Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Monday, 15 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

The Vanishing Data Loss Prevention (DLP) Category

By: Katrina Thompson, encryption and data privacy writer

by Guru Writer
August 18, 2023
in Insight
Share on FacebookShare on Twitter

A few years ago, DLP was a hot security buzzword and a relevant single offering. Now, it’s been swallowed up as part of other, beefier solutions that offer a buffet instead of an entrée.

However, to understand where to find DLP today and what exactly it’s doing, it helps to get a sense of the whole picture.

Let’s review the rise, decline and – reincarnation? – of the Data Loss Prevention category.

Where DLP Started

As it was stated so succinctly in Forbes, “Data loss prevention (DLP) has enjoyed a long and hype-filled life since the early 2000s.” That’s fair. Even before data became “big data”, protecting it was something of “big” importance. It only seemed right that doing so should be worthy of its own singular solution, and thus Data Loss Prevention – the tool wholly devoted to making sure not an ounce of protected information ever left the network – was born.

A certified Gen Z-er, DLP grew up in the early aughts and hit its stride in a landscape much different from today’s. There was no cloud. I’ll repeat that – the cloud didn’t even exist when DLP came about (pretty sure it had a landline), and everything was done via email. Network traffic was essentially cleartext, and most baddies were cyber-punks with a personal agenda. Nation-state actors, insider threats and ridiculous ransomware amounts were still creatures of the future.

Into that world DLP emerged, and it promised one great, simple thing. It would protect against data leaving the network or data centre by means of unsafe protocols (HTTP, SMTP). Sounds good enough. And this data was the kind you could easily (or pretty easily) identify; something with a signature, something regulated, something you could wrap your hands around and let your SOC handle if it had to. Pieces of information went in, pieces of information went out, and DLP was here as a ticket-taker to make sure nobody jumped the turnstile.

Then all HTTPS broke loose.

Big Data means Big Problems

Over the course of a few years, data started to explode. The world became an exponentially more connected place, and we need the digital tools that could keep up. Suddenly, useful little DLP was asked to do big things. Could it:

  • Track data across multiple environments?
  • Keep up with (and find) all the data we shipped up to the cloud?
  • Handle petabytes (not terabytes) of data?
  • Keep us compliant with GDPR?
  • Keep us compliant with CCPA, CPRA, HIPAA, SOX, PCI DSS, ISO 27001, FISMA, The Privacy Act, PIPEDA, and individual data privacy standards for every state in the continental United States (and possibly Puerto Rico)?
  • Fingerprint data?
  • Contextualise alerts?
  • Determine data lineage?
  • Autonomously respond to data-targeted threats at scale?
  • Spin up automated reports?

No. Good old-fashioned DLP could do none of those things. It was not a slicer-dicer-chopper; it was a can opener.

Now, DLP pure-play providers had some thinking to do. Adjust and adapt? Or be cannibalised by other, faster-moving offerings.

The answers vary as widely as there are providers out there, but as an industry the solution has been somewhere in the middle.

Where You’ll Find DLP Today

These days, DLP can be found right where you left it, but not like you’d recognise it. Even the industry noted the decline, with cybersecurity provider Cyberhaven eventually asking, “What happened to the Gartner Data Loss Prevention Magic Quadrant?” (It was discontinued in 2018).

This is largely what has happened to it:

  • Data Risk Management incorporated it into its comprehensive strategy – it takes people, technology (DLP) and processes.
  • Secure Service Edge (SSE) adopted some of its components and Insider Risk Management (IRM) took up the banner as a possible data security contender.
  • Data Detection and Response (DDR) all but swallowed it whole.

However, this scenario can be hard for companies who see the lack and just want to plug the hole – not create a whole new strategy around it. And for that, there is some encouraging news: the DLP providers that remain have really had to adapt.

While traditional Data Loss Prevention is known for outdated technology, failure to protect data at scale and an annoying penchant to block normal activity, next-generation DLP providers have had to re-work the system.

Now, next-gen DLP has been redefined to include content analysis and offer context. It can cut down on false positives (a big one) and track everywhere that data’s been through meticulous monitoring of data lineage. In this, it even goes above and beyond AI-driven behavioural pattern searching, as important data often contains no recognisable pattern. So, if a disgruntled employee copy-and-pastes a bit of source code to their personal GitHub prior to leaving the company, evolved DLP tools can catch that. Quite a big difference from the low-horsepower reputation that got it booted from Gartner’s Magic Quadrant four years ago.

The Data Loss Prevention landscape is changing, and the legacy of DLP lives on. Perhaps better for its phoenix-like rebirth, its elements have been adopted and consumed in multiple offerings and improved in pure-play DLP solutions ever since.

While no one likes a wake-up call, it’s safe to say this one did the Data Loss Prevention category some good.

ShareTweet
Previous Post

It’s Time to Approach The Cybersecurity Skills Gap Differently

Next Post

Cato Networks: Challenger in Gartner Magic Quadrant for Single-Vendor SASE

Recent News

Check Point Expands MSP Platform with AI Security Capabilities and Unified Bundles

From Playbooks to Adaptive Workflows: How MSSPs Are Evolving Security Operations with Agentic AI

June 15, 2026
Nagomi Control Brings CTEM Into Action

2 in 5 Organisations Experienced Cyber Incidents Tied to Suppliers in Past Year

June 12, 2026
Certes Research Warns Legacy Systems Are Biggest Barrier to Quantum Security Readiness

KnowBe4 Expands Gamified Training Library With Launch of “Spot the Vish” Game

June 12, 2026
Swan Song For Infosec’s Most Gripping Awareness Training Series: The Inside Man Goes Out With A Star-Studded Bang

Swan Song For Infosec’s Most Gripping Awareness Training Series: The Inside Man Goes Out With A Star-Studded Bang

June 12, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol