SmartRulesR DLP Thwarts email Distribution of Confidential Info

New Zealand-owned cloud email security and hosting company SMX has released SmartRules DLP, designed to safeguard confidential information against unauthorized email distribution.

SmartRules DLP (Data Loss Prevention) is one of a number of new service improvements currently being rolled out by SMX, following research and development support from Callaghan Innovation.

SMX’s co-founder and chief technology officer, Thom Hooker, says the R&D funding has enabled SMX to accelerate software development in several key areas. He says SmartRules® DLP has been given urgent priority, following the recent security breaches experienced by Government organizations.

“SMX is the leading cloud email security solution used by Government organizations with around 60 Government sector customers,” Thom Hooker says. “SmartRules® DLP meets the most stringent compliance requirements with easy-to-use rule building and related compliance processes.

“Email makes it very easy for employees to accidentally – or intentionally – send sensitive documents to recipients outside the organization,” Hooker says. “By deploying SMX’s SmartRules® DLP, customers can define rules to block and report on employees attempting to send sensitive documents externally. SmartRules® DLP can be configured to detect visible data as well as scanning for hidden metadata. The use of hidden metadata tags inside documents makes it harder for users to subvert DLP rules looking for visible text – that is, by changing the document name.”

Hooker says SMX’s SmartRules® DLP can also detect sensitive content embedded in archives – such as .zip, .rar, .tar, .gz, and so on – and can be configured to block emails containing archives that cannot be opened – for example, password protected or unknown document types.

Another significant new enhancement to the SMX Cloud Email Security Suite, Hooker says, will be beefing up the SMX email hosting platform with enterprise-grade security, reliability and new features. SMX will offer 100 percent availability, as well as enterprise-ready tools such as shared calendars, online data storage similar to Dropbox, global address books and support for ActiveSync to sync contacts, emails and calendars with mobile devices.

Amazon Outage

You don’t have to be a pre-cog to find and deal with infrastructure and application problems; you just need good monitoring. We had quite a day Monday during the EC2 EBS availability incident. Thanks to some early alerts—which started coming in about 2.5 hours before AWS started reporting problems—our ops team was able to intervene and make sure that our customers’ data was safe and sound. I’ll start with screenshots of what we saw and experienced, then get into what metrics to watch and alert on in your environment, as well as how to do so in TraceView.
10:30 AM EST: Increased disk latency, data pipeline backupAround
10am, we started to notice that writes weren’t moving through our pipeline as smoothly as before. Sure enough, pretty soon we started seeing alerts about elevated DB load and disk latency. Here’s what it looked like:

read more

Savage IO to Exhibit at Cloud Expo New York

SYS-CON Events announced today that Savage IO will exhibit at SYS-CON’s 12th International Cloud Expo, which will take place on June 10–13, 2013, at the Javits Center in New York City, New York.
Savage IO is a veteran-owned and operated technology company that designs and manufactures innovative, custom-configured, high performance, high capacity converged storage solutions. These solutions are designed by user-engineers that understand the importance of quality, reliability and price.
Cloud Expo 2013 New York, June 10–13, at the Javits Center in New York City, New York, will feature technical sessions from a rock star conference faculty and the leading Cloud industry players in the world.

read more

Open cloud: Creating new opportunities for enterprise storage

An open cloud must have freely accessible, open application programming interfaces (APIs), the freedom to move data between providers at will and no on-site hardware requirement, according to Alex Williams writing at TechCrunch. 

And an open cloud is federated, meaning that your organization can move data, images and files across multiple cloud environments at will.

These factors make the cloud a perfect platform for storage solutions, especially open-source storage solutions. The cost savings of open-source software and the cost efficiencies of cloud storage software create a «perfect storm» for organizations, bringing greater cost savings, better security, higher quality software and the ability for businesses to avoid vendor «lock-in,» according to Williams.

Whether you’re a corporation, a service provider, a research lab, a university, a major enterprise, a midsized business or an SMB, adopting an open source storage solution and leveraging the support of a global open source community is …

Latest US research shows proliferation of hybrid clouds

A survey of over 800 US-based IT decision makers from Virtustream in conjunction with independent cloud research firm Neovise has revealed that over half of US enterprise are using cloud computing in one form or another.

54% of those surveyed said they were in the cloud, which certainly indicates an uptake in US adoption. Of that number, three quarters said they used public infrastructure as a service (IaaS) clouds, with 70% using private on-premise IaaS and 65% using private off-premise IaaS clouds.

The main takeaway from the research however centred on the increasing use of hybrid clouds, combining both private and public functionality.

Most notably, larger organisations are more likely to use hybrid clouds. 86% of those surveyed with more than 1000 employees used hybrid clouds, compared to the 59% with fewer than 1000 workers.

In terms of hybrid cloud preferences, there were three scenarios that respondents wanted to see …

You Got Your Governance in My DevOps

Forward-thinking organizations realize that accelerating the speed with which they can deliver new applications and services is critical in making their enterprise more agile – and by extension delivering critical business competitiveness. In order to do so, they must break the cycle that holds many IT organizations captive. In many cases, development bemoans central IT for delays in provisioning development platforms, IT begrudges the Security and Audit teams for the processes and procedures that help create these delays, and these teams are in turn frustrated by the lack of compliance that results in unnecessary audit findings. In the process, Development is often seen as throwing the proverbial pig over the wall – sometimes with more lipstick than other times. When you add to this mix a healthy dose of firefighting and pressure from business units to innovate faster, it’s easy to see how this can become a downward spiral for organizations.

read more

Can Health Care Data Be Secure in the Cloud? (Infographic)

Health care organizations are moving infrastructure and data to the cloud at a fairly rapid pace. A recent study suggests the cloud computing market in health care is expected to reach $5.4 billion by 2017. Enticing as the cloud is, when dealing with highly sensitive and regulated information, it’s important to proceed with caution.
The good news for pharma companies, biotech firms and research hospitals – organizations most likely to move heavy big data payloads to the cloud- is that there are some security best practices that can protect data at rest in the cloud.

read more

Choosing a Cloud Protection Gateway Provider

As the proliferation of the cloud continues, Cloud Protection Gateways are increasingly being discussed as a way to address security issues surrounding cloud adoption. Whatever stage of cloud adoption your organization is in, a thorough vetting of the different gateways available will be important to address key security issues, including data residency concerns, industry compliance and internal security best practices.
Cloud Protection Gateways will be an integral part of your cloud adoption strategy. These gateways are built to intercept sensitive data while it is still physically on the premise of an organization and replace it with a random tokenized or strongly encrypted value. This process renders the data meaningless should anyone attempt to hack the data while it’s in transit, being processed or stored in the cloud. Choosing a provider means trusting that provider’s technological capabilities and soundness.

read more

Cloud Expo New York: Using APIs for Better Business Partnerships

There’s no denying the opportunities that Open APIs and Business to Developer initiatives offer today, but for many businesses APIs are going to be a huge driver of business partner programs. Successful B2B API programs introduce a completely new set of requirements that go far beyond the capabilities of most API Management platforms.
In his session at the 12th International Cloud Expo, Alistair Farquharson, CTO of SOA Software, will discuss how a B2B API program can help drive your business, what the challenges are, and how to make sure you succeed. In this session you’ll learn:
The differences between Open APIs and B2B APIs
Security Concerns
Monitoring
QoS Management
How to plan, build and run APIs to enable business partners
How to selectively share your APIs with your partners’ developers

read more