Data erasure news / issue 2

Page 1

issue 2, september 2013 | This magazine is published by Blancco Oy Ltd. Copyrights 2013 Blancco Oy. All rights reserved.

In this issue: CEO News ® How an Organization Can Prevent Data Leaks ® Global Support Localized ® NHS Case Study from the UK ® Blancco Expands Globally ® The Benefits of Reporting ® Why Erase Data?

Does your organization manage sensitive data properly?

Data Erasure Throughout the Asset Lifecycle Part of an effective data security policy

Comprehensive Reporting is performed

erasure processes can be scheduled or run on

to effectively erase a device can result in

involves

demand to suit an organization’s requirements.

costly data leaks and negative publicity for an

erasure

by all of Blancco´s erasure products to

solutions throughout an IT asset’s life, not

implementing

data

issue crucial evidence that each erasure

just when it reaches the end-of-lifecycle

was

These

Blancco File can securely destroy individual

phase. “This means whenever temporary,

tamper-proof and verifiable reports are an

files and folders from specified locations with

confidential, or top secret data

successfully

completed.

organization. In some situations, i.e. when the device is defective, degaussing can be used.

is no

essential part of compliance, regulatory

given rules and parameters. Tasks can be

Blancco 4 & Blancco 5 can securely erase

longer needed at your organization, data

and legal requirements. Reports should

automated to ensure that data erasure actions

data from PCs, laptops, servers and storage

erasure solutions should be utilized to

be generated at all stages of the data

are performed within predefined rules resulting

environments. These fully automated and

safely remove data and generate a legally

destruction lifecycle to ensure that a legally

in targeted and consistent removal of data.

centrally managed solutions provide cutting

compliant audit trail to facilitate the safe

compliant audit can be performed later on.

reuse of an IT storage device,” according

The integration of Blancco Management

edge efficiency and productivity to meet the complex needs of organizations managing

to Sami Tuupanen, Director of Products

Console with asset management software

Have

and Services at Blancco.

supports

to

could ultimately happen if your

effectively manage, secure and audit the

organization’s assets were to end up

Blancco

lifecycle of assets and data.

in the wrong hands?

internal and external memory of another

Start of Lifecycle

an

organization’s

ability

you

thought

about

what

When an IT asset enters an organization,

multiple data storage devices. Mobile

securely

erases

the

key asset type: smartphones and tablets.

asset management software can be used to

During the Lifecycle

track information on the device. However,

Robust asset management involves the

Blancco Flash erases data from solid-state

that

this offers no way to maintain a record

secure deletion of protected information

removable storage media such as USB

because the data can still be recovered

about the management of data on the

throughout the lifecycle. For example, an

thumb drives, Secure Digital memory cards,

afterwards. Blancco Mobile also ensures

device and how it was securely handled.

enormous amount of confidential data is

CompactFlash cards and others. It supports

that the device is reusable with the

Restoring factory settings does not ensure data

is

permanently

destroyed,

stored on virtualized storage (such as the

plug and play to automate the process,

standard OS (operating system), while

Blancco Management Console can be

cloud), which must be erased when the

minimizing usage time.

providing peace of mind that all critical

used to maintain information about an

information is no longer needed. Individual

asset and any applied erasure processes.

files such as internal design documentation

End of Lifecycle/Ownership Change

It is designed to help manage IT asset

and credit card details on selected computers

At the end of the lifecycle phase it is vital to

Blancco Degausser can be used when hard

disposal processes, including erasure

must be targeted for erasure when they are

ensure the complete erasure of the asset. This

disks or other magnetic media become

software distribution, hardware asset

no longer required. To avoid unnecessary risk,

is why it is critical to use robust software to

defective and inaccessible to software. A

management, and erasure reporting. The

Blancco’s suite of software solutions can meet

wipe all data and accurately report the process

degaussing machine

Blancco Management Console API can

all of an organization’s data erasure needs.

when an asset is reassigned to another person

hard drive through the

at a company, or is being disposed of. Failure

electromagnetic field.

be used to integrate the Management Console

with

asset

management

Blancco

LUN

allows

data

storage

full automation to

administrators to securely erase segments

centralize IT asset management and track

of data in active storage environments.

all devices, making it the perfect tool to

This includes logical units in virtualized

help an organization manage the lifecycle

environments or any type of drive supported

and secure erasure of all assets.

by UNIX or Windows operating systems. The

software, enabling

corporate data is removed.

destroys data on a use of a strong


2

Data Erasure news

From previous page Conclusion

My days in Monte Carlo were chock full of

We at Blancco strive to be a truly

manage

interviews, attending event presentations

innovative company and brand. We

the secure erasure of data on a device

and meeting new people such as world

want to do our utmost to serve you,

is an important part of corporate asset

renowned individuals including Kofi Annan,

our valuable customer, with the most

management.

leading-edge data erasure solutions.

Administering

solutions

to

Management

former United Nations Secretary General,

Console allows your organization to fully

Dambisa Moyo, international economist

automate the process, together with a full

and author, John Cleese, actor, author

have localized technical support to serve

array of Blancco products to suit every

and comedian, and even Prince Albert

our customers in eight different languages

of Monaco. Returning home to Finland

which is coordinated from local offices who

inspired me to further think of how we at

liaise with our headquarters office to give

Blancco can further develop our product

you service at each of our global locales.

Blancco

erasure need. These can be seamlessly integrated

through

the

Management

Console with your organization’s own asset database

and

provide

comprehensive

CEO news CEO and Co-Founder Kim Väisänen

Finland

and customer relationships.

data reports and statistics. Reporting

Having the privilege of attending the

creates a comprehensive audit trail and

Ernst & Young World Enterpreneur of

We at Blancco strive to be a truly innovative

We welcome your feedback which can help with further development of our brand to

provides other important details to create

the Year Competition was invaluable

company and brand. We want to do our

further improve your organization´s erasure

a complete picture of the asset’s lifecycle.

to me. I had the honor of representing

utmost to serve you, our valuable customer,

process efficiency and secure crucial data. ®

Have you thought about what could

Finland as one of 49 entrepreneurs from

with the most leading-edge data erasure

ultimately happen if your organization’s

over 50 different countries vying for the

solutions on the market. Therefore, we invest

assets were to end up in the wrong

world title in Monte Carlo last June. I

time and resources in product management

hands? “Proper data erasure management

learned that passion, energy, and focus

and research.

can create peace of mind and help your

are essential to succeed in the world

organization avoid fines and the damage

of business as an entrepreneur, and no

We have a global sales support network

that a loss of reputation or intellectual

matter what your roots, the drive to

ready to assist you at our 17 different

property can bring,” Tuupanen asserts. ®

succeed is necessary to garner success.

offices in 15 different countries. We also

View short video clip from Monte Carlo event: http://bcove.me/zc2vrr7c Complete our 30-second Customer Survey and be eligible for Monthly Prizes! http://bit.ly/15ieJwf

Folder Structure

Credit Card Information

Confidential Document

Strategy Plan

How An Organization Can Prevent Data Leaks Targeted data erasure is ideal for removing

Scripting and automation

for all erasures using the Department of

sent to the Blancco Management Console

confidential data such as credit card

Scripting and automation are some of the

Defense three-time overwriting method.

for synchronization with a database for a

details, confidential customer information

most sought after features of this product.

and internal office documents to prevent

Erasures can be set to perform automatically

Many other scenarios are possible for using

data leaks. Blancco File securely erases

at a certain time and/or day. Rules can also

Blancco File. Network erasures are possible

selected data to ensure full compliance

be set to target specific file extensions. As

for users who have access to network shared

with new legislation and regulations

an example, if a .docx file is converted into

folders and files. Erasures through NFS

demanding secure removal of customer

.pdf and must then be erased, Blancco File

(Network File System) and CIFS (Common

data such as the PCI DSS (Payment Card

can be scripted to automatically target

Internet File System) are a popular solution

Blancco File is driven in three different ways:

Industry Data Security Standard) and the

the .docx for erasure after the conversion

as well. Integration with Microsoft’s FCI

1. User-driven execution

upcoming EU Protection Directive. This

is complete. Erasures are also possible in

(File Classification Infrastructure) is possible

When the user of the computer

advanced file shredding solution makes

virtual environments such as ESX and ESXi

in case a company has the need to search

gives the “Erase” command.

day-to-day shredding easy and supports

where the datastore of a virtual machine

through entire folder structures to find

all leading erasure standards.

needs to be securely removed instead of just

certain documents. This means all files can

When an event dictates that

the inventory.

be targeted within the folder structure for

an erasure will be performed.

automatic erasure is possible rather than

For example, when a .docx is

Blancco File is DIPCOG* approved, and one

complete audit trail. ®

Execution methods

2. Event-driven execution

of Blancco’s most flexible software solutions

Examples of use

manually digging for specific files which

converted into .pdf, the .docx is

for corporate and enterprise companies. The

An administrator has the ability to install

saves time, ensures 100 percent success, and

then automatically erased.

software can be installed in both Windows

Blancco File on all client computers by

removes the possibility of human error.

and Unix environments and is used for

pushing

securely erasing files, folders, free disk space,

through the network so every end-user will

Audit trail

temporary files and even virtual machines.

be able to target their daily files and folders

After every erasure, a report will be

This also makes it a useful tool in data centers

for secure erasure. The administrator also

generated as proof. These reports contain all

as it compliments Blancco LUN for a combined

has the ability to use Group Policy Objects

of the necessary information such as the file

erasure of both the virtual machines and the

to limit and/or configure the ability of end-

name and time of the erasure. The reports

virtual drives that they manage.

users. One example would be setting a rule

can be stored locally, sent via email and

* The Defence INFOSEC Product Co-operation Group of the UK

an

MSI

installation

package

3. Policy-driven execution When a company must comply with local or global regulations by securely erasing their data. For example, all data from former customers must be erased after six months.


Data Erasure news

Global Support Localized Q&A with Blancco’s Technical Support Manager Blancco’s Technical Support Manager, Harri Hirvonen, facilitates the flow of information for the Technical Support Team and designs support processes globally. He and his staff of 14 Technical Support Engineers and Specialists, located around the globe, help customers to utilize Blancco’s data erasure product solutions. The main technical support hub, located at the company’s headquarters in Joensuu, Finland, interfaces with all of Blancco’s offices around the world. Q: What is the main function of Blancco’s

all over the world so that customers will be

Global Technical Support Team?

supported in their own language, as much

A: Our main function is to make sure

as possible, in all of our major market

our customers can use Blancco product

areas, and we can cover all time zones. The

solutions as efficiently as possible, and if

advantage is that through our centralized

problems occur to help solve them as soon

support system our offices can back each

as possible.

other up during holidays or other busy

such services to a third party, but we make

in other words, not on software issues,

periods. Support is currently available in

sure that it’s always there. This is the key

but on the erasure process or how to

eight different languages.

advantage of our business strategy to localize

complete it.

Q: What is your role within the Technical Support Team? A: My main role as manager of the team is to learn if the customer is satisfied with our services and how we can improve their experience. Q: How do global technical support

support, and our customers appreciate this. Nowadays, the human element is often removed from technical support as IT companies often automate or outsource such services to a third party, but we make sure that it’s always there.

operations work at Blancco?

Q: What would you like customers Q: What is the goal of the Technical

to know about technical support?

Support Team?

A: We are here to help our customers

A: Our goal is to have happy and satisfied

and to educate them on the usability of

customers

erasure

our erasure solutions. We want to know if

processes in place. We want to collect as much

with

effective

data

customers are satisfied with our service.

feedback from our customers as possible

We are more than happy to receive

A: We divide the globe into three different

Q: What is the benefit of local support?

from the field. Ultimately, we will then be

feedback regarding our customer support

time zones—America, EMEA, and Asia

A: From the customer’s point of view our

able to report issues to our development

operations, and always open to new ideas

Pacific. The American zone covers North

support team is easier to contact when

team to improve product quality.

on how we can improve our services.

and South America; the EMEA supports all

he or she can communicate in his or her

European countries, for example Finland,

own language, area and local time zone.

Q: What are the main questions

The best way to reach us is to fill out our

Germany, France, the UK, and Benelux;

Nowadays, the human element is often

or concerns customers have?

contact support form and a technical

and Asian Pacific covers Japan, SE Asia and

removed from technical support as IT

A: Most questions our customers ask

support representative will contact you:

Australasia. In this way we localize support

companies often automate or outsource

are not technical but process-related, or

http://support.blancco.com ®

Case study: The North & East London CSU Erases Patient Data with Blancco The North & East London Commissioning

Units have been put in place to provide a

automated erasure scheduling with the

by previous NHS Trusts. Some of these trusts

Support Unit (CSU) utilizes Blancco data

range of commissioning services to their

Blancco Management Console also helping to

used shared server systems for storing

erasure solutions to erase patient data

local NHS Trusts. The North & East London

manage licenses and centralize reports.

information and, therefore, contained data

by selective data erasure on shared sever

CSU uses Blancco to decommission IT

systems and permanent erasure of PCs,

equipment and for overall IT transition

laptops and servers. Blancco solutions are

support for their NHS Trust clients.

helping the organization to secure data and manage the lifecycle of its assets.

The North & East London CSU currently utilizes a full range of Blancco product

which had to be selectively erased in a Blancco has been advising the North & East London CSU on best practices for the use of software and internal compliance as well as selective erasure of patient data from NAS servers.

secure manner before being returned to the ownership of the trust. Blancco File enabled the organization to pick and choose which information to permanently wipe and which to retain to handle this complicated process.

The North & East London CSU is a new

solutions for their erasure needs including:

National Health Service (NHS) organization

Blancco Management Console, Blancco 4.10

which provides expert support and advice

HMG, Blancco 4.10 Server, Blancco File, and

With Blancco 4.10 HMG the organization

East London CSU on best practices for the

to help clinical commissioners to deliver

Blancco Support Package.

can erase data from servers, laptops and

use of software and internal compliance

PCs and Blancco 4.10 Server Edition allows

as well as selective erasure of patient data from NAS servers.

improved health services to local populations

Blancco has also been advising the North &

in the United Kingdom. The NHS is the world’s

Blancco provided the North & East London

them to remotely erase servers. Blancco File

largest publically funded health care system.

CSU with up front pre-sales technical

is used for selective erasure of patient data

The North & East London CSU delivers an

guidance and live product demos as well

in addition to erasing selective data from

With products tailored to the organization’s

extensive range of services from contracting

as remote training when installing Blancco

shared servers systems with information

needs, Blancco data erasure solutions have

and analytics to finance and communications.

Management Console. Since the initial set-

utilized by multiple trusts.

helped the North & East London CSU to implement a secure process for wiping

up, the organization has implemented various Following a major overaul and restructure

customizations of the software including

The North & East London CSU is required to

data in compliance with governmental

of the NHS in 2013, Commissioning Support

remote deployment via MSI delivery and

decommission servers that have been used

regulations in the UK. ®

3


Blancco Expands Globally Blancco opened a new subsidiary in

organizations to have a partner like Blancco

We have been growing in Central Europe

Brisbane, Australia in July. This opening not

to ensure they are managing data erasure

as more than fifty percent of the top

only showcases our growth, but highlights

efficiently and securely,” says Karl Gaines,

30-Fortune companies (DAX) in Germany

the need for proper data erasure to ensure

Managing Director of Blancco Australasia.

now use Blancco´s solutions as customers demand more efficient and professional

privacy worldwide. Blancco also established a subsidiary in

data erasure management.

Recent changes to Australia’s Privacy act will

August in Berlin, Germany to serve our

go into effect next year prompting businesses

governmental customers within the region.

“The new Berlin office allows us to be in

to ensure that they are in compliance with

“Blancco obtained BSI certification in March of

the political hub in Germany and serve

the law and with international standards of

this year and now offers professional erasure

selected customers in the Northeast

data privacy and security.

software to governmental institutions and

part, and to also expand into the Eastern

municipalities. Now we are positioned to serve

European market”, says Thomas Wirth,

these customers in this region”, says Martin

General Manager of Blancco Central

Kaiser, Office Manager of Blancco Berlin.

Europe. ®

“With

recent

For more information or to download our whitepapers, please visit

legislative

changes

in

Australia, it is more important than ever for

www.blancco.com

The benefits of comprehensive reporting

Why erase data?

One key advantage of Blancco's data erasure

Blancco’s reports are an essential part of

assets are disposed of, recycled, reused or donated.

solutions is that each erasure generates

compliance, regulatory and legal auditing

a

requirements for your organization.

comprehensive

and

digitally-signed

IT assets pose a significant risk to organizations because of the large volumes of confidential information stored on them. Data must be completely destroyed before IT

Blancco’s unique ERA process

report. Reports are critical to prove that the erasure was actually performed as without

Reports provide information about

them there is no evidence that the erasure

the auditing process such as:

actually took place. They can also help

• Condition of the hardware

collect details related to the erasure and

• Relevant serial numbers and asset tags

your organization´s IT sanitized assets.

• Software details for license harvesting

Erase Blancco not only permanently erases all data, including hidden and remapped sectors…

• How and by whom the erasure was done Critical audit security

Report

All activities are logged in an erasure

Blancco also generates detailed reports

report which ensures transparency and

providing critical evidence of every

gapless security prior to and during your

erasure.

organization´s auditing process. These reports include digital signatures for maximum security and to avoid tampering. Audit Compliance with industry regulations

These reports ensure the existence of

Blancco's detailed reporting and auditing

a comprehensive audit trail – a critical

information

requirement

complies

with

industry

standards and regulations such as ISO

for

compliance

and

regulatory and legal auditing needs.

15408, ISO 27001, HIPAA, and PCI DSS. ®

Blancco is approved by:

NATO TüV-Süd

NSM

Copyright © 2013 Blancco Oy Ltd. All Rights Reserved. The information contained in this document represents the current view of Blancco Oy Ltd on the issues discussed as of the date of publication. Because of changing market conditions, Blancco cannot guarantee the accuracy of any information presented after the date of publication. This white paper is for informational purposes only. Blancco makes no warranties, express or implied, in this document. Complying with all applicable copyright laws is the responsibility of the user. Without limiting the rights under copyright, no part of this document may be reproduced, stored in, or introduced into a retrieval system, or transmitted in any form or by any means (electronic, mechanical, photocopying, recording, or otherwise), or for any purpose, without the express written permission of Blancco.

news@blancco.com www.blancco.com


Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.