CipherTrust Data Protection Gateway

Data Protection Gateway (DPG) protects RESTful web services and microservices without the need for Developers to change code.

CDPG

Stopwatch icon

No Dev Involvement

  • Transparent data protection for JSON payloads
  • < 1 minute to close vulnerability gaps for sensitive data
  • Keep on top of the latest security without creating major projects
Access Control icon

Increase Dev Capacity

  • Reduce the drag on the Dev team
  • Pass responsibility for data protection to the security team via simplified APIs
DevOps in Sync icon

Separation of Duties

  • Data Security admins control the what, the how, and the who via centrally managed policies

DPG supports tokenization, encryption and data generalization so that organizations can optimize data protection for each piece of data to decrease the risk of sensitive data being leaked. DPG tokenization, encryption and data generalization support format preservation to fit each organization’s current schema so that organizations don’t have to make changes in their environment.

Centralized Management

CipherTrust Manager

Benefits for each role

With DPG, you can have GOOD + FAST + CHEAP, right now.

  • More revenue, due to increased Dev capacity
  • More security, due to < 1 minute to close vulnerability gaps
  • More innovation, due to not increasing the backlog

    Close vulnerability gaps in < minute, Roadmap is respected (because there are no data protection fire drills taking Devs off revenue-generating projects).

    Devs can remain focused on revenue-generating projects because they are not involved in updating data protection.

    No downtime or fire drills required to update data protection.

    Ultra secure (staying on top of your security posture by closing vulnerability gaps in < minute), Roadmap is respected (because there are no data protection fire drills taking Devs off revenue-generating projects).

    Visibility into current security posture (single pane of glass, centralized-management, policy-based), No code change to make updates (removes dependency on DevOps for updates).

    Reputation is protected, audits are passed, in compliance, does not add to technical debt.

    DPG supports Data Masking and Redaction to reveal sensitive data on a need-to-know basis. Static Data Masking masks the data that doesn’t need to be accessed, revealing only the data relevant to the group – this is especially valuable for data analysts (pseudonymization) and customer service (no calls to Protect/Reveal). Dynamic Data Masking is preferred when users with different access levels will be accessing the data and have rights to access different parts of the data. Redaction provides an absolute mask that shows a field with redacted data or hides the field.

    CipherTrust Data Protection Gateway

    CipherTrust Data Protection Gateway

    Operating transparently to all entities on the network, DPG interprets RESTful data and performs protection operations based on profiles defined centrally in CipherTrust Manager. DPG is deployed as a container and is fully compatible with Kubernetes orchestration systems. DPG can also be deployed as a standalone container for development and testing use cases as well as legacy production deployments.