The Best of Both Worlds

Dell has long been a player in the hardware side of the security industry, supplying trusted platform modules, authentication mechanisms, servers, networking services, and the laptops and desktops the Austin-based company is widely known for.

But with the late-November introduction of its Data Protection Encryption, Dell is crossing the divide into the solutions side of the security biz.

According to Dell’s Dave Konetski, business client, Office of the CTO, the company’s new goal is to become a “one-stop shop,” a place where businesses can get both the hardware and solutions to administer and secure their networks. And it hopes to do that by using its experience interfacing with other companies’ products to design more user-friendly solutions.

Indeed, this is the impetus behind its Data Protection Encryption service. “We experienced with our customers a lot of pain points that have become very consistent,” Konetski said, “and so we thought this would be a good time to engage in providing full solutions and addressing those customer pain points.”

Leaving Sector-Based Encryption Behind
One of those “pain points” was dealing with sector-based encryption, which Dell eschewed because of what Konetski described as the headaches involved in setup and maintenance – defragmenting the disk, making sure it has no physical anomalies that could botch the process.

Instead, Dell’s encryption service is file-based. An administrator can still encrypt every file on the hard drive, but he or she also has the flexibility to choose to leave OS files out, making patching across an entire network much easier. And because the system encrypts each file, it is able to employ a flexible-encryption scheme – so each file has its own encryption key, allowing, say, CEOs to keep their IT guys away from sensitive business data.

The file-based format has the added bonus of enabling the encryption of any endpoint – not just a hard drive – and that includes USB drives, CDs and any sort of optical storage device. In order to get this functionality with a sector-based system, administrators would have to layer a file-based system on top, which could easily lead to logistical headaches.

Automatic Central Management
The typical drawback to file-based encryption, however, is maintenance. Requiring encryption of every sensitive file leaves a fair amount of room for error – users could easily forget to encrypt the files or may not understand which files are sensitive and need to be encrypted.

Dell combats this problem with an automatic central management system, which allows administrators to create central policies about which files to encrypt. It then deploys them automatically, encrypting sensitive files that fit the profiles the administrator specifies. The  service essentially culls the best of both worlds: the flexibility of encrypting only sensitive files and the security of knowing that all the files you need protected are in fact covered.

After that, users and administrators can further modify those policies on individual machines. Konetski says this simplifies implementation. “Since it’s a single system, you write one set of policies for a machine and then you can customize after that,” he said.

For small businesses, the encryption service comes with pre-set “templates” for HIPPA, PCI and FIPPA compliance. “For a lot of small- and medium-sized customers deploying security is difficult,” Konetski said. “Compliance templates allow them to … hit a button for these basic encryptions, and the system will write a set of policies that will govern the required encryption on their endpoint, and will generate the reports and audits so they can show compliance.” After that, administrators can further tweak the policy to tailor it precisely to their specific needs.

Konetski said he believes that the combination of a file-based system and the automatic deployment of encryption policies sets Dell’s encryption service apart. “All encryption systems use same standard algorithms,” he said. “The value to the customer is the ability to manage the system, write policy and then have the policy enforced locally … and that is what makes Dell’s system so great.”

It seems Dell will continue using its experience working with customers and experiencing their frustrations to create more-sophisticated products.

Konetski hinted that the company will continue expanding its offering of solutions. “Dell Data Protection Encryption marks the first step in a continuing strategy to enhance Dell’s security offerings,” he said. “Dell will continue investing in security and other solutions areas as they see a need and believe that they can bring differentiation and simplicity to their customers.”

Featured

  • It's Show Time

    I am one of those people that likes to see things get bigger and better. As advertised, ISC West is going to be bigger (more exhibitors) and better (more attendees). It’s show time in Las Vegas. Read Now

    • Industry Events
    • ISC West
  • SIA Releases New Report on Operational Security Technology

    The Security Industry Association (SIA) has released an impactful new resource – Operational Security Technology: Principles, Challenges and Achieving Mission-Critical Outcomes Leveraging OST. Read Now

  • Cyber Overconfidence Is Leaving Your Organization Vulnerable

    The increased sophistication of cyber threats pumped by the relentless use of AI and machine learning brings forth record-breaking statistics. Cyberattacks grew 44% YoY in 2024, with a weekly average of 1,673 cyberattacks per organization. While organizations up their security game to help thwart these attacks, a critical question remains: Can employees identify a threat when they come across one? A Confidence Gap survey reveals that 86% of employees feel confident in their ability to identify phishing attempts. But things are not as rosy as they appear; the more significant part of the report finds this confidence misplaced. Read Now

  • Mission 500 Debuts Refreshed Identity Ahead of Security 5K/2K at ISC West

    Mission 500, the security industry’s nonprofit charity dedicated to supporting children in need across the US, Canada, and Puerto Rico, has unveiled a refreshed brand identity ahead of ISC West. The charity’s new look includes a modernized logo with refined messaging to reinforce Mission 500’s nearly decade-long commitment to serving the needs of children and families in crisis. Read Now

    • Industry Events

New Products

  • Hanwha QNO-7012R

    Hanwha QNO-7012R

    The Q Series cameras are equipped with an Open Platform chipset for easy and seamless integration with third-party systems and solutions, and analog video output (CVBS) support for easy camera positioning during installation. A suite of on-board intelligent video analytics covers tampering, directional/virtual line detection, defocus detection, enter/exit, and motion detection.

  • ResponderLink

    ResponderLink

    Shooter Detection Systems (SDS), an Alarm.com company and a global leader in gunshot detection solutions, has introduced ResponderLink, a groundbreaking new 911 notification service for gunshot events. ResponderLink completes the circle from detection to 911 notification to first responder awareness, giving law enforcement enhanced situational intelligence they urgently need to save lives. Integrating SDS’s proven gunshot detection system with Noonlight’s SendPolice platform, ResponderLink is the first solution to automatically deliver real-time gunshot detection data to 911 call centers and first responders. When shots are detected, the 911 dispatching center, also known as the Public Safety Answering Point or PSAP, is contacted based on the gunfire location, enabling faster initiation of life-saving emergency protocols.

  • QCS7230 System-on-Chip (SoC)

    QCS7230 System-on-Chip (SoC)

    The latest Qualcomm® Vision Intelligence Platform offers next-generation smart camera IoT solutions to improve safety and security across enterprises, cities and spaces. The Vision Intelligence Platform was expanded in March 2022 with the introduction of the QCS7230 System-on-Chip (SoC), which delivers superior artificial intelligence (AI) inferencing at the edge.