Archive for December, 2009
Thursday, December 17th, 2009
FOR IMMEDIATE RELEASE
Protegrity Corporation, the leading provider of Data Security Management solutions, today announced the release of the Protegrity Data Protection System (DPS) 5.1, the newest version of Protegrity’s award-winning comprehensive data protection platform.
The enhanced, integrated tokenization solution included in DPS 5.1 provides strong protection for payment card data, personally identifiable information, and a range of other sensitive data. DPS tokenization is available now, and it can be deployed with minimal changes to the target environment.
This advanced on-site solution gives customers the ability to leverage their current transaction processing services or choose a different transaction processor regardless of that service’s tokenization capabilities. It also reduces the inevitable risks resulting from outsourcing critical data security functions such as tokenization.
DPS 5.1 was engineered to fully support enterprises in their drive to move forward to proactive risk-adjusted data security strategies. DPS 5.1 tokenization complements the other data protection technologies that comprise the DPS platform, including strong encryption, to deliver an end-to-end data protection solution optimized for demanding enterprise requirements.
“We believe that using risk-adjusted methods to determine which technologies are best suited to particular types of data is the most effective way to enhance an organization’s security profile and achieve the right balance between important business, operational, and security requirements,” says Paul Giardina, Protegrity CEO. ”DPS 5.1 demonstrates our commitment to supporting practical, business-process based data security solutions.”
New and enhanced features in DPS 5.1 include:
- Transparent tokenization: Eases deployment with database plug-ins and eliminates the need to alter applications for use with tokens. Transparent tokenization generates a token and sends the original sensitive value to the token server automatically, with no need to utilize APIs or perform complex coding. Transparent tokenization also increases data security while reducing data processing time and, depending on the environment, reducing the number of applications within PCI scope.
- Bulk tokenization: Enables secure simultaneous batch processing of multiple data values and tokens, resulting in dramatically improved processing speed and enhanced information availability.
- Configurable tokens: Protegrity’s tokenization technology enables businesses to create custom token values for virtually any data protection need.
Tokenization removes sensitive data from the information flow at the earliest possible point in the process, replacing it with a token that acts as an alias for the protected data. The encrypted original data is stored in a separate location and can be accessed only by authorized applications and users.
DPS 5.1 tokenization further protects data by storing it in a security-hardened, high-availability server cluster that meets data protection security standards. The token servers scale to support very high demand environments. Built-in key rotation for the encrypted data values simplifies data security management chores.
Along with tokenization, DPS 5.1 provides a complete set of data protection technologies including strong encryption, format controlling encryption, hashing, masking, and data monitoring to lock down sensitive data even in the most complex and demanding business environments.
Protegrity’s highly flexible DPS platform enables all or any of these technologies to be deployed when and as needed, in accordance with businesses’ unique risk profiles, enabling organizations to quickly address changes in data risk levels and new threat vectors.
Wednesday, December 9th, 2009
Protegrity’s DPS 5.0 has been shortlisted for the 2010 SC Awards U.S. in the category of Best Enterprise Security Solution.
Monday, December 7th, 2009
DBA 2-4 3:15-4:15 Gramercy Park “Managing Risk: Understanding the New Options in Data Protection”
Sometimes data security and business processes do not play well with each other. The situation becomes even uglier when regulatory compliance is added into the mix. Too often, enterprises feel that they have to choose between data security, compliance and business needs. This session will detail the latest methodologies and technologies such as Type Preserving Encryption, Data Masking, Tokenization and Database Activity Monitoring to protect data in an Oracle environment with a focus on solutions designed specifically to support critical business processes. Attendees will also learn how to conduct a risk-based analysis to determine the scenarios where these new technologies are best suited in their environments. We’ll also explore new ways to measure and manage risk and compliance. This presentation also includes anonymous case studies that detail risk management security plans in an Oracle environment.
Ulf Mattsson created the initial architecture of Protegrity’s database security technology, working closely with Oracle R&D, creating several key patents in the area of database security. His extensive IT and security industry experience includes 20 years with IBM as a manager of software development, and a consulting resource to IBM’s Research and Development organization in the areas of IT Architecture and IT Security. Ulf holds a degree in electrical engineering from Polhem University, a degree in Finance from University of Stockholm and a master’s degree in physics from Chalmers University of Technology.
Thursday, December 3rd, 2009
Skimmers, eavesdropping, compromised POS devices, code vulnerabilities and leakage … don’t count on compliance with PCI DSS to protect your data from these threats.
The dirty little secret of data security: PCI is nothing more than a Band-Aid intended to shield card issuers. Going no further than the basic security protections any reasonably savvy person would likely implement on their home network, PCI DSS does little to protect merchants, payment processors and cardholders against sophisticated attacks that are becoming more common as black market businesses in stolen data flourish.
If you’d prefer to secure data as opposed to simply achieving compliance with the PCI guidelines, please join Bill Murray, chairman of the Governance and Professional Practices committees of (ISC)2 (The International Information Systems Security Certification Consortium, Inc) and Ulf Mattsson, CTO of Data Security Management company Protegrity, for a free, interactive webinar focused on implementing cost-effective comprehensive data security using a risk based model.
Topics we’ll discuss in this webinar include:
* Quantifying data risk factors
* Developing a risk adjusted methodology for securing data and evaluating security solutions
* New options in end-to-end data protections
* Case studies: protecting PII and PCI data throughout its entire lifecycle
* An overview of current/evolving data security risks with guidance on the most effective protections against prevalent internal and external attacks
* Protecting data in production environments, test environments and outsourced/offshore environments
* Protecting data in virtualized environments and cloud environments
Don’t miss this opportunity to explore the methods that enable organizations to achieve the right balance between cost, performance, usability, compliance demands and real-world security needs.
Wednesday, December 16, 2009 12:00 PM – 1:00 PM EST




Facebook
Twitter
LinkedIn
RSS
