Senior IT Architect at a tech services company with 201-500 employees
Real User
Great exfiltration capabilities, very reliable, and offers good technical support
Pros and Cons
  • "The exfiltration capabilities are great. You can put all of these rules in the product to detect the patterns and text."
  • "The database is a problem for us, as it's running on Oracle and not everybody likes that."

What is our primary use case?

We primarily use the solution in order to detect the exfiltration.

What is most valuable?

The exfiltration capabilities are great. You can put all of these rules in the product to detect the patterns and text. You can build the rules to detect credit cards and personal information, for example. 

Technical support, by and large, is very helpful.

In general, it's a solid, dependable product.

What needs improvement?

The database is a problem for us, as it's running on Oracle and not everybody likes that. There's a licensing issue with the database. There's a sizing issue with licensing. They did improve it a bit. It supports a virtual server now. However, the pricing and the fact that you install it on the machine and you have to count all the CPU, makes it a problem. It's workable. We dedicated a physical machine to it. It's a bit of a legacy solution. 

The licensing is a bit of an issue for us. They need to work on the way the licensing is set up.

A feature we would like to see is entropy detection in text. We need something that detects when you send an email and you try to hide something by using simple encryption techniques. It's typically called entropy. If we had entropy detection in the regular text that would be ideal

For how long have I used the solution?

I've been working with the solution for about a year. It hasn't been that long.

Buyer's Guide
Symantec Data Loss Prevention
March 2024
Learn what your peers think about Symantec Data Loss Prevention. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
768,857 professionals have used our research since 2012.

What do I think about the stability of the solution?

It's a pretty solid, reliable product. We haven't had any issues with it overall.

How are customer service and support?

We've found the technical support to be quite helpful and responsive. We're very happy with the level of support we receive.

What's my experience with pricing, setup cost, and licensing?

The licensing is an issue. You need to get a dedicated machine. Otherwise, you have to pay for all the CPU in your data center or all the clusters in VMware. It used to be two issues. One was the support of virtualization and one was licensing. In the latest release, they solved the virtualization. They said "Okay, you can run the database and everything could be on the virtual machine", which is great. The other issue of licensing is still a pending issue. We still have to run on the dedicated hardware, however, it needs to be a small cluster or a small machine, to not pay for the entire cluster.

What other advice do I have?

We are Symantec partners.

We are using the latest version of the solution. I'm not sure of the exact version number, however.

Overall it's an excellent product. It helps you reach your goal and solve some issues. We did it in six months. It's really an excellent product. There is a bit of a legacy component about the database and the way it works. We can see that the evolution of the technology was a bit slow for the backend, however, the product itself is solid.

I'd rate the solution at a nine out of ten overall. We've been largely quite satisfied with its capabilities.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user406974 - PeerSpot reviewer
Chief Cyber Strategist with 1,001-5,000 employees
Vendor
Detects percentages of interrogate words within documents. Finds leaks of documents and restricted controlled information.

What is most valuable?

  • Detects the percentages of text and interrogate words within documents and emails.
  • Finds leaks of documents and restricted controlled information.

How has it helped my organization?

We use it to discover unacceptable employee behavior, such as threats and bullying. It helps us identify insider threats.

What needs improvement?

I would like to see a reduction in false positives.

For how long have I used the solution?

I have used this solution for three years.

What do I think about the stability of the solution?

There haven’t been stability issues with the product. There have been stability issues with the user community when trying to embargo documents.

What do I think about the scalability of the solution?

There were no scalability issues other than some impact on sending large documents when tracking content for restricted data.

How is customer service and technical support?

The technical support has been excellent. We had DLP engineers on site.

How was the initial setup?

The installation was pretty straightforward. We had to adjust for policy allowances. Once the user community gained some experience, we were able to expand the scope.

What's my experience with pricing, setup cost, and licensing?

I have no real comment as we had an enterprise license. Make sure you cover all users and plan growth metrics.

Which other solutions did I evaluate?

We evaluated alternative solutions, but I can't recall which ones. We had an enterprise license and the product integrated with the SIEM well. There was little reason to go outside of the existing contracts.

What other advice do I have?

Take the following steps:

  1. Go to monitoring for 90 days.
  2. Start to reduce the allowed events. Start at 100 and reduce by 20 per month.
  3. Communicate any failures. (Allow for application changes, as legacy apps may be guilty of data transfer that is embedded in the architecture/file transfer.)
Disclosure: My company has a business relationship with this vendor other than being a customer: I have moved on from the USPS and Salient CRGT. I was in a teaming relationship. I did not use the product internally.
PeerSpot user
Buyer's Guide
Symantec Data Loss Prevention
March 2024
Learn what your peers think about Symantec Data Loss Prevention. Get advice and tips from experienced pros sharing their opinions. Updated: March 2024.
768,857 professionals have used our research since 2012.
System Administrator at a tech services company with 1,001-5,000 employees
Real User
Enables us to check attachments and to know what data is being sent
Pros and Cons
  • "One of the most valuable features is that you can check attachments."
  • "We are finding delayed response if the macOS is updated. They need to make sure their solution is compatible."

How has it helped my organization?

Previously, what was happening was that anyone could send any data outside. We now know who is sending what data and where. We can then question them: "Why have you sent that data?"

What is most valuable?

In DLP one of the most valuable features is that you can check attachments. 

In addition, it gives me the data such that, if someone is using a browser and email, I'm able to figure out who is sending the data.

What needs improvement?

Symantec customer support is very bad.

We are finding delayed response if the macOS is updated. They need to make sure their solution is compatible.

Also, if any data at all is going outside of our network and it matches our screening it has to be captured and we should see it detailed properly: Who is sending it, where they're sending it.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

The stability has met our expectations.

What do I think about the scalability of the solution?

I'm not good with the scalability. It's not capturing everything. If someone's trying to send from Gmail to some other browser or if someone is using Safari in a Windows machine, under those conditions it's not captured. 

Which solution did I use previously and why did I switch?

This is the first product of its kind for us. Nobody seemed to know much about this product but we figured out how to use it, and the vendor gave us training, so we have been able to handle it.

How was the initial setup?

The initial setup is a little complex. But once you go through it you get used to it. After using this product it becomes easy to handle, easy to understand. Our deployment took about two months for 2,000 users. 

Our strategy was simple. I needed to implement it for every user so that we could monitor any data.

What about the implementation team?

We used the vendor's support and it was nice working with them. They helped a lot when it came to the deployment.

What's my experience with pricing, setup cost, and licensing?

I wasn't involved in the pricing negotiations but from what I know the pricing is good, it's not too expensive. If you negotiate you can get a good price.

Which other solutions did I evaluate?

We evaluated multiple solutions, such as McAfee.

What other advice do I have?

We have around 1,500 users in HR, admin, the finance department, and IT. For maintenance of the solution we have two people. It's covering all users at the moment so there are no plans to increase usage.

I rate the solution at eight out of ten. It is fulfilling our requirements.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
ITSM & AntiFraud Consultant with 51-200 employees
Consultant
Data Insight helps clients gain visibility over data usage, ownership and permissions.
Pros and Cons
  • "The Network Monitor component is the most advanced on the market. Combined with the other Network DLP components."
  • "The Symantec DLP solution is very complex, and installation requires many components."

What is most valuable?

The Network Monitor component is the most advanced on the market. Combined with the other Network DLP components (Prevent for Web, Prevent for Email, Discover and Prevent), Symantec offers one of the best network DLP solutions in the market. Another component that is very valuable from my point of view is the Data Insight component that allows the client to have full visibility into the company data.

How has it helped my organization?

Data Insight is a very good component that steps outside the standard DLP functions, but helps the client to gain visibility over the data usage, ownership and permissions.

What needs improvement?

The Symantec DLP solution is very complex, and installation requires many components. Also, Oracle is only the DB used by Symantec.

For how long have I used the solution?

I have experience with Symantec DLP since 2013.

What was my experience with deployment of the solution?

Sometimes the Oracle instance need to be restarted, when using full Windows deployment.

What do I think about the stability of the solution?

When in a heavy-usage environment, you can have some latency problems when the DLP management page loads. If the problem persists and the loading time is too high, you should restart the service. Usually, this behavior is very rare and I saw it on the Windows implementation.

What do I think about the scalability of the solution?

When implementing the DLP solution, we use the Symantec sizing guide, and we use the recommended configuration. The Symantec DLP license is per user, so it's hard to have issues with scalability

How is customer service and technical support?

Customer Service:

Usually, we use the local distributor team for issues and they are very OK. When needed, we opened cases at Symantec support, and it was a pretty decent relationship. Some clients complained that they didn't fulfill the request very fast.Starting again this year we have a local vendor presence and that helps us in front of the clients.

Technical Support:

Symantec L3 technical support technicians are very good.

How was the initial setup?

Initial setup is straightforward, as you use the same installation kit, and you choose which component to install.

What's my experience with pricing, setup cost, and licensing?

Symantec only sells the DLP software. When you buy, it you should budget the server licenses, the storage and the hardware. Scale your implementation when you have your exact number of the monitored users. Be prepared to extend the resources if you increase the number of users. The Oracle DB is licensed for use only with Symantec.

If you are a small firm with less than 150 users, Symantec can be too pricey.

Which other solutions did I evaluate?

We also evaluated McAfee DLP, WebSense (Forcepoint) DLP, and Digital Guardian.

What other advice do I have?

We are a system integration firm, and we also sell McAfee DLP and WebSense DLP (Forcepoint).

Disclosure: My company has a business relationship with this vendor other than being a customer: I am working for a system integrator and I have experience with other vendors.
PeerSpot user
Information Security Engineer at a tech services company with 501-1,000 employees
Reseller
A DLP solution that prevents from data leakage with moderate setup
Pros and Cons
  • "It can prevent copying and encoding of HTTP data to various sites like Google, and Webex."
  • "Data Masking could be improved."

What is our primary use case?

We use the solution to prevent it from data leakage.

How has it helped my organization?

Symantec DLP covers almost all the main trajectory of confidential data, including storage, endpoints, networks, and the cloud. We use it for discovery, prevention and network monitoring on the network side. In the cloud, we use cloud services such as email, detection services, and discovery.

What is most valuable?

Symantec Data Loss Prevention can both monitor and block data at the endpoint level. It can prevent copying and encoding of HTTP data to various sites like Google, and Webex. It can also prevent data leakage by capturing and blocking various forms of data, including images, videos, and audio. Even if an end user attempts to send an image file or screenshot, it will undergo scanning. Symantec Data Loss Prevention will extract fingerprints from the image and prevent the data from being transmitted.

What needs improvement?

Data Masking could be improved.

For how long have I used the solution?

I have been using Symantec Data Loss Prevention as a reseller since 2005.

What do I think about the stability of the solution?

The product is stable.

I rate the solution’s stability an 8 out of 10.

What do I think about the scalability of the solution?

I rate the solution’s scalability a 7 out of 10.

How was the initial setup?

The initial setup is moderate. It'll take a day or 2, depending on troubleshooting needs and database integration. It only supports Oracle databases.

What's my experience with pricing, setup cost, and licensing?

The product is expensive.

I rate the product’s pricing a 3 out of 10, where 1 is expensive and 10 is cheap.

What other advice do I have?

We do have many built-in components on the policy tab. So, if you're in the UK or anywhere else, we have some pre-built policies, making it easy for users to configure. These policies cover SSN, driver's license information, and other sensitive conversations. Additionally, we have some import policies, making the process even easier.

We have almost 65 components, and we are the ones handling the stack for Broadcom. We are responsible for both level one and level two support for Broadcom.

Overall, I rate the solution an 8 out of 10.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
Flag as inappropriate
PeerSpot user
System Engineer at ABM Info. tech
Real User
Great end point encryption and provides good data loss prevention
Pros and Cons
  • "Good end point encryption and data loss prevention."
  • "The policies need to be improved."

What is our primary use case?

In Pakistan, this solution is used mainly in the banking sector for protecting the credit card payment industry. Our clients are generally small businesses. We are partners with Symantec and I'm the manager of information security. 

What is most valuable?

The most valuable feature is the end point encryption and the solution provides good data loss prevention. 

What needs improvement?

Symantec needs to improve the policies. If they could gear the policies, or the templates, and publish them, enabling customers to download them, it would simplify things.  They currently have a package uploaded in the system with some policies but there is no option to download our link device. There are some difficulties on the portals with Symantec. In general, the softwares are not available for partners on their portal. If a new patch requires updating on customer sites, those particular softwares are not available on the partner portal. The products they're giving the agent for Linux operating system could be simplified but Symantec is not geared for writing that option for Linux and running windows on it. Symantec doesn't have any agent for DLP on the operating system.

For how long have I used the solution?

I've been using this solution for 10 years. 

What do I think about the stability of the solution?

The solution is stable. 

What do I think about the scalability of the solution?

The solution is scalable. 

How was the initial setup?

The initial setup is quite complex and can take around two hours. 

What's my experience with pricing, setup cost, and licensing?

Licensing costs are based on the number of users and can be purchased on an annual, three-year or five-year basis. The cost is high compared to other solutions.

What other advice do I have?

I rate this solution an eight out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Manager Cyber Forensic at a financial services firm with 51-200 employees
Real User
Good dashboard and reporting, but it does not detect monitor and file sharing to RDP, and the support is poor
Pros and Cons
  • "The dashboard, management section, and reporting are good."
  • "The dashboard, management section, and reporting are good."
  • "There are some features that are not available which are required by every data loss prevention solution."
  • "It is very difficult to log in to create a support ticket because no one is available to support our queries."

What is our primary use case?

The primary use case of this solution is for data loss prevention and confidential classification for internal public architecture.

We are trying to prevent the data loss of sensitive files that are confidential, and not let them out of the organization's control.

What is most valuable?

The dashboard, management section, and reporting are good.

What needs improvement?

We are having support issues. We had local support but since the acquisition, the support is now only five teams. It is very difficult to log in to create a support ticket because no one is available to support our queries. In India, it's especially needed.

It has some feature deficiencies, as well. For example, it won't monitor the remote desktop and the file-sharing to the RDP. It's not detecting it and RDP is not supported well. The issue is not only with RDP, but rather it's with the product used to provide the remote support. If the data is leaked through that application, then Symantec doesn't monitor that section.

There are some features that are not available, which are required by every data loss prevention solution.

In the next release, encryption should be available. For example, if an extended drive is plugged into the endpoint and someone tried to copy the data to the external drive, the Symantec DLP component doesn't encrypt the drive. If you want the encryption feature you have to purchase an additional component for it. This could be an integral part of Symantec today.

What do I think about the stability of the solution?

This solution is stable. We have not experienced any issues.

How are customer service and technical support?

There is a problem with technical support. It's not available.

I submitted a case two months ago, and still, I have not received a response.

How was the initial setup?

We deployed locally in our environment. All of the channels such as emails, web, and endpoints are covered.

What's my experience with pricing, setup cost, and licensing?

The pricing is reasonable.

What other advice do I have?

Technical support is very poor. I am frustrated and irritated by the issue, so it is difficult to offer advice or recommend this solution.

If someone would ask me if they should implement this solution, I would have to say no, only because of the support issue. It is a very big concern.

I would rate this solution a four out of ten.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Cyber Security Engineer at quadra
Real User
An efficient solution to protect our development source code
Pros and Cons
  • "The data matching features are the most valuable due to the easy policy setup and implementation."
  • "The enforce service is difficult to understand, and free courses made available on the internet would be useful."

What is our primary use case?

We use this solution for development source code security.

How has it helped my organization?

It provides an efficient solution but the enforce server is difficult to understand.

What is most valuable?

The data matching features are the most valuable due to the easy policy setup and implementation.

What needs improvement?

I would like to see this solution made more user-friendly, and the administration needs improvement.

The enforce service is difficult to understand, and free courses made available on the internet would be useful.

For how long have I used the solution?

We have been using this solution for six months.

Which deployment model are you using for this solution?

On-premises
Disclosure: My company has a business relationship with this vendor other than being a customer:
PeerSpot user
Buyer's Guide
Download our free Symantec Data Loss Prevention Report and get advice and tips from experienced pros sharing their opinions.
Updated: March 2024
Product Categories
Data Loss Prevention (DLP)
Buyer's Guide
Download our free Symantec Data Loss Prevention Report and get advice and tips from experienced pros sharing their opinions.