Thales Data Security Platform is designed to ensure that private and confidential data can be discovered easily and is strongly protected, in both online and offline environments across structured and unstructured data. It provides centralized policy and key management to simplify data security management.
Data Discovery and Classification
Thales CipherTrust Data Discovery and Classification helps your organization get complete visibility into your sensitive data with efficient data discovery, classification, and risk analysis across heterogeneous data stores – the cloud, big data, and traditional environments – in your enterprise. It provides you with a single pane of glass that allows you to get a clear understanding of what sensitive data you have, where it’s located, and its risks of exposure.
Data at Rest Encryption
Thales offers data-at-rest encryption solutions that deliver granular encryption, tokenization and role-based access control for structured and unstructured data residing in databases, applications, files, and storage containers. With proper encryption and centralized key management and a hardened root of trust, enterprises can ensure their master keys are protected and data remains secure wherever the data resides, in a physical data center, a private or public cloud, or in a third-party storage application.
Key Management
CipherTrust Manager
- CipherTrust Manager offers the industry leading enterprise key management solution, enabling organizations to centrally manage encryption keys, provide granular access control and configure security policies. It manages key lifecycle tasks including generation, rotation, destruction, import and export, provides role-based access control to keys and policies, supports robust auditing and reporting, and offers developer friendly REST API.
CipherTrust Cloud Key Manager
- CipherTrust Cloud Key Manager from Thales combines support for cloud provider BYOK APIs, cloud key management automation, and key usage logging and reporting, to provide cloud consumers with a cloud key management service that delivers strong controls over encryption key life cycles for data encrypted by cloud services. A growing number of cloud providers offer “Bring Your Own Key” (BYOK) services. BYOK enables customer-controlled cloud key management. The challenge of BYOK and cloud key management depends on the number of clouds and keys to be managed or brought to the cloud.
Enterprise Key Management
- Key Management Interoperability Protocol (KMIP), maintained by OASIS, defines the standard protocol for any key management server to communicate with clients (e.g. storage devices, databases) that utilize the keys for embedded encryption. KMIP improves interoperability for key life-cycle management between encryption systems and enterprise applications.
Hardware Security Module (HSM)
Payshield HSM
- PayShield 10K, the fifth generation of payment HSMs from Thales, delivers a suite of payment security functionality proven in critical environments including transaction processing, sensitive data protection, payment credential issuing, mobile card acceptance and payment tokenization. PayShield 10K can be used throughout the global payment ecosystem by issuers, service providers, acquirers, processors and payment networks.
Luna Network HSM
- Thales Luna Network HSM is a network-attached HSM protecting encryption keys used by applications in on-premises, virtual, and cloud environments. Thales Luna Network HSMs are both the fastest and most secure HSMs on the market. Increase your return on investment by allowing multiple applications or business units to share a common HSM platform.
ProtectServer HSM
- Thales ProtectServer HSMs offer a unique level of flexibility for application developers to create their own firmware and execute it within the secure confines of the HSM. Known as functionality modules, the toolkits provide a comprehensive facility to develop and deploy custom firmware.
High Speed Network Encryptor
Thales’s comprehensive network traffic encryption solutions use Layer 2 and 3 encryption to ensure security without compromise. Ensuring maximum throughput with minimal latency, Thales Network Encryptors allow customers to better protect data, video, voice, and metadata from eavesdropping, surveillance, and overt and covert interception—all at an affordable cost and without performance compromise.
Secure File Sharing
Thales SureDrop® enables any organization to participate in secure file sharing and collaboration across the Internet. Thales SureDrop allows people to store, share and sync all their files in the Cloud or on premises with an enterprise-class solution and defense-grade security.