The Security Centre

The Security Centre

Laptop Encryption Software

Lose a laptop and your confidential data is exposed to anyone. Unless your data is encrypted it is incredibly simple for anyone to view, remove and share ANY of the data that was stored on the laptop - even if the password is unknown you are at risk.

What if your laptop contained VPN or remote access details? This exposes your entire corporate network to unauthorised access.   Dont become a statistic.  US law now says that that if travelling to the USA, Customs can search your laptop or ANY electronic device...

Installed on more than 4.5 Million computers worldwide, DriveCrypt provides companies of all sizes with a centrally managed, secure, automatic full disk encryption solution.

DriveCrypt is deployed in minutes, and provides total protection for loss or theft of data stored on PCs, Servers, Laptops, and Removable media such as USB

  • DriveCrypt Enterprise has now been awarded FIPS accreditation, and is currently undergoing other certification.
  • In the event of loss or theft of a PC / laptop / USB stick / removable media device all data is 100% unreadable.
  • Pre-boot authentication.  Supports hardware authentication tokens such as Rainbow and Aladdin.
  • Installed in literally minutes, enterprise wide!
  • Real-time, secure, on the fly, 256bit AES sector level, FULL disk encryption.
  • Encrypts not only hard disks but removable media such as USB sticks, floppy, JAZ, Zip drives etc.  Works with SafeStick hardware encrypted USB devices.
  • Full integration with Microsoft Active Directory.
  • Over 4.5 million installations worldwide.  Satisfied customers include New Scotland Yard, Hitachi, Compaq, Alcatel, Shell, PriceWaterHouse Coopers, Volkswagen and many more...
  • Supports Windows NT, 2000, XP, 2003, and Vista (currently all 32bit versions).
  • Enterprise console provides central deployment, management and reporting.
  • Virtually zero performance impact on encrypted PC's and laptops.
  • Works seamlessly with DeviceLock Enterprise to restrict the use of all removable devices and data access.
  • Completely transparent to the end user. NO TRAINING REQUIRED.  Use the PC / laptop as normal.
  • Full "hibernation" support for laptops.
  • Single sign-on capability.
  • Remote user password recovery - if a user forgets their password, company administrators can provide a challenge / response password change remotely.
  • Remote disaster recovery capability. Authorised system administrators can decrypt / recover data in the event of a laptop failure.
  • Comprehensive UK based technical support for all customers.

For a quote please email chas@newtonit.co.uk and please let us know on the number of laptops you require encrypting.

Management Console
 

What is DriveCrypt Enterprise ?

DriveCrypt Enterprise lets you encrypt the hard disks of all of your company laptops, PC's and media used in them such as USB sticks, floppy disks, zip disks etc.

DriveCrypt provides 100% FULL DISK encryption.  All files, folders and sectors are encrypted - nothing is left to chance or user error.

Why do I need to encrypt my PC's and Laptops ?

Thousands of laptops (and USB sticks) are lost or stolen each year (10,000 alone in London taxis!). 

Unless your data is encrypted it is incredibly simple for anyone to view, remove and share ANY of the data that was stored on the laptop.  This is possible even though the Administrator or Root password may not be known...

There have been many high profile, embarrassing instances recently where company employee details, patient details, bank details, customer databases, credit card details and other confidential information has been retrieved in this way and either distributed or used for criminal purposes.

What kind of Encryption does DriveCrypt use?

DriveCrypt uses an AES 256-bit encryption cipher which currently has not been broken.  Experts think that this is very strong, and it should be good for at least several decades.

Technically speaking, DriveCrypt uses the Rijndael block cipher. Rijndael was also chosen for the "Advanced Encryption Standard" (AES) by the U.S. government .

DriveCrypt Enterprise has been awarded FIPS accreditation.

How is DriveCrypt Enterprise deployed?

Using a simple, web based configuration utility, DriveCrypt "finds" PC's / laptops on your network and can an install (and your chosen policy for passwords etc) can be pushed/pulled to the target device.

How long does deployment take ?

Once you have selected a target machine(s), and have told the console to deploy encryption, a small piece of software is remotely installed onto the target machine and encryption begins.

Encryptions is seamless, happens behind the scenes and a user will not even notice it running.

Typically it can take between 1 and 3 hours for the machine to be fully encrypted (depending on the size of disk / data) but the machine can be shut down or restarted at any time.   Encryption will continue where it left off until complete.

Does the user notice any changes ?

When deployment is complete, and when the PC / laptop is restarted, the user will be presented with a pre-boot logon screen.  Here they enter their username and password and booting continues as normal.

Everything else is 100% transparent to the user.

What happens if the user forgets their Password?

The user can contact their IT department (or the people in charge of the DriveCrypt deployment).

On successful completion of a pre-selected challenge / response question, the DriveCrypt Management console is able to generate a password to enable the user access.

What happens if the laptop / PC is lost or stolen?

The machine is unusable and no data can be recovered by any unauthorised persons.

Can I encrypt USB sticks and other removable media?

Yes.  DriveCrypt provides full disk encryption for USB sticks and other removable media.

However, as part of your policy we strongly recommend that you lock down access to all removable media also. You should stop people being able to copy data to USB sticks in the first place and only authorise specific users / devices which are approved and encrypted.

We recommend DeviceLock Enterprise for controlling device access company wide.

What is single sign on ?

You can configure DriveCrypt Enterprise to utilise single sign on. 

Users can have a single username and password which they enter at the pre-boot screen, which will start the PC / laptop and can also log them onto Windows / the network as required.

How do I administer the System?

Using the Management console.  There is nothing to manage on the clients.

What happens on catastrophic failure of the laptop / PC ?

If the laptop / PC hardware fails for any reason it is possible for authorised members of the IT / Deployment team to de-encrypt the hard disk to remove the data.

Does DriveCrypt support Windows Vista / XP / Windows 2000?

Yes.  Read the datasheet for a list of all supported operating systems.

Why should a consumer buy a third party encryption product such as DriveCrypt Enterprise when they get encryption with Vista?

Only two specific, high end versions of Vista (Ultimate and Enterprise) feature the encryption module (Bitlocker) – plus not many Enterprise customers have deployed Vista as yet - most still run Windows 2000 or XP.

DriveCrypt works with a wide range of OS’s – including Windows XP and 2000, offer much stronger protection, much higher encryption techniques, and feature Enterprise deployment and management tools.

Unlike Microsoft products they do not require special chips to be present on the computer (TPM) and our software can be installed at any stage.