SAP data encryption and tokenisation solutions
Thales has partnered with SAP to offer robust data security and external encryption key management for on-premises SAP HANA databases and SAP applications running in the public and private clouds
Software from SAP represents a core operational foundation for many of the world’s largest enterprises, powering such core applications as enterprise resource planning, data warehousing, materials management and more.
However, as workloads and applications migrate to the cloud, traditional data centre perimeter security measures are no longer sufficient to protect this sensitive data. A more secure approach is to encrypt mission critical and private sensitive data and to maintain data sovereignty through external encryption
key management and ‘Bring Your Own Keys’ deployment strategies.
Join our presenters – Dr. Wasif Gilani, Head of SAP Data Custodian, and Alex Hanway, Business Development Director at Thales, to learn how regulated financial services enterprises can protect sensitive data and gain compliance relief at the same time.
Thales and SAP have established a co-innovation partnership to provide an integrated data protection solution for SAP S/4HANA and SAP ECC. Thales CipherTrust Tokenisation is the first SAP-certified tokenisation solution available to SAP customers that can be used to secure sensitive data.
Thales' CipherTrust Tokenisation in the SAP Data Custodian was developed by both organisations through SAP's Co-Innovation Lab, ensuring the security of sensitive data at the most fundamental levels of the application.
With this joint solution, SAP customers can choose to tokenise specific fields and assign access policies that determine which users have access to sensitive data.
Thales and SAP now offer external, multi-cloud key lifecycle management for SAP applications. With the integration between SAP’s Data Custodian and the Thales CipherTrust Cloud Key Manager, organisations can seamlessly manage the encryption key lifecycle of SAP applications from the same pane of glass as their other cloud encryption implementations.
By adding CipherTrust Cloud Key Manager, highly regulated customers can externally root their encryption keys in in support of Bring Your Own Keys (BYOK) data security policies.
Request info Read the solution brief
CipherTrust Transparent Encryption for SAP HANA enables enterprises to run high-volume/high-value data for mission-critical real-time applications in a manner that can be trusted whether on-premises or in the cloud. The solution provides greater control with separation of duties and policies for SAP HANA data encryption, with minimal administration.
Request info Read the solution brief
On the surface, encrypting the database instance using SAP native encryption would appear to be sufficient to protect data at rest within the SAP HANA database. But, enterprises storing sensitive data in an SAP HANA database need to consider exactly where in and around the database sensitive data might reside -- even outside the direct control of the Database Administrators (DBAs). To give an example, an SAP HANA database might encounter an error causing it to send information with sensitive data into a trace file or an alert log.
Encryption key lifecycle management for BYOK, HYOK and cloud native keys
Quickly secure data in SAP HANA environments, while ensuring applications continue to deliver optimal performance