Maintain data privacy in shared storage environments with encrypted data isolation.

For many organizations, the prospect of leveraging elastic, pay-as-you-go services for housing ever-expanding volumes of files and digital assets represents a significant opportunity. However, meeting regulatory mandates and mitigating security risks such as data leakage, privacy and cloud provider misconfiguration in multi-tenant cloud storage servers present a considerable obstacle.

SafeNet offers a range of solutions that enable organizations to leverage the business benefits of cloud services, without making any compromises in security. With SafeNet ProtectV™Volume, organizations can leverage cloud storage for their most sensitive assets. ProtectV™Volume enables organizations to encrypt entire storage volumes in remote cloud deployments, ensuring data is isolated and secured even in shared, multi-tenant environments.

ProtectV™Volume addresses the key requirements needed to secure cloud storage:

  • Data isolation. With ProtectV™Volume, security teams can logically separate volumes that hold sensitive data, so, for example, a cloud provider’s administrator can’t abuse their super-user privileges and a user with access to one volume can’t “jump” partitions and gain access to another group’s containers.
  • Compliant key management. ProtectV™Volume offers the key management capabilities administrators need to support the logical segmentation data, users, and groups, and enforce the policies required to ensure the confidentiality and integrity of data, so they can adhere to internal policies and external compliance mandates in the near and long term.
  • Granular authentication. ProtectV™Volume also delivers strong pre-launch authentication, including password-based protection at the user level, to control which resources can be accessed, when, and by whom.
  • Multi-tenant protection. With its comprehensive, robust capabilities, organizations can ensure that, even in shared, multi-tenant cloud environments, administrators can have the visibility and controls they need to safeguard sensitive assets.
  • Separation of duties. ProtectV™Volume enables security teams to require multiple administrators to conduct critical administrative tasks, for example policy changes, key export, and more, to ensure that any one administrator can’t abuse his or her privileges.

In addition, ProtectV™Volume offers support for strong encryption algorithms, including FIPS-approved AES 256 and 3DES, and it delivers the reporting, auditing, and logging capabilities required by PCI and many other regulatory mandates for data privacy and protection.

Security Features

  • Multiple cloud storage options:
    • ProtectV™Volume for storage servers
    • NetApp storage support
    • ProtectFile customer-based encryption
  • FIPS 140-2 Level 2 Security Certified Solution
  • Centralized Policy and NIST 800-57 Key Lifecycle Management