The most common approach to isolating and encrypting data-in-motion is traditionally performed in the network infrastructure and by devices. Instead, Centrify DirectSecure is a software solution that secures sensitive information by isolating and protecting cross-platform systems and by enabling end-to-end encryption of data-in-motion without the need for costly and complex network devices. Here are the top reasons why Centrify customers have been asking for the DirectSecure solution.
Protect Confidential Information and Intellectual Property
- Only trusted machines can access key systems without requiring changes to existing applications or network topology.
- Untrusted machines have no visibility or access to trusted systems on the network.
- Data on the network is (optionally) encrypted to prevent access by any user or machine that does not have appropriate permissions.
Isolate and Protect Servers (Such As Credit Card Systems)
- Reduces audit expenses by limiting the number of servers "in scope."
- Enforces tiered network access controls by further isolating specific logical groups of systems.
- Leverages existing Active Directory infrastructure and native IPsec, making it both cost effective and easy to deploy.
- Eliminates expense and ongoing management costs of buying and maintaining traditional approaches, including VLANs, firewalls and routers.
Secure Distributed Networks and Data Centers
- Unlike network appliance-based methods, DirectSecure uses a host-based software approach, ensuring security policies are enforced regardless of location. DirectSecure is thus ideal for dynamic IT environments that include distributed networks, virtualized platforms and cloud computing.
- Logically isolate distributed systems to their own "trusted virtual network" regardless of the current physical network topology or system location.
- Establish trusted identification of systems independent of either physical or virtual compute platform instead of relying on network (IP or MAC) address.
Part of an Integrated Solution for Unified Identity Services
The Centrify Suite provides Unified Identity Services for workstations, on-premise and cloud-based servers across UNIX, Linux, Windows and Mac OS by leveraging your existing identity infrastructure investment — Microsoft Active Directory. With Centrify Suite organizations gain control and establish visibility across heterogeneous systems through integrated authentication and single sign-on, policy management and authorization, auditing and analytics and server isolation and encryption. Built as a single architecture, Centrify Suite — consisting of DirectControl, DirectAuthorize, DirectAudit, DirectSecure and DirectManage — allows organizations to improve operational efficiency and strengthen security and compliance by consolidating islands of identity and centrally managing privilege and policy.