sb-au logo
Story image

Gemalto introduces on-prem encryption key solution for 'highly regulated' organisations

22 Mar 2017

Gemalto has introduced the latest in its encryption key offerings with the launch of ‘Hold Your Own Key (HYOK)’ functionality for Microsoft Azure Information Protection customers.

The HYOK, part of Gemalto’s SafeNet Luna Hardware Security Modules (HSMs), provides highly regulated organisations a way to manage, own and store their encryption keys in on-premise HSMs. 

They can also securely share data with complete control over their keys, which the company says will allow enterprises to align data protection policies and business processes without comprising data security.

"Organisations using Microsoft Azure Information Protection services now have access to the convenient security features they're used to, without having to hand over ownership and control of their encryption keys to their cloud provider," comments Todd Moore, SVP of Encryption Products at Gemalto.

HYOK functionality can also be tied to Microsoft’s Active Directory Rights Management Services (AD RMS). The AD RMS can be used to form protection policies for ‘top secret’ data and Azure RMS protection policies for sensitive data.

Azure Information Protection can enable secure internal and external collaboration. The SafeNet Luna HSM integration with the Azure Information Protection HYOK feature requires no change to the user experience or deployments.

Organisations can also control access to sensitive data by defining protection policies and use rights while all information protection features such as document tracking and revocation are also preserved.

"Combining the SafeNet Luna HSM with the Azure Information Protection's HYOK functionality, customers can continue to deploy customized data protection controls without compromising security or operational transparency of a user's applications,” Moore says.

Dan Plastina, Microsoft’s partner director of Information and Threat Protection, says that the partnership offers specialised and integrated protection.

"Microsoft Azure Information Protection enables selective use of on-premises AD RMS services in a Hold-Your-Own-Key configuration (HYOK) for customers with deeply regulated data. Gemalto's SafeNet Luna HSMs seamlessly integrate with this hybrid Azure Information Protection configuration providing customers the full spectrum of specialised protection they need,” he says.

Story image
Exabeam and Code42 partner up to launch insider threat solution
The solution will give customers a fuller picture of their environment, and will leverage automated incident response to obstruct insider threat before data loss occurs.More
Story image
Metallic adds data management and GDPR compliance
Now GDPR compliant, additions to the portfolio include eDiscovery features and support for Microsoft Hyper-V and Azure Blob and File storage.More
Story image
Remote staff overestimating knowledge of cybersecurity basics
‘Unconscious incompetence’ is one of the most difficult issues to identify and solve with security awareness training.More
Story image
Check Point acquires Odo Security to bolster remote security offering
The deal will integrate Odo’s remote access software with Check Point’s Inifinity architecture, bolstering the latter company’s remote security capabilities in a time where working and learning from home has become the norm, and looks to largely remain that way in the near future.More
Story image
Fortinet SOARs to new heights of protection on the wings of AI & automation
Jon McGettigan, Fortinet A/NZ Regional Director, talks about SOAR (security orchestration, automation and response) and explains that effective SOAR starts with your security policy.More
Story image
Video: 10 Minute IT Jams - The benefits of converged cloud security
Today, Techday speaks to Forcepoint senior sales engineer and solutions architect Matthew Bant, who discusses the benefits of a converged cloud security model, and the pandemic's role in complicating the security stack in organisations around the world.More