Overview Key Features

The Simple Encryption Platform (SEP) provides the tools that IT managers need to deploy enterprise-wide security policies, customize the user environment, and monitor and control information security across the whole organization. The SEP can be run as a managed service, at a hosted location or as part of the company's existing IT infrastructure.

The Simple Encryption Platform comprises the SEP server and the SEP Management Console. The client applications installed on the user's end-point device continually communicate with the server to automatically manage licenses, encryption keys, password, and policies. The console provides a central point from which all client behaviour can be managed through the SEP's rich policy system, enabling an administrator to deploy secure messaging and encryption in a controlled way. The server also connects to central directories such as Active Directory and Lotus Domino to use user / group settings and handle user authentication

Central Management

The SEP Management Console provides an easy way to deploy security policies and monitor security to ensure compliance. IT managers can centrally define, enforce and monitor information policies across the organization from a single console. Particular policies can be deployed for all users to ensure consistency, or policies can be customized for groups within the organization.

License Management

The Simple Encryption Platform has a built-in license management system that automatically takes care of assigning licenses to users, something that has traditionally been a hassle for IT managers. License allocation can be aligned to changes made in Active Directory, so that the system automatically assigns licenses to new users and removes licenses from users that leave the company. The license interface makes it easy for IT managers to transfer licenses between users with a simple click, and to report on license usage and availability.

Password management

PLACEHOLDER

Password policies can be defined to govern how users access secured data, the groups that users can define passwords for, and the strength that passwords need to comply with. Users can use Windows authentication or their SEP Password to access all encrypted data. The SEP management console will manage user rights and access to secured data using existing infrastructure eg. Active Directory.

Data Content Reporting & Auditing

PLACEHOLDER

With the SEP, IT managers have the ability to track all user actions with comprehensive reporting and auditing tools. Reports provide valuable management information to audit for possible non-compliance or data leakage. For example reports can include inventory listings of all secured USB flash drives in use in the organization with a real time analysis of the data content and data movement for each device; or usage of portable devices to audit for possible illegal activity or data leakage.

Automatic encryption key management

PLACEHOLDER

Key management has traditionally required significant time and resources to install and manage the appropriate infrastructure, buy and renew keys. With the SEP, the necessary key management infrastructure is included and encryption keys are handled automatically. The SEP also manages user licenses, policies and passwords. As a result the system is incredibly easy to manage.

One user, many computers

PLACEHOLDER

With the SEP server, users can use the encryption software on any computer, laptop, or PDA that has the client application installed. The server communicates with the client to synchronize the Global Objects that hold information about encryption keys, passwords, policies, licenses etc. Regardless of how many policies, templates and encryption keys an end user has, the system can easily synchronize this data to any machine connected to the SEP server. A user can have several machines with the software installed and use the software on all machines that share the same central profile.

Same document, many copies

PLACEHOLDER

With the SEP, secured documents can be copied, moved, emailed or backed up - all copies will have the same security wherever they are located. When a document is secured it will be assigned a unique Global Object ID that is stored centrally. Whenever the secured document is copied the Global Object ID will reference the same encryption key and access list. If any changes are made to the access list, the changes will be applied to all copies that exist.

Modular approach

The design of the Simple Encryption Platform gives companies the flexibility to take a phased approach to deploying encryption solution. Each Cryptzone solution is designed as a module that can be deployed individually with the SEP, or in parallel with other modules. With the SEP, you choose when and if to deploy each module: Secured eFile, Secured eCollaboration, Secured eMail, Secured eDevice, Secured eUSB, or Secured eDisk Protect.

Role based administration

The Simple Encryption Platform provides a flexible multi-tiered administration system. Admin roles can be defined with different permissions to allow individuals or groups to undertake specific administrative tasks. For example, a user assigned the Help Desk role will be able to do Help Desk administration tasks only. The Master Administrator role has full administration rights, while someone assigned the Administrator role will have more limited administrative rights.

Seamless integration with existing infrastructure

The Simple Encryption Platform leverages existing directory applications such as Active Directory or LDAP functions, using a one-way synchronization process to centrally administer security policies for user groups.