Tag: CoSoSys

How DLP helps pharma companies protect their data?

By Mr. Filip Cotfas, Channel Manager, Cososys

Pharmaceutical companies are both producers and collectors of vast quantities of sensitive data stemming from not only selling pharmaceutical products but also developing them. From initial research to the patent filing, clinical research phases, the issuing of licenses, and the manufacturing process, pharmaceutical companies handle massive amounts of highly sensitive, confidential data which they are obligated to protect under data protection laws.
The processing of these special categories of sensitive data is prohibited unless exemption criteria are met. Among them is an individual’s explicit consent to process the data, but also processing for health-related purposes where it is necessary for the benefit of natural persons and society as a whole. A further exemption allows the processing of special categories of data when scientific research is being conducted that operates within an ethical framework and aims to grow society’s collective knowledge and wellbeing.

While all these exemptions make it sound like pharmaceutical companies can freely process sensitive data, it is in fact limited to processing in the context of the management of health or social care services and systems, including the management of such data for the purpose of quality control. These limitations aim to curtail attempts to use big data analytics techniques to profile or market to individuals based on their health data.

Failure to protect sensitive data can lead to severe repercussions both from a reputation standpoint and monetary damage control. Pharmaceutical companies need to put robust data protection safeguards in place to avoid them. At the same time, data protection is vital to maintain the trust and confidence of customers and individuals involved in clinical research.

Data Loss Prevention (DLP) solutions are an essential part of the tools pharmaceutical companies need to use to keep sensitive data secure. Aimed at tackling internal threats rather than external ones, DLP technology helps pharmaceutical organizations to avoid data leaks and data theft originating from employee carelessness or malicious insiders. Let’s take a closer look at some of the ways in which DLP helps protect pharmaceutical data.

Monitor pharmaceutical data

DLP solutions allow pharmaceutical companies to discover what types of protected sensitive data they collect or produce, where it is being stored, and how it travels in and out of the company network. Using content inspection and contextual scanning, DLP tools such as Endpoint Protector can search for sensitive pharmaceutical data in hundreds of file types in real-time, whether it is in transit or stored locally on employees’ computers. Based on the results of searches, controls can be put into place to limit or block transfers as needed.

Block the transfer of pharmaceutical data

The easiest way sensitive pharmaceutical data is leaked is over the internet. Employees accidentally send data to the wrong recipients or use insecure third-party services such as cloud storage or file sharing websites to transfer data. DLP solutions do not only block the attachment and uploading of files containing sensitive pharmaceutical data but can also prevent employees from copy-pasting or manually inserting sensitive data into emails.

DLP tools also log any attempt to violate a policy, thus allowing pharmaceutical companies to identify the common ways in which data security is threatened and later incorporate them into training exercises to educate employees on best data security practices.

Prevent unauthorized storage of pharmaceutical data

As employees perform their duties, they often store sensitive pharmaceutical data locally on their hard drives, having data stored in unknown locations can be problematic. Unknowingly storing copies of this data amounts to non-compliance due to a lack of due diligence. To prevent this, DLP solutions allow companies to search all computers on their corporate network for sensitive pharmaceutical data and, when found in unauthorized locations, remediation actions can be taken such as deleting or encrypting these files.

Control the transfer of pharmaceutical data on removable devices

Another way pharmaceutical data can be easily lost or stolen is through removable devices such as USBs or external hard drives. Physical access to a device is needed for such incidents to occur, but employees frequently use USBs in particular to copying files they might work on remotely or when traveling for meetings or events outside the company.

To ensure that sensitive pharmaceutical data is not transferred outside of work computers, DLP solutions can be used to block the use of peripheral and USB ports, but also the connection of devices via Bluetooth. Alternatively, pharmaceutical organizations can also limit their use to trusted devices such as those issued by the company.

CoSoSys releases enterprise Security and Compliance focused Endpoint Protector 5.3.0.0

Mumbai: CoSoSys, a leading Data Loss Prevention (DLP) vendor, today, launched the latest update of its top-rated product, Endpoint Protector 5.3.0.0 in India. The product update brings enterprise-grade security features and important enhancements of existing functions that help to protect data and prevent breaches more efficiently.
“With Endpoint Protector 5.3.0.0, Indian companies can protect their data more efficiently and effortlessly. The latest release of our multiple award-winning DLP solution will help Indian customers to reduce the risk of data and financial losses, optimize their security policies and ensure safety in the context of working from home”, said Filip Cotfas, Channel Manager, CoSoSys.

Endpoint Protector 5.3.0.0 introduces the Smart Group feature, which automatically assigns Computers or Users to specific Groups based on their naming convention. With this feature, it becomes easier and quicker to deploy the solution, lowering the Time To Value by saving time for I.T. departments and providing extra flexibility when needing to onboard users automatically.
Continuing CoSoSys’ market-leading offering for multi-OS enterprises, this version includes improved support for Apple devices with ARM-based M1 processors, as well as for macOS Big Sur and for AWS EC2. It also comes with enhancements for Windows and Linux users, enabling businesses to solve data security challenges regardless of the operating systems they use.
Highlighted improvements for Endpoint Protector’s modules:
• The Device Control module that monitors USB and peripheral ports comes with better support for Bluetooth devices, including improved identification for Bluetooth headset devices and control of Bluetooth file transfers for not paired devices on Windows.
• The Deep Packet Inspection (DPI) functionality in the Content Aware Protection module has been improved, enabling better interoperability between Endpoint Protector and Secure Web Gateways. Logs and reports have been enhanced, now providing additional information.

• The eDiscovery module that scans data at rest comes with seven newly covered PIIs and three newly supported file types, helping to ensure the security of sensitive data and supporting compliance efforts.
User experience improvements have also been included in the latest update, such as the option to switch between standard OS notifications or pop-up notifications for the Endpoint Protector Client.
Endpoint Protector DLP combines high-grade security with simplicity and reliability, protecting data regardless of the operating system. Endpoint Protector 5.3.0.0 aims to ensure that customers can stay ahead of threats and provide advanced protection for enterprises.

3 reasons why Data privacy matters to your Business

By Mr. Filip Cotfas, Channel Manager, CoSoSys

Data Privacy is more important today than ever before. The Covid19 pandemic has transitioned online most of the businesses with the work-from-home model and has built workplace flexibility. However, for, threat actors, it is a newfound opportunity, ensuring new challenges for data security.

There has been a consistent and steady rise of cyber-attacks, data breaches and more across the sector, for organizations and companies of all sizes. The current situation has forced businesses to reconsider their cybersecurity framework and posture. Any kind of attack, data breach, or leakage sets a bad example on business capabilities, build reputational damage, financial loss as well as long term loss of customers.

Here are some reasons why data privacy matters to every business.

Privacy matters to the work-from-home model: 

The BYOD (Bring your own device) was popular earlier too, matching the lowered operational cost and increased productivity. However, with Covid19, the WFH model, adopting on a large scale has raised several security concerns for several businesses. First of all, the employees are no longer patched to the office networks, which could have ensured a layer of security and compliance. With multiple devices used to access the network, it introduces numerous vulnerabilities too.

With complete endpoint monitoring, Data Loss Prevention (DLP) technologies can prevent employees, third-party vendors, and contractors from intentionally or unintentionally leaking data. Sensitive data can be scanned, encrypted, or deleted remotely when found or blocked from being transferred.

Privacy matters to your financial health: 

India has also gone through a series of cyber scams – Aadhar card, a database of medical records being leaked, and more. India is currently witnessing a change in the pattern of the cyber-crimes, with attacks and breaches turning more sophisticated. As per the recent IBM study this year, the average cost incurred to a company because of a data breach has reached over Rs. 14 crore in 2020, an increase of 9.4 percent from last year, which translates into Rs 5,522 for a single lost or stolen record (an increase of 10 percent from 2019).

Data being an asset to the company; data protection has always been a concern for the organizations, and a host of factors have made DLP an even more valuable tool.

Privacy matters to your customers: 

Customer trust and loyalty are essential for building a successful business. Gaining the trust would take years for brands and one small mistake and it shall become a tough re-sell. Many individuals share personal and confidential information with the customers, like the PAN Card, Aadhar Card, etc., trusting the brand and its security outline. Not just limited to transactions or identity documents, customers have been shopping online, uploading photos, sharing their reviews on purchases, and more. With Covid 19, the volume of customer data has brought unprecedented challenges to handle.

Any data breach, leakage, or theft caused by an insider or outsider threat can have serious repercussions on the business, impacting the brand and disrupting the customer experience. To curb such a situation, businesses should adopt the right security tools with endpoint security in business processes to mitigate the risks from the expanded operating environment. These tools include User Activity Monitoring (UAM), Secure Information and Event Management Systems (SIEM), User Behaviour Analytics (UBA) software, and last but not least Data Loss Prevention (DLP) solutions.

With the growing cybersecurity concerns worldwide, countries and industries, have put greater emphasis on safeguarding both PII and IP data. In India, the proposed data protection law, begins on a promising note. Though the Data Privacy Bill is yet to be passed in the parliament the stringent law goes beyond personal data protection. Organizations too have to upgrade and evolve data protection policies, to avoid any financial and reputational data risk. In hindsight, the regulatory framework in today’s ever-growing digital world is the need of the hour.