HACKER Q&A
📣 edkvmn

Can anyone recommend good DLP platform?


We are a Saas provider and are going through compliance process, DLP came up as a gap(Data Loss Prevention). I have looked online and it is really hard to understand what those platforms do. I have read Googles white-paper and also their enterprise offering for DLP, but it only covers drive and email. if anyone has experience with platform that cover other endpoints and also shed some light into pricing, that will be greatly appreciated.


  👤 mdaniel Accepted Answer ✓
The universal reply of "it depends" is appropriate here. The definition of "good" will depend upon your requirements and threat model, since there's not one best band-aid for all situations

Some DLP are driven from the client side, and have deep integration with things like Microsoft Office, or Office 365, or (as you said) G-docs and Drive, others are designed to identify leaky buckets, exposed databases, data found in places that it shouldn't be, that kind of thing

The reason why the requirements especially matter in this discussion is that a lot of those products work via proxy to allow alleged prevention of loss, and other products work by detection. If the prevention proxy goes down or is misconfigured, that's a business impeding event and will be "pager goes off." The detection approach means no one is blocked if something goes wrong, but will naturally have a lag between "someone saves something they shouldn't" and any potential leak happening

So, it depends on the kinds of risk your business is willing to tolerate and the kinds of leaks you're trying to prevent or detect