Sensitive and personal information, such as credit card numbers and social security numbers, should be controlled as close to the source of the data leak as possible. Many products block the transmission of sensitive data at the network perimeter because it is easier. However, each time the information moves across the network, there is an opportunity for the information to be copied or stored. Perimeter data leak protection increases the opportunity for privacy violations and security risk.
It is better to control sensitive information at the moment it enters your network. Messages may be blocked, quarantined or a simple warning may be sent. The action taken should be based on the severity of the problem as well as the sender or the sender's role. (For example, Human Resources managers may have permission to send certain information that others may not.)
System accuracy is also very important. Simple keyword monitoring often blocks legitimate messages. Look for systems with “Smart Rules” that combine keyword monitoring with business logic to reduce costly false positives.
The following best practices can help reduce the problem:
Permessa Email Control! and Permessa IM Control! can automatically monitor communications at the source and take appropriate action with a low false-positive rate.