PGP Whole Disk Encryption from Symantec provides organizations with comprehensive, high performance full disk encryption for all data (user files, swap files, system files, hidden files, etc.) on desktops, laptops, and removable media. The encrypted data is protected from unauthorized access, providing strong security for intellectual property, customer and partner data. Protected systems can be centrally managed by PGP Universal Server simplifying deployment, policy creation and distribution and reporting.
CST is one of the first UK partners to achieve the covered Symantec Encryption Specialisation along with Symantec Enterprise Security we are well placed to compare and contrast the solutions, the features and how if used together they can create a posture of 'security in-depth'.
Opinion
Symantec already had some strong encryption solutions and have cemented this position with the purchase of PGP. The vision with these solutions to provide complete and flexible end to end encryption, be it on hard drives, removable media, email or data at rest in the corporate LAN. As well as excellent encryption, PGP also additionally helps with the associated headache of key management. The PGP universal server as its name suggests, is a single management platform for the administration, control and support of the encryption keys across the product range.
This all bodes well for the organisation that may want a simple encryption solution for laptops now for instance, but in time may wish to scale to a complete Data Loss Prevention (DLP) style strategy.
Features & Benefits
Key Features
Centralized management–Automatic, centralized policy enforcement with single web-based management console for all clients.
Easy passphrase and machine recovery–Local self-recovery, one-time-use token and other recovery options.
Built PGP strong–High performance, optimized, and strong encryption, built with PGP Hybrid Cryptographic Optimizer (HCO) technology. FIPS 140-2 validated, CAPS-approved, DIPCOG-approved, CC EAL 4+ pending.
User-friendly–Background encryption with throttle capabilities. Fewer passwords to remember with support for Windows single sign-on
Key Benefits
Comprehensive multi-platform coverage - Provides consistent protection across enterprise desktops and servers
Rapid deployment – Deploys with little user disruption and with options for silent installation
Part of a long term enterprise security strategy – Add protection to email, file and folder with the same client. Supports integration with partner technology from Guidance Software and Intel, among others