Symantec Endpoint Encryption provides advanced encryption for desktops, laptops, and removable storage devices. It offers scalable, enterprise-wide security that prevents unauthorised access by using strong access control and powerful encryption. Symantec Endpoint Encryption provides a central management console, enabling safe, central deployment and management of encryption to endpoints.
This edition enables businesses of all sizes to maximize the productivity benefits of using removable storage devices while minimizing the risks these devices pose to data security. It enables businesses to maximize the productivity benefits of using removable storage devices while minimizing the risks these devices pose to data security. It is designed to protect all data on USB, FireWire, Compact Flash, iPod, and other storage devices and media.
Comprehensive device and media support
Flexible, scalable key management and password recovery
Microsoft Active Directory Integrated Enterprise Management Console
Kiosk mode that allows access to large numbers of people without pre-registration
Symantec Endpoint Encryption — Full Disk Edition
This is a full disk encryption solution designed to protect all data on the hard drive of a Microsoft Windows–based machine. It allows administrators to encrypt the laptop's hard drive to ensure safe harbour and, more importantly, to prevent the exposure of sensitive data should a laptop be lost or stolen. Encryption is transparent to the end user and performed with minimal performance impact.
* Pre-boot password or Smart Card–based authentication grants only authorised individuals access to computer's data and supports Single Sign-On to the network domain
ent Console
* Flexible, scalable key management and password
Supports multiple users and administrators on individual machines
Provides extensive logging of status and activity of hard disk encryption application
Encrypts data "on-the-fly" and is transparent, with virtually no performance degradation and requiring no end-user training
Microsoft Active Directory Integrated Enterprise Management Console
Opinion
Symantec Endpoint encryption (SEPE) solution highly complements the Symantec Endpoint Protection solution. One of the growing risks with laptops and USB hard-drive is if they are stolen or lost and with them the loss of the information that is stored upon them.
SEPE encrypts both the hard-drive and the USB memory devices to ensure that should they be lost or stolen the local information is rendered as unintelligible and valueless.
Worth highlighting:
Integration and manageable via Active Directory.
Remote and local reset (vital for staff who have forgotten passwords)
Transparent to use with hardly any degradation of speed or performance
Synchronisation with Network password to remove the need for multi passwords
Approval for encryption strength (government & defence)
Modular approach to encryption: Laptop hard disk, USB drive or Full encryption options.
Its worth noting that the risk of a lost laptop is not just the information loss. The laptop could be used to gleam user credential and remote access details that could lead to the whole network being attacked and compromised. If you are worried about the strength of your laptop security we can test them and provide a full report on their strength to resist a hacking assault and data loss. Ask about lost & stolen laptop Penetration Testing."
Features & Benefits
Key Features
Pre-boot password or smartcard-based authentication ensures only
authorised individuals have access to data
Easy central deployment, administration, and management features
Supports multiple users and administrators on individual machine
Key sharing mechanisms that allow users to share access to files securely
Key Benefits
Protects and prevents your information from accidental data loss and assures protection for desktops and laptops against unauthorised access
Meets government directives and regulations and offers full audit trail
Provides scalable, centralised management for easy deployment and administration
Offers boot protection, pre-boot authentication, and pre-boot event logging and supports Single Sign-On (SSO) to avoid the need to remember and enter multiple passwords