SecrecyKeeper is the system of protection against insiders intended for prevention of unauthorized dissemination of information by the employees allowed to its processing. SecrecyKeeper implements control of dissemination of information on the basis of the tolerance levels of users, the security levels of computers and degrees of privacy of information.
Architecture:
SecrecyKeeper - consists of the server of the management providing storage, viewing, editing and distribution the politician, the centralized installation, removal and updating of agents on the PC of users and also storage of different magazines of work.
Terminology:
Information resources - are divided into local and network.
Local resources are the files and folders which are at one with the agent of SecrecyKeeper workstation.
Network resources are network drives, network ports of different services.
The tolerance level of the user - defines degree of privacy of information to which the user can get access.
The tolerance level of the user to network - defines degree of privacy of information which the user can give on network.
The tolerance level of the user to removable mediums - defines degree of privacy of information which the user can copy on the removable medium.
The tolerance level of the user to printers - defines degree of privacy of information which the user can print.
The workstation security level on access - degree of privacy of information resources to which it is possible to get access from this workstation.
The workstation security level on storage - degree of privacy of data which this workstation can save.
Main Features:
appropriate to information resources of degree of privacy;
appropriate to workstations the security levels;
appropriate to users the tolerance levels;
to dynamically control access for the user to transmission channels on the basis of the tolerance levels polzovatedya, degrees of privacy of information with which work and the computer security levels is conducted.
Links
Official site of SecrecyKeeper
The overview of different approaches to creation of the systems of protection against insiders and its discussion on the portal on information security of SecurityLab.
Discussion of efficiency of the approach used in SecrecyKeeper, at creation of a system of protection against insiders on the portal on information security of ItSec.
One more discussion of the approach by experts in creation of the systems of protection against insiders implemented in SecrecyKeeper on the AntiMalware portal