Identity, Risk Identification/Classification/Mitigation, MSP
Next DLP’s Reveal Platform Tackles Insider Threats

Credit: Adobe Stock
Data breaches caused by insiders are on the rise—both in terms of frequency and their cost to the business. In fact, data losses from insider-driven events are expected to pile up in 2024, with a single event potentially costing as much as $15 million, according to reports.The problem has become so severe that MITRE has developed an Insider Threat Knowledge Base (ITKB) through its MITRE Engenuity Center for Threat-Informed Defense. An insider is typically defined as an individual with legitimate access to company assets who causes harm to the business—whether intentionally or unintentionally. Threats could come from current employees, former employees, contractors, or partners who have access (or previously had access) to an organization’s systems or data.The ITKB offers an evidence-based, multi-organizational and publicly-available compendium of insider threat tactics, techniques and procedures (TTPs) mapped to MITRE ATT&CK. This endeavor was developed in partnership between MITRE Engenuity, Next DLP, CrowdStrike, HCA Healthcare, JPMorgan Chase Bank, Lloyds Banking Group, Microsoft and Verizon Business. In early May, data loss prevention and insider threat solutions vendor Next DLP announced that their Reveal Platform is the first insider risk management solution to automatically map detection events to the expanded ITKB. "We have been collaborating and partnering with the MITRE Engenuity group on their insider threat knowledge base since last year," Connie Stack, CEO at Next DLP told ChannelE2E. "They've been working on this research for the last few years. Just as MITRE has done with their ATT&CK framework, which has become something of a universal, global framework that folks are building their threat detection and response programs around, they wanted to develop something similar for the TTPs and indicators of insider risks as well," Stack said.For MSPs and MSSPs, Next DLP can offer a great way to help customers deploy the procedural and technical improvements to better detect and prevent insider threats by turning their information security focus inward. Stack adds that being one of the first vendors to incorporate the MITRE ITKB into their solution gives the company an innovation edge and helps develop a reputation as a trusted partner."Since we are the first vendor that's actually incorporated them into our solution, we benefit as well from the fact that MITRE is so well respected. It's a familiar and trusted name, familiar trusted brand, familiar and trusted framework that's now being translated to the insider risk side," she said.
An In-Depth Guide to Identity
Get essential knowledge and practical strategies to fortify your identity security.
You can skip this ad in 5 seconds