Encryption Key Management
The Challenge
With the increase for the need to encrypt highly sensitive information, encryption keys become more prevalent and hence difficult to manage, secure and organize. These encryption keys are commonly embedded in applications which could lead to the misuse of the keys which includes data tampering, leakage and eventually to financial losses.
Some common security challenges organizations face starts from the following:

Figure 1: Security Challenges
This, in turn, leads to some business challenges as highlighted below:
1. Increases operational overhead
- System’s stability due to code modifications
- Long maintenance downtimes
- Complex distribution of new keys
2. Risk of disabling LOB applications
The Solution
The solution addresses and solves the security, audit and manageability challenges involved in application passwords embedded in application code, scripts or configuration files. This is accomplished with a secure repository for all application passwords where passwords can be managed and usages of these passwords are logged centrally.

Figure 2: Central Secure Repository
- Key protection and online rotation with no application downtime
- Unified solution for both hard-coded passwords and keys
- Business continuity is ensured by the inherent resiliency and high availability of the solution
- Enables encryption keys to be centrally secured and managed on distributed networks like department stores and points-of-sale
- Supports a wide number of platforms as well as all the common programming languages such as Java, C/C++, .NET and Visual-Basic
- Integration with enterprise infrastructure, including LDAP and IAM integration for user management, authentication products (2-factor, RSA, Radius, PKI, LDAP and more), monitoring and SIEM integration using SNMP, Syslog and SMTP, built-in HA/DR architecture and much more
- Built-in and customized reports help customers stay compliant with extensive audit and access reports and policy enforcement reports that help pin-point encryption keys that have not been rotated


