Data leakage 'always preventable'

Major survey highlights routine neglect of data protection

Written by Clement James

A security services vendor said this week that all data leakage incidents could be prevented if corporate security policies are implemented, monitored and enforced.

Orthus published the results of its monitoring of more than 100,000 hours of user activity captured through its Data Leakage Audit Service.

The broad reaching survey, undertaken over the past 12 months, looked into the ways in which internal users access, process, store and transmit sensitive information.

Data included personal and financial information, product roadmap and future product details, contracts, pricing information and HR records.

The findings show that every organisation without exception had suffered multiple instances of data leakage, many of them serious and potentially damaging.

Orthus said that the results show clearly that the threat from within is real and continues to be overlooked, and that trusted users are the most likely source of information leaks.

Key results from the survey suggest that corporate data leakage is most likely to occur through mobile devices. Around 68 per cent of all identified events were linked to mobile rather than fixed desktop systems.

IT and customer services departments suffered the highest incidence of data leakage, mostly during the extended working day.

The applications most favoured by users to remove sensitive data were web mail, instant messaging and social networking sites.

Richard Hollis, managing director of Orthus, said: "Companies continue to try and protect information by protecting the architecture. They neglect the protection of data.

"Until organisations accept that the majority of losses are associated with authorised users and implement the necessary controls where they are effective, i.e. between the user and the information itself, these losses will continue."

Tags:

Further reading

Canadian government exposes health data

Officials claim no criminal activity suspected   More...

HMRC data blunder to cost at least £500m

Gartner warns of 'enormously expensive' emergency measures   More...

HMRC data loss 'completely predictable'

'Old, outdated and broken processes,' says Symantec   More...

HMRC data loss leaves 25 million exposed

Revenue chief Paul Gray resigns   More...

Related articles

UK councils fall short on data protection

Little encryption and poor disaster recovery plans   More...

vnunet.com analysis: Information Commissioner slams UK privacy practices

Chief executives urged to raise their game   More...

Local authorities lax on data security

Some 90 per cent not sufficiently protecting data   More...

Social networking costing UK dear

£6.5bn a year in lost productivity and extra bandwidth   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

16 May 2008

2.97 MBXP on OLPC, broken dreams and Yahoo fights back More...

15 May 2008

3.28 MBDark fibre, mobile TV and solar power More...

14 May 2008

2.66 MBOnline inequality, mobile thumbprints and corporate raids More...

Poll

HOME WORKING

HOME WORKING

Do you let any or all of your employees work from home?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

OLPC

OLPC to ship with Windows XP

Microsoft teams up with One Laptop per Child project   More...

The Sims

The Sims goes flat-pack with Ikea

Virtual world gets Swedish wood   More...

Advertisement

Microsoft-Yahoo

Yahoo board fights back at Icahn

Investor accused of 'significant misunderstanding' in Microsoft saga   More...

MySpace

Woman charged over MySpace suicide

Lori Drew indicted on federal charges   More...

Advertisement