Next webcast:
"De-mystifying SharePoint Security"
Date: Tuesday, May 1, 2012, 2PM MT
CipherPoint conducts webcasts on SharePoint security and compliance topics, including HITECH compliance and SharePoint, SharePoint Defense in Depth, content security, and others. For links to replays of recent webcasts, please visit our webcasts page.
At CipherPoint, we hear this a lot from SharePoint architects and administrators: "we need to increase the security of our SharePoint sites to accommodate sensitive content". We also hear this frequently: "we have to comply with (take your pick, HIPAA, PCI DSS, GLBA, ITAR/EAR, state breach laws), so we are looking for encryption solution for SharePoint."
We love to field inquiries like this, and we love to help customers achieve their SharePoint security and compliance objectives.
However, there are some questions you should ask yourself in addition to these high level concerns. And you should ask yourself these questions before reaching out to vendors, lest you get steered in a wrong direction.
Here's some pertinent questions aimed at surfacing the real issues underneath those broad concerns about the need to increase SharePoint security and compliance.
Use of a web-accessible platform like SharePoint presents many potential threats and scenarios to consider. SharePoint users are starting to have a number of different choices with which to address pieces of the overall problem. Which vendors you should focus on should largely be driven by the answers to questions such as these. Caveat emptor, no one vendor can address all of these problems today, and there's no silver bullet for SharePoint security and compliance. You should expect, however, that the vendors you are working with can provide clarity around exactly which threats they can help you with, and which ones they don't address.
Through use of appropriate third party products and native SharePoint platform controls, SharePoint sites can be secured to a degree allowing for almost any use case, including for sensitive and regulated content.
JD
CipherPoint writes a regular column on SharePoint Security and Compliance on EndUserSharePoint. Check them out here.
