How to Catch an Insider Data Thief

  • Thursday, February 27, 2014 | 10:40 AM – 11:40 AM | West | Room: 3005
View all Sessions

Insider data theft leaves no broken windows, making traditional forensics blind. But you can still detect it. How? Filesystems have typical patterns of access, which data theft disturbs. By analyzing these patterns, you can detect data theft months after its occurrence. You'll learn how to use this method, called stochastic forensics, to catch otherwise invisible data thieves.

Participants

This document was retrieved from http://www.rsaconference.com/events/us14/agenda/sessions/1159/how-to-catch-an-insider-data-thief on Fri, 18 Apr 2014 14:12:39 -0400.
© 2014 EMC Corporation. All rights reserved.