Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Data Loss Prevention in Forcepoint Web Security Cloud : Configure Data Security (DLP Lite) policy settings
Configure Data Security (DLP Lite) policy settings
Data Loss Prevention | Forcepoint Web Security Cloud
To configure options for detecting and preventing data loss over web channels:
1.
In the portal, navigate to Account > Data Protection Settings.
2.
In the Web Defaults section, select Use DLP Lite. Save you changes.
When Use DLP Lite is selected, a Data Security tab is available for new policies.
3.
Navigate to the Web > Policy Management > Policies, page, then open the policy you want to configure.
4.
Click the Data Security tab in the policy.
5.
*
*
*
*
6.
The system will search for sensitive data that is being posted to HTTP and HTTPS sites, and report on it in an incident report available from the Reporting > Report Catalog > Standard Reports > Data Security page.
This report includes intellectual property, data that is protected by national legislation or industry regulation, and data suspected to be stolen by malware or malicious activities.
To search for data over HTTPS, be sure SSL decryption is enabled by following the instructions provided on the SSL Decryption tab.
Data security regulations
Most countries and certain industries have laws and regulations that protect customers, patients, or staff from the loss of personal information such as credit card numbers, social security numbers, and health information.
To set up rules for the regulations that pertain to you:
1.
Click No region selected.
2.
3.
4.
Select an action to take when matching data is detected. Select Block to prevent the data from being sent through the web channel. Select Monitor to allow it. (Incidents are created either way.) You can filter by action in the Data Security Incident Manager.
5.
Select Wide for the strictest security. Wide has a looser set of detection criteria than Default or Narrow, so false positives may result and performance may be affected. Select Narrow for tighter detection criteria. This can result in false negatives or undetected matches. Default is a balance between the two.
Severity is automatically calculated for these regulations.
Data theft detection
Use this section to detect when data is being exposed due to malware or malicious transactions. When you select these options, Forcepoint Web Security Cloud searches for and reports on outbound passwords, encrypted files, network data, and other types of information that could be indicative of a malicious act.
To see if your organization is at risk for data theft:
1.
2.
Select an action to take when matching data is detected. Select Block to prevent the data from being sent through the web channel. Select Monitor to allow it. (Incidents are created either way.) You can filter by action in the Data Security Incident Manager.
3.
Select Wide for the strictest security. Wide has a looser set of detection criteria than Default or Narrow, so false positives may result and performance may be affected. Select Narrow for tighter detection criteria. This can result in false negatives or undetected matches. Default is a balance between the two.
Severity is automatically calculated for these types.
Custom data security classifiers
Use this section if you want to detect intellectual property or sensitive data using custom phrases, dictionaries, or regular expressions containing business-specific terms or data.
1.
2.
Select a severity for each classifier to indicate how severe a breach would be. Select High for the most severe breaches. Severity is used for reporting purposes. It allows you to easily locate High, Medium, or Low severity breaches when viewing reports.
3.
a.
b.
c.
d.
Trusted domains
Select Enable trusted domains if you do not want certain domains to be monitored, then enter URLs for the trusted domains separated by commas.
The system does not analyze content passed between trusted domains. This means users can send them any type of sensitive information via HTTP, HTTPS, or other web channels from your network.
The domains you enter apply only to data security and only to the current web policy.
Duplicate URLs are not permitted. Wildcards and '?' are supported.

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Data Loss Prevention in Forcepoint Web Security Cloud : Configure Data Security (DLP Lite) policy settings
Copyright 2022 Forcepoint. All rights reserved.