公開済みEvidenceをIdentity / Capability / Credibility / Use Case / Constraints・Current Statusの軸で機械的に集約したものです(新規の主張・推測は含みません)。
Identity
NIST公式Glossary(CSRC)によれば、Data Loss Preventionは「A systems ability to identify, monitor, and protect data in use, data in motion, and data at rest through deep packet content inspection, contextual security analysis of transaction」と定義され、出典はCNSSI 4009-2015(CNSSI 1011より)とされる。検証待ちNIST CSRC Glossary — data loss prevention
NIST公式Glossary(CSRC)によれば、DLP機能はディープパケットコンテンツ検査(deep packet content inspection)と取引の文脈的セキュリティ分析(contextual security analysis of transaction)という2つの技術的手法を組み合わせて実現されるとされる。検証待ちNIST CSRC Glossary — data loss prevention
Cyera公式サイト(Data Loss Prevention製品ページ)によれば、Cyera Omni DLPはDLPの実装例の一つであり、「One AI brain. Zero noise. DLP, finally working.」を掲げ、DSPMプラットフォームと統合された形でDLP機能を提供しているとされる。検証待ちData Loss Prevention (DLP) Solution | Cyera Platform
Constraints / Current Status
NIST定義(CNSSI 4009-2015)によれば、DLPは「使用中(in use)」「転送中(in motion)」「保存中(at rest)」の3状態にあるデータを対象とする点で、暗号化やアクセス制御など単一状態のみを扱う個別統制とは区別される。検証待ちNIST CSRC Glossary — data loss prevention