Wednesday, January 21, 2009

Data Conversion Data Security

A book publishing software implementation project requires that you protect your data conversion data files against theft.

Our company; Kensai International, protectes a client's data by;

1. Backing up the data to hardware encrypted hard-drives. If the computer is turned off or the drive is unplugged the data cannot be accessed until the the drive is reactivated with a password. Even if the drive is stolen and taken apart the data on the drive is protected as the encryption service is built into the drive controller. Which drives do we use? Maxtor Black Armor hard drives. Rugged, reliable and highly secure.

2. PGP is used to create encrypted virtual-disk partitions that can remain locked even when the whole disk is unlocked and automatically revert to the locked state after a specified idle time. Files on the virtual disk are always encrypted (while the disk is unlocked, PGP simply encrypts and decrypts on the fly).

This means that if a hacker managed to breach our hardware firewall and our software firewall they still can't access the publisher's files stored in the locked PGP encrypted-disk partition.

3. Once the client is live and the client has signed off on the project completion all copies of client data files are destroyed using PGP Shredder.

"PGP Shredder completely destroys files and folders so that even file recovery software cannot recover them. Deleting a file using the Windows Recycle Bin does not actually delete it; it sits on the drive and eventually gets overwritten. Until then, it is trivial for an attacker to recover that file. PGP Shredder, in contrast, immediately overwrites files multiple times. This is so effective that even sophisticated disk recovery software cannot recover these files."

If a client wants us to send them a copy of the data files that we worked on; before we destroy our copy, we provide it on a hardware encrypted Black Armor Hard Drive.

FYI: Bertelsmann AG, the owners of Random House, uses the PGP® Encryption Platform to protect confidential data in emails as well as on laptops and file servers.

No comments: