You have been granted access to this page through First Click Free. Subsequent use of TabbFORUM will require logging in. If you don't have an account, registration is free.


  • Rail_thumb_cytron

    Lobbyists, Not Infrastructure, Benefit from Industry Spending Since Crash

    Since the global financial crisis, Wall Street has spent money on lobbyists to fight regulations but not to improve the plumbing of the financial system, says Pamela Cytron, CEO, Pendo Systems. Speaking with ...
  • Rail_thumb_loveless

    The Future of Connectivity in eFX

    While connectivity isn’t the most visible technology in the capital markets, software-defined networking is transforming connectivity in the world’s biggest markets. According to Jacob ...
  • Rail_thumb_screen_shot_2015-05-26_at_2

    Legacy Transformation: How to Do It Right

    Transforming a technology environment requires a lot more than just upgrading legacy systems. In fact, according to Jayachandran C. Kovilakam, lead partner, capital markets services, HCL Technologies, ...

More Video | Podcasts


14 November 2012

5 Keys to Curing Global Investment Firms' File-Sharing Headaches

The combination of sensitive documents, external collaboration and the bring-your-own-device (BYOD) trend is creating a serious security headache for global investment firms. Blackstone offers a case study in effective data security.

With billions of dollars of client wealth on the line, data security is a critical issue for investment firms and other players in the financial markets. However, these companies need to collaborate with internal and external parties to stay competitive and deliver the value their clients demand. Further complicating the security issue is the growing trend of employees and other stakeholders using their personal mobile devices to conduct business. The combination of sensitive documents, external collaboration and the bring-your-own-device (BYOD) trend is creating a serious security headache for global investment firms.

The treatment for that pain requires firms to protect the data on employee-owned tablets and smartphones; to assess compliance, security and litigation risk; and to curb the unsanctioned use of file syncing and sharing via public cloud services like Dropbox. The Dropbox Syndrome afflicting investment firms is a real threat that can best be solved by securingdata at the document level before it is shared with any other recipients. When firms take this approach, they secure the data as opposed to trying to control the space in which it travels.

Preventing accidental financial document leaks

To look at how a cure for Dropbox Syndrome might play out, we can examine the experiences of Blackstone, a global investment and advisory firm with 22 offices worldwide and more than $205 billion in assets for public and corporate pension funds and academic, cultural and charitable organizations.

Blackstone needed tofacilitate global communication between executives, partners and clients on a secure platform upon which sensitive documents could be distributed and shared among various internal and external parties. Data security was imperative, but so was the communication flow among stakeholders and board members and the usability of the interface for non-technical collaborators. The level of security Blackstone sought included methods for tracking the lifecycle of a document and the ability to erase data in the event of accidental or malicious leakage.

To accomplish this, Blackstone deployed a data-centric solution that lets the firm control and track who accesses information, when the information is viewed and how frequently recipients use it. If sensitive documents are ever inadvertently shared, Blackstone can easily revoke rights and disable anybody from accessing data – even after it has left the company.

Just as important, Blackstone relies on document-level encryptionto facilitate the appropriate sharing of critical information with internal and external parties and extend safeguards to mobile devices, like iPhones and iPads.

In a business in which the value of proprietary information cannot be overstated, Blackstone has found that wrapping a security blanket around every document is a competitive advantage. Productivity and collaboration among team members is up, and the concern over the “what-ifs” of document-based collaboration is gone.

A more effective approach to document security

As global investment firms reevaluate their document security plans, they should ask these five questions:

  1. Can we comply with Sarbanes-Oxley and other regulatory standards if we don’t know whether unpublished financial results are being shared or lost?
  2. Can we quantify costs and legal risk if our BYOD program means that data on all employee-owned devices needs to be discoverable in the case of litigation?
  3. Can we maintain control over our data if company-owned mobile devices are lost?
  4. Can we maintain control over our data if it resides on employee-owned mobile devices that are lost?
  5. Are our employees sharing files via public cloud services like Dropbox?

The reflexive response to those questions might be to ban employee-owned mobile devices and consumer-grade cloud services, but enforcing such a ban is nearly impossible. Instead, global investment firms should focus on implementing data protection at the document level and delivering enterprise-quality syncing capabilities, so users won’t be tempted by Dropbox or other applications outside the enterprise’s control.

To cure document security headaches, investment firms can leverage enterprise-grade document security that mimics consumer-style interfaces; this creates higher employee adoption rates and gives firms the power to enforce document-level controls on desktop computers and mobile devices. When these controls are dynamic, organizations can easily revoke access to specific documents if a business relationship ends or an employee loses a device.

Investment firms need document-level protection, tracking and control that cures security headaches, stops Dropbox Syndrome before it starts and accommodates the pervasive BYOD trend in the market. Such capabilities ensure that clients are protected and firms remain competitive.

Moti Rafalin is the co-founder and CEO of WatchDox, a provider of secure access, file sync and collaboration solutionsthat enable the confidential sharing of sensitive documents.

Add a Comment

You must log in to comment.