{"id":19306,"date":"2018-06-04T07:58:00","date_gmt":"2018-06-04T06:58:00","guid":{"rendered":"http:\/\/www.intelligentcio.com\/africa\/?p=19306"},"modified":"2018-06-04T08:08:19","modified_gmt":"2018-06-04T07:08:19","slug":"aruba-expert-on-why-firms-may-fall-foul-on-gdpr-regulations","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/africa\/2018\/06\/04\/aruba-expert-on-why-firms-may-fall-foul-on-gdpr-regulations\/","title":{"rendered":"Aruba expert on why firms may fall foul on GDPR regulations"},"content":{"rendered":"<p><span style=\"font-family: 'Arial',sans-serif\">Companies risk falling foul of incoming GDPR regulations by relying on existing, piecemeal security measures, according to a <a href=\"http:\/\/media.ne.cision.com\/l\/fripeiyz\/www.arubanetworks.com\/assets\/wp\/WP_SecuritySolutionsGDPR.pdf\">new whitepaper<\/a> published by <a href=\"http:\/\/media.ne.cision.com\/l\/fripeiyz\/www.arubanetworks.com\">Aruba, a Hewlett Packard Enterprise company<\/a>.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">The majority of existing defences, which use pattern matching techniques to find threats, are unable to detect new attacks that use legitimate user credentials to access sensitive information, meaning that companies risk not being able to detect and report a breach within the 72 hours stipulated by GDPR. The resultant fines can amount to \u20ac20 million, or 4% of annual turnover.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">However, far from calling for existing systems to be replaced, Aruba\u00b4s whitepaper suggests that these products remain essential as part of an effective GDPR strategy. It highlights the need to complement these defences with an additional layer of monitoring that utilises new types of attack detection, such as machine learning, to analyse the entire network collectively and find the very small changes in activity that are indicative of an attack.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">\u201cPersonal information is absolute gold dust for attackers, because it can quickly be sold on the dark web\u201d said Morten Illum, VP EMEA at Aruba. \u201cIt\u00b4s almost certain that your business will see its personal data targeted in future and attackers will appear to be a trusted user while they are carrying out their work. Without using automation tools to spot the unusual activity that\u2019s going on, it could take months to detect what\u00b4s going on. And that\u00b4s bad news both for your customer relationships, and your GDPR strategy.\u201d<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">As hacks become increasingly sophisticated and often spread out over many months it\u2019s very difficult for security teams to identify small anomalies in how a device is accessing the data stored in an application. The <a href=\"http:\/\/media.ne.cision.com\/l\/fripeiyz\/www.arubanetworks.com\/assets\/eo\/EB_Aruba360SecureFabric.pdf\">Aruba 360o Secure Fabric<\/a> offers a combination of network access control capabilities to view the millions of devices accessing the network and provide policy-based, device-specific access that can significantly limit access to user personal data.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">The solution also includes the new <a href=\"http:\/\/media.ne.cision.com\/l\/fripeiyz\/www.arubanetworks.com\/products\/security\/ueba\">Aruba IntroSpect<\/a>, which uses machine learning to determine where personal data resides and search the entire network for anomalous activity that could indicate a potential security breach. IntroSpect uses this learning to generate \u2018risk scores\u2019 for each connected user, device, system and database, focusing the attention of IT and security teams and ensuring future attacks do not go unnoticed.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">Reports from users of IntoSpect have shown that new threat investigations have been completed 30 hours quicker than previously-used systems, a significant reduction in the fight to meet the 72-hour reporting deadline of GDPR.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">\u201cThere is no single product or combination of security solutions that can guarantee GDPR compliance\u201d, added Illum.<\/span><\/p>\n<p><span style=\"font-family: 'Arial',sans-serif\">\u201cSo, it\u00b4s time that we bring existing solutions together. A holistic GDPR strategy can only be achieved if the security teams have the right tools to do their job. We think a single view of the network, and the ability to automatically create new policies based on incoming activity, is our best chance of staying ahead.\u201d<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Companies risk falling foul of incoming GDPR regulations by relying on existing, piecemeal security measures, according to a new whitepaper published by Aruba, a Hewlett Packard Enterprise company. The majority of existing defences, which use pattern matching techniques to find threats, are unable to detect new attacks that use legitimate user credentials to access sensitive [&hellip;]<\/p>\n","protected":false},"author":25,"featured_media":19308,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[5,54,13],"tags":[111,5493,5494,445,1986],"class_list":["post-19306","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-research","category-top-stories","tag-aruba","tag-aruba-360o-secure-fabric","tag-aruba-intospect","tag-gdpr","tag-morten-illum"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts\/19306","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/users\/25"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/comments?post=19306"}],"version-history":[{"count":1,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts\/19306\/revisions"}],"predecessor-version":[{"id":19307,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/posts\/19306\/revisions\/19307"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/media\/19308"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/media?parent=19306"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/categories?post=19306"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/africa\/wp-json\/wp\/v2\/tags?post=19306"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}