Hi Frederic
MDE is for encrypting the files at rest. It supports both on Prem and
encryption across multiple cloud platforms. It supports advanced features
like cryptographic splitting so files can be striped across the clouds.
This way access to multiple cloud storage locations has to be access to
access the data. Not one cloud vendor or cloud user has access to the data
without the other. It’s added layers of protection.
It provides encryption and access control. This is data at rest protection.
Guardium DP for files formally known as FAM is for real time file
monitoring. This is data in flight protection. Although encryption is a
very important strategy it doesn’t provide much insight or protection once
a user has the right credentials. We must always assume credentials and
access will be compromised at some point. Real time monitoring is needed
for audit trails for compliance regulations. Real time notification of
access and ability to provide real time blocking. Guardium provides outlier
and anomaly detection for user behavior analytics. It allows you to
reconcile access of users and files. Integrations with cyberark and
ServiceNow to reconcile generic and service IDs.
I hope this helps
-Dan
Sent from my iPhone
Original Message------
Hello,
What is the difference between
"IBM Guardium Multi-Cloud Data Protection for Files"
and
"IBM Security Guardium Advanced Activity Monitor for Files" ?
Thanks
------------------------------
FREDERIC DECOCK
------------------------------