Policy Compliance Tools Aren’t Perfect

Policy and regulatory compliance tools are outbound email filters that attempt to stop users from violating organizational policies or regulations. An example of such a policy is: "Only people in the PR Team group are allowed to email press releases to people outside the company."

Policy compliance tools are useful for saving users from making silly mistakes, but not so good at preventing deliberate violations. If your competitor tries to steal your PR plans by planting a mole, no policy compliance tool could conceivably prevent them from stealing next week's draft press release. Although it might frustrate their attempts to email the draft, it won't prevent the use of other media such as flash drives, CD-Rs, or the good old printed page.

Beware of relying too heavily on technological solutions to problems. Don't neglect the more obvious strategies, such as vetting contractors and keeping sensitive data under lock and key.

