Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Risk

4/20/2012
02:59 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

New Survey: 70% Of Orgs Don't Take Data Protection Seriously

Majority of organizations in this study are failing to comply with SOX, others, Varonis study shows

New York, April 19, 2012 -- A survey conducted by Varonis, the leading provider of comprehensive data governance software, has revealed that 70% of organizations storing third party data are not ‘very confident’ that the sensitive data stored within their organization is protected. With 80% of organizations surveyed storing sensitive information from customers, clients, vendors and business partners, rather disconcertingly over half were only ‘fairly confident’ that it is protected. Nearly one fifth were ‘not confident at all’ that sensitive data is protected and an astonishing 5% were left ‘unsure.’

This means that the majority of organizations in this study are failing to comply with Sarbanes-Oxley, the UK Data Protection Act 1988 and the EU Data Directive on Privacy which may result in organizations being subject to 2% fines of global revenue.

David Gibson, director of strategy for Varonis, explained, “It’s worrying that so many companies are still complacent when it comes to data protection. It means that these organizations would have some serious questions to answer should they suffer a breach. In fact, regulators such as the SEC, ICO and EU would likely deem that they had failed in their obligation to provide appropriate security protection to prevent sensitive data breaches and impose a hefty financial penalty. It’s really not rocket science - if you’ve got sensitive data and you’re not very confident that it’s adequately protected, you need to take action.”

When looking at the difference between organizations, of those who claimed to be very confident that their data was protected, 60% were very confident that they know where their sensitive data is stored. Over 40% monitor all actual access activity and assign owners to all folders and intranet sites. Additionally, 65% review and revoke permissions– 45% do so regularly, so not just when someone leaves the organization.

Unsurprisingly, those who are not confident that the data within their organizations is protected do not know where their data is stored (10%), do not monitor all data access (0%), do not have owners assigned for all data (3%), and less regularly review and revoke access.

For an infographic on The State of Data Protection, and to download the full report, visit http://www.varonis.com/thanks/downloads/download-dataprotection.html

About Varonis

Varonis is the leader in unstructured and semi-structured data governance for file systems, SharePoint and NAS devices, and Exchange servers. The company was named "Cool Vendor" in Risk Management and Compliance by Gartner, and voted one of the "Fast 50 Reader Favorites" on FastCompany.com. Varonis has over 4500 installations worldwide. Based on patented technology and a highly accurate analytics engine, Varonis' solutions give organizations total visibility and control over their data, ensuring that only the right users have access to the right data at all times. Varonis is headquartered in New York, with regional offices in Europe, Asia and Latin America

Varonis, the Varonis logo, DatAdvantage and DataPrivilege are registered trademarks of Varonis Systems in the United States and/or other countries and Data Classification Framework and Metadata Framework are under a registration process in the United States and/or other countries. All other product and company names and marks mentioned in this document are the property of their respective owners and are mentioned for identification purposes only.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
News
FluBot Malware's Rapid Spread May Soon Hit US Phones
Kelly Sheridan, Staff Editor, Dark Reading,  4/28/2021
Slideshows
7 Modern-Day Cybersecurity Realities
Steve Zurier, Contributing Writer,  4/30/2021
Commentary
How to Secure Employees' Home Wi-Fi Networks
Bert Kashyap, CEO and Co-Founder at SecureW2,  4/28/2021
Register for Dark Reading Newsletters
White Papers
Video
Cartoon Contest
Current Issue
2021 Top Enterprise IT Trends
We've identified the key trends that are poised to impact the IT landscape in 2021. Find out why they're important and how they will affect you today!
Flash Poll
How Enterprises are Developing Secure Applications
How Enterprises are Developing Secure Applications
Recent breaches of third-party apps are driving many organizations to think harder about the security of their off-the-shelf software as they continue to move left in secure software development practices.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2021-24259
PUBLISHED: 2021-05-05
The “Elementor Addon Elements� WordPress Plugin before 1.11.2 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
CVE-2021-24260
PUBLISHED: 2021-05-05
The “Livemesh Addons for Elementor� WordPress Plugin before 6.8 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by lower-privileged users such as contributors, all via a similar method.
CVE-2021-24261
PUBLISHED: 2021-05-05
The “HT Mega – Absolute Addons for Elementor Page Builder� WordPress Plugin before 1.5.7 has several widgets that are vulnerable to stored Cross-Site Scripting (XSS) by ...
CVE-2021-24262
PUBLISHED: 2021-05-05
The “WooLentor – WooCommerce Elementor Addons + Builder� WordPress Plugin before 1.8.6 has a widget that is vulnerable to stored Cross-Site Scripting (XSS) by lower-priv...
CVE-2021-24263
PUBLISHED: 2021-05-05
The “Elementor Addons – PowerPack Addons for Elementor� WordPress Plugin before 2.3.2 for WordPress has several widgets that are vulnerable to stored Cross-Site Scriptin...