First, the report investigates insider risk and behavioral monitoring technology offered by Forcepoint, a major US cybersecurity vendor that is affiliated with the defense/intelligence sector.
Forcepoint promises to help organizations identify cyberattacks and employees who are considered a risk, whether by carelessness, negligence or intention.
Potential threats include “disgruntled employees” who had a “huge fight with the boss” and “internal activists” who leak information to journalists.
Forcepoint's systems can analyze:
- data from employee computers/devices, e.g. file, web, app, clipboard, keyboard, screen activity
- employee communication contents, e.g. email, chat, voice calls
- networking data, e.g. firewall, proxy
- performance reviews from HR systems
- data on physical access to buildings and rooms via badging systems
- activity log data from many other software systems, e.g. Microsoft, Salesforce, SAP, Cisco
- external data, e.g. criminal history, financial distress