Symantec Data Loss Prevention and GitGuardian Platform are both data protection tools competing in the realm of sensitive data safeguarding. Symantec holds the upper hand with its robust network monitoring and advanced data classification capabilities, while GitGuardian excels in secrets detection in code repositories.
Features: Symantec DLP offers comprehensive network monitoring and advanced data classification using machine learning. It provides extensive endpoint protection, supports various encryption mechanisms, and facilitates network discovery with Data Insight. GitGuardian, on the other hand, specializes in secrets detection within code repositories, offering rapid alerts, remediation processes, and reliable secrets detection accuracy.
Room for Improvement: Symantec DLP could improve the stability of its machine learning features and simplify its installation process. Additionally, better integration with other technologies is needed, as well as enhancements in its user interface. In contrast, GitGuardian needs enhancements in automated feedback processes, mobile app support, and the frontend for incident management. Integration with Azure DevOps requires improvement as well.
Ease of Deployment and Customer Service: Symantec DLP is mainly deployed on-premises, suitable for large enterprise environments, yet its installation can be resource-heavy. Its customer support has reportedly declined after Broadcom's acquisition. GitGuardian offers more flexible on-premises and cloud deployment options, and while generally providing satisfactory support, there's room for improvement in interaction efficiency and resolution speed.
Pricing and ROI: Symantec DLP entails significant investment, with pricing affected by Oracle database usage and a per-user endpoint model, leading to being seen as expensive for smaller companies but offering solid ROI through its protection and compliance capabilities. GitGuardian has a competitive pricing model scaling with the number of developers, though it may be costly for larger teams. It provides good ROI with its efficient secrets detection and remediation features.
The majority of our incidents for critical detectors and important secret types are remediated automatically or proactively by developers through GitGuardian's notification system, without security team involvement.
I would rate their technical support a nine out of ten.
The support team changed from MTechPro to a different partner, affecting our experience.
I would rate it a ten out of ten for scalability.
In terms of scalability, I would rate it around a ten out of ten, as it handles all the repositories and commit activity we have.
It is quick and meets our needs.
When using native proxy solutions, scalability issues are minimized, and the solution remains stable.
The SaaS platform has experienced two significant moments of downtime or instability in the last six months, requiring notices and retrospectives.
We set up a lot of the repository, so GitGuardian is a required check.
We are looking for better metrics and audit data, wanting more features such as knowing which users are creating the most secrets or committing the most secrets, what repository, what directory, and who is not checking in secrets.
This presents an opportunity for them to better showcase their developer-first remediation mindset.
Another thing that would be good to see is some more metrics on the usage of the GitGuardian pre-push hooks.
A main disadvantage of Symantec DLP is its reliance on Oracle.
Overall, the secret detection sector is expensive, but we are happy with the value we get.
It's fairly priced, as it performs a lot of analysis and is a valuable tool.
A high number of our exposures are remediated by developers before security needs to step in, as the self-healing playbook process engages them automatically.
GitGuardian Platform performs the capability to detect secrets in real time exceptionally, as it activates from the commit and can detect it immediately.
One of the best features of the solution is the ability to use pre-push hooks.
Symantec Data Loss Prevention has proprietary metadata and is well-suited for endpoint-level security.
GitGuardian helps organizations detect and fix vulnerabilities in source code at every step of the software development lifecycle. With GitGuardian’s policy engine, security teams can monitor and enforce rules across their VCS, DevOps tools, and infrastructure-as-code configurations.
Widely adopted by developer communities, GitGuardian is used by more than 500,000 developers and is the #1 app in the security category on the GitHub Marketplace. GitGuardian is also trusted by leading companies, including Instacart, Genesys, Orange, Iress, Beyond Identity, NOW: Pensions, and Stedi.
GitGuardian Platform includes automated secrets detection and remediation. By reducing the risks of secrets exposure across the SDLC, GitGuardian helps software-driven organizations strengthen their security posture and comply with frameworks and standards.
Its detection engine is trained against more than a billion public GitHub commits every year, and it covers 350+ types of secrets such as API keys, database connection strings, private keys, certificates, and more.
GitGuardian brings security and development teams together with automated remediation playbooks and collaboration features to resolve incidents fast and in full. By pulling developers closer to the remediation process, organizations can achieve higher incident closing rates and shorter fix times.
The platform integrates across the DevOps toolchain, including native support for continuously scanning VCS platforms like GitHub, Gitlab, Azure DevOps and Bitbucket or CI/CD tools like Jenkins, CircleCI, Travis CI, GitLab pipelines, and many more. It also integrates with ticketing and messaging systems like Splunk, PagerDuty, Jira and Slack to support teams with their incident remediation workflows. GitGuardian is offered as a SaaS platform but can also be hosted on-premise for organizations operating in highly regulated industries or with strict data privacy requirements.
Keeping sensitive corporate information safe and compliant has never been easy. But today, you’re faced with a totally new set of data protection challenges. Sensitive information is leaving the safety of your corporate network as more employees share files over consumer cloud storage services and access those files on their own mobile devices. The number of targeted cyber attacks continues to grow, as cybercriminals develop effective new methods for defeating traditional security measures and stealing corporate information. And as all of these factors converge, it becomes increasingly difficult to manage corporate information and protect it against loss and theft.
Symantec Data Loss Prevention (DLP) provides a comprehensive approach to information protection that embraces today’s cloud- and mobile-centered realities. With DLP, you can:
• Discover where data is stored across all of your cloud, mobile, network, endpoint, and storage systems
• Monitor how data is being used, whether your employees are on or off the network
• Protect data from being leaked or stolen—no matter where it’s stored or how it’s used
We monitor all Data Loss Prevention (DLP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.