Toolbox
Disk Encryption: How to Buy FDE
Characteristics of an effective FDE solution and critical selection criteria, according to experts.
October 21, 2009 —
Also see the companion article Full Disk Encryption Dos and Don'ts.
Characteristics of an Effective FDE (Full Disk Encryption) Solution
According to IDC, a sister company to CSO's publisher, an optimal FDE system should have the following characteristics:
- Centrally managed and controlled
- Rapidly deployed and maintained
- Policy driven
- Completely transparent to the user
- Easily supported by help desk or IT personnel
- Provide support for removable media
- Expandable, allowing new managed encryption applications to be added, as needed
- Extensible, enabling organizations to add managed encryption to existing enterprise applications
Selection Criteria
According to a presentation by Eric Leighninger, chief security architect at Allstate Insurance, selection criteria he used when choosing an FDE system included:
- Strong key management
- Storage of encrypted keys separate from encrypted data
- Controlled views to keying material (separation of duties)
- Key recovery (onsite, offsite and disaster recovery)
- Interoperability with enterprise software
- Support for removable media
- Low performance degradation
- Background encryption processing capability
- Fault tolerance (power outages or user shutdown does not affect encryption process)
- Support for suspend and hibernation states
- Compliance with FIPS 140-2, a U.S. government computer security standard
FDE
Log Management in a Cyber World
With so many potential cyber villains poking around the gates, enterprises must have strong protections and pristine visibility into what's happening on the network. Explore the increasing importance of log management as cybercrime and other malicious threats grow.
Comparing Research in Motion and Microsoft Mobile Solutions
Organizations must look carefully at the requirements of mobile devices and accompanying middleware that can increase cost, complexity and administrative overhead. This white paper provides an independent analysis and detailed comparison of RIM and Microsoft's mobile solution.



