Data Leak Prevention

Primosec Ltd. provide a solution set to enable a Unified Content Protection Policy or to address specific Data Leakage concerns. These solutions protect valuable corporate information, ensure compliance with security policies and adherence to applicable regulatory requirements.

The unified management of content protection in a cost-effective and scalable environment allows for centralized, flexible, enterprise-wide distribution of policies across all mobile devices, desktops and servers which:

  • Prevent leaks and theft of data
  • Protects the organisation’s reputation and customer relationships
  • Provides proactive security and visibility into risk
  • Allows for Security audits and reports
  • Classifies data
  • Secures documents in an uneditable format
  • Analyses documents & email content to prevent exposure of proprietary or regulated email
  • Automatically encrypts data transferred onto removable media including USB sticks, CD and DVD drives
  • Fully encrypts hard drives, local volumes or specific files
  • Monitors all content as it travels through or leaves the network
  • Exposes and eliminates information leaks and threats through policy-based monitoring
  • Provides real-time visibility into policy violations and remediates before being compromised



Data Leakage Prevention at Endpoints

One of the greatest threats to the security of corporate data is provided by Data in Transit on removable media, be this through transfer onto widely-used USB sticks, DVD’s or other mass memory storage devices.

Primosec Ltd. provide security solutions that remove this threat and enforce organisational policy by controlling the use of data at every endpoint. A customized, highly-granular security policy applicable by domain, group or computer controls all physical, wireless and storage interfaces and these are monitored in real-time.

Any abuses are detected and restricted and if data is permitted to be transferred this is forcibly encrypted to make it secure and unreadable outside of the organisation unless a user has permission to do so. All data moving in and out of the organisation or used offline is tracked and audited.


Data Leakage Prevention via Email


An often overlooked method of the sensitive corporate data leaving an organisation without authority or appropriate security is in clear text via email. Primosec Ltd. provide a one-click, end-to-end email encryption solution that is easy to use and allows the intended recipient to open the encrypted email and reply securely. Traditional solutions have typically relied upon complex infrastructures and software deployments but the Primosec Ltd. solution is easy-to-install, is licensed for only those that require the service and can extend to unlimited users.

A single click on a ‘send secured’ outlook button ensures that sensitive information is encrypted and a policy can be applied to automatically encrypt emails dependent on their content or attachments. Emails are encrypted with AES256 from the sending device to the recipient endpoint eliminating the risk of sensitive email being viewed on the mail server or gateway. This capability is particularly suitable to organisations that utilise an outsourced email service or where there are concerns the visibility of confidential information such as legal contracts or customer information.

Management of user rights, licenses and policies is fully centrally administered and secure.



Data Leakage from Mobile Devices

There are ever increasing concerns about the security of data in transit on devices that are being used more commonly such as laptops, pda’s and smartphones. Primosec Ltd. provide full or partial hard disk encryption that is transparent to end users. Utilising AES 256 encryption and compliant with the Common Criteria EAL3 and FIPS 140-2 ensures that If a device is lost or stolen the data is fully secure.

Central management allows for granular policy enforcement including integration with AD, LDAP and Novell Objects  and automated tools streamline deployment including a Windows Installer (MSI) based installation.

In the event that an employee forgets a password or leaves the organisation a secure and powerful challenge/response procedure allows for the reset of passwords without the need for on-line connection.