Cigent Data Defense Pre-Boot Authentication
Full drive encryption meets government security standards for data-at-rest protection.
This is a Press Release edited by StorageNewsletter.com on July 18, 2023 at 2:02 pmCigent Technology, Inc. unveiled its Data Defense Pre-Boot Authentication (PBA), which enables a TCG Opal 2.0 Self Encrypting Drive to be fully encrypted, preventing adversaries from being able to access the data if they get physical access to the PC or storage device.
PBA Software has been FIPS Validated and posted on the NIAP Common Criteria Products in Evaluation site, the precursor to certification by NIAP and listing on the Product Compliant List and posting on CSfC Component List.
When installed on a Seagate Barracuda 515 or Digistor C Series drive (both on the NIAP product compliant list), Cigent offers CSfC DAR Capabilities Package 5.0 compliant Full Drive Encryption protection with FDE_EE (encryption engine) and FDE_AA (authentication) NIAP Protection Profiles compliance. Data Defense PBA supports multiple forms of authentication including username and password, CAC/PIV/Yubikey, or both to be fully NIST MFA compliant and adhere to both MFA and Zero Trust requirements outlined in the US Executive Order 14028.
Furthermore, both the Seagate Barracuda 515 and Digistor C Series Advanced Secure SSDs include Cigent’s embedded cybersecurity protections in firmware. These protections include Complete Erasure Verification, Immutable Insider Threat data access logs, and a firmware-heartbeat that automatically locks and makes Cigent Secure Vaults invisible if the Cigent software service is disabled.
With Data Defense Pre-Boot Authentication, an authentication screen pops up when the computer is turned on. The user can then authenticate to decrypt the drive. PBA software uses RSA 4096-bit encryption keys for authentication and can be used in conjunction with Cigent Data Defense Secure Vault to create a post-boot hidden partition for storage of sensitive data that requires MFA for access and uses Cigent advanced key creation and storage for partition protection.
“By achieving FIPS validation and inclusion in the NIAP Common Criteria Products in Evaluation , Cigent Data Defense PBA demonstrates our commitment to meeting rigorous government security standards,” said Tom Ricoy, CRO. “These validations help to ensure that the organizations with extremely sensitive data can utilize the advanced data security solutions from Cigent.“
The PBA software also enables the administrator to securely wipe data from drives with Cigent True Erase. This includes a Crypto Erase that deletes the decryption key rendering the encrypted data inaccessible. For added assurances, a full drive erasure (using a Format NVM function to Full Flash Overwrite, zeroing every block on the drive, resetting the drive back to its factory state) completely overwrites the disk to remove all data. Cigent’s patented True Erase capability built into the firmware of Cigent Secure SSDs also verifies that every block has truly been wiped after erasure. Within seconds, True Erase performs all three of these functions enabling the drive to be safely repurposed or sent off for destruction.