Port Protection with Norman Device Control.

The problem of data leakage due to the accidental or sometimes malicious use of removable devices and/or removable media has reached alarm ing levels. In fact, over 85% of privacy and security professionals reported at least one breach and almost 64% reported multiple breaches that required notification1.

Device Control provides:

  • Enforcement of removable device usage and data encryption policies
  • Central management of devices and data using a whitelist / “default deny” approach
  • Enablement of productivity-enhancing tools while limiting the potential for data leakage and its impact

1 Deloitte & Touche and Ponemon Institute, Enterprise@Risk: 2007 Privacy & Data Protection Survey, December 2007

How Norman Device Control works:

  1. Discover: Identify all removable devices that are currently or have ever been connected to your endpoints.
  2. Assess: Categorize all “plug and play” devices by class, model and/or specific ID and define policy through a whitelist approach.
  3. Implement: Enforce file copy limitations, file type filtering and forced encryption policies for data moved onto removable devices.
  4. Monitor: Track all policy changes, administrator activities and file transfers to ensure continuous policy enforcement.
  5. Report: Provide visibility into device and data usage to demonstrate compliance with corporate and/or regulatory policies.

 To enhance productivity, organizations need to allow employees and partners access to data; and more employees are working remotely, thus requiring access from outside the network. But the potential impact of data loss is a very real concern, be it accidental or malicious. And today, removable devices (such as USB flash drives) and media (such as CDs/DVDs) are the most common data leakage routes -- no file copy limits, no encryption, no audit trails and no central management.

The information contained in customer data, corporate data and intellectual property is worth billions to some. And the costs for recovery of data and lost business are rapidly rising as well, with the average yearly cost now estimated to be $6.6 million2.

2 Ponemon Institute, 2008 Annual Study: Cost of a Data Breach, February 2009

 

Key Benefits

Protects Data from Loss

Policy enforced encryption on removable storage devices protects data on lost devices.

Protects Data from Theft

Assign permissions per user or user group for  authorized  removable  devices, file tracking, file type filtering and copy limits to protect your data from theft.

Enables Secure Use of Productivity Tools, Like USB Sticks

Give IT full control of all connected devices and enforce policies to protect data from loss, theft and misuse.

Directory Services Integration

Reduces setup and maintenance of users and user groups by leveraging definitions in existing Active Directory and eDirectory.

Features

  • User-Defined and Plug and Play Devices
  • Per-Device Permissions
  • Uniquely Identify and Authorize Specific Media
  • Whitelist / “Default Deny”
  • Data Copy Restriction
  • Control and encrypt file types
  • Read-Only Access
  • Temporary / Scheduled Access
  • Context-Sensitive Permissions
  • Offline Updates
  • Policy Controlled Encryption for Removable Media and CD/DVD
  • Decentralized Encryption
  • Easy Exchange Encryption
  • Enforce “Strong” Password Requirements
  • Password Lockout
  • Syslog Support
  • PGP Aware
  • Filename Tracking / Full File Shadowing
  • Centralized Management / Administrators’ Roles
  • Role Based Access Control
  • Tamper-proof Agent
  • Flexible / Scalable Architecture

Screenshots