Survey claims 94 per cent of firms could lose private data
05 Aug 08
A survey claims that 94 per cent of companies are powerless to stop confidential information from leaving their organistion by email.
The independent survey by email management company Mimecast suggests that just six per cent of all respondents were confident that anyone sending confidential company information by email out of the organisation would be prevented form doing so.
The survey, conducted amongst a sample of 125 IT managers, revealed that 32 per cent of companies would not even be aware that confidential information had been leaked, so would be unable to take steps to minimise the damage or track down the source of the information. However, 62 per cent would be able to retrospectively identify the email leak once the information had been sent, but confessed to being unable to prevent its disclosure.
According to Dr James Blake, security expert at Mimecast: “The picture revealed by this survey points to fundamental security issues with protecting not only a company’s own data but also customer data like patient records or credit card numbers.
“With the blurring of boundaries between company employees and external consultants, contractors, outsourcers and other third parties, it is now much more difficult to ensure the appropriate flow of information outside the organisation. Especially since the majority of employees are now knowledge workers with access to significant amounts of confidential data.”
Bob Tarzey, security analyst at Quo Circa, said: “These figures do not surprise me – on the whole employees are not sending stuff out maliciously, but through carelessness or lack of fore-thought. Education can help to some extent, but many employees are using communications tools all day, every day and mistakes will happen, so having checks in place makes sense. Affordability of available technology to tackle the problem is also a problem, as most businesses are unable to invest in the high end, on-premise Data Leak Prevention products that large business can, so the availability of on-demand services like those offered by Mimecast to achieve the same end is welcome providing performance is not adversely affected.”
http://www.info4security.com/story.asp?sectioncode=12&storycode=4120314&c=1



