Yup, I can agree with that statement… After all, I consider FDE as a default pillar in any good information loss protection framework.
Yet for some reason, it seems that most IT shops have now become entranced within the data loss protection (DLP) hype. Thus, DLP has now become everyone’s favorite silver bullet. And, a lot of DLP companies are preying on this fallacy by pushing their products as end-all solutions to IT shops desperately seeking to fulfill, regulatory compliance needs, an executives whim, or even possibly used to correct holes found after their latest security incident.
Whatever the case, FDE should also be a default standard in all IT organizations. If it’s not, then you are behind. Or even worse, if you fear FDE or don’t understand why if should be part of your information protection strategy. Then feel free to start a conversation. Your fears or doubts should be addressed.
On another note, I was a little bothered that the author of the FDE post, only seemed to focus on software based solutions. In my opinion, Software FDE’s days are numbered. If you are currently deploying it continue. Heck, even use the open source solution TrueCrypt. If you don’t have FDE deployed or in the pipe then please take a gander at what is coming down within the Hardware FDE space.




