Monday February 06 , 2012
Text Size
   

Encryption Key Management


The Challenge

With the increase for the need to encrypt highly sensitive information, encryption keys become more prevalent and hence difficult to manage, secure and organize. These encryption keys are commonly embedded in applications which could lead to the misuse of the keys which includes data tampering, leakage and eventually to financial losses.

Some common security challenges organizations face starts from the following:

slide1

Figure 1: Security Challenges

This, in turn, leads to some business challenges as highlighted below:


1. Increases operational overhead

  • System’s stability due to code modifications
  • Long maintenance downtimes
  • Complex distribution of new keys

2. Risk of disabling LOB applications


The Solution

The solution addresses and solves the security, audit and manageability challenges involved in application passwords embedded in application code, scripts or configuration files. This is accomplished with a secure repository for all application passwords where passwords can be managed and usages of these passwords are logged centrally.

Central_Secure_Repository

Figure 2: Central Secure Repository

The BenefitWhile there are several products for managing and protecting either hard-coded passwords or static encryption keys, our solution is the only unified solution which enables customer to be compliant by solving both problems in a single product
  • Key protection and online rotation with no application downtime
  • Unified solution for both hard-coded passwords and keys
  • Business continuity is ensured by the inherent resiliency and high availability of the solution
  • Enables encryption keys to be centrally secured and managed on distributed networks like department stores and points-of-sale
  • Supports a wide number of platforms as well as all the common programming languages such as Java, C/C++, .NET and Visual-Basic
  • Integration with enterprise infrastructure, including LDAP and IAM integration for user management, authentication products (2-factor, RSA, Radius, PKI, LDAP and more), monitoring and SIEM integration using SNMP, Syslog and SMTP, built-in HA/DR architecture and much more
  • Built-in and customized reports help customers stay compliant with extensive audit and access reports and policy enforcement reports that help pin-point encryption keys that have not been rotated

Services Offered

ImageServices Offered
Audit Services
Consulting Services
Enterprise Support
Forensics
Managed Security Services
Trainings Services

Industry Focus

ImageIndustry Focus
Education
Financial Institutions
Government Sectors
Healthcare
Manufacturing
Telcos

Be our Partner

ImagePartners Program

Quantiq offers this program to help channels capitalize on Quantiq's market leadership in distributing the best and proven IT Security solutions.