A Fortify 24x7 brand. Subscriptions that guard the people, the machines and the mailboxes standing around a set of keys.Portal sign inWrite to a custodian
Cryptinest
Chamber 05 / The seal room

Read the catalogue before anybody closes a lid.

Two lines, and the order matters. The first goes through your machines and reports what confidential material is genuinely sitting on them, usually to some discomfort. The second encrypts what counts and bounds the routes it can travel by. Reversing that order buys an ugly month.

ActifileCatalogue, then encryptRoute limitsPriced by device
Lines held here2
MakerActifile
Counted byDevice
SequenceCatalogue, then seal

What the catalogue tends to surface

Nobody plans to leave an exchange verification packet loose in a downloads folder. It happens because somebody had to send it once, at speed, a year and a half ago. The same goes for the exported list of counterparty details, the scan of a passport, and the screenshot taken to help a colleague which then simply stayed put.

This first line goes through whatever you aim it at and reports what is present, whereabouts, and in what quantity. Each device gets a score so remediation can begin at the worst one rather than whichever came to mind. It genuinely only reports, and we would far rather you saw the list before anything got encrypted.

Encryption bound to the document survives being copied. Encryption guarding a folder does not.

Sealing, and the ways out

Encryption here attaches to the document itself instead of to whichever folder it started out in, which is the difference between protection that survives being copied and protection that does not. Something carried off on a memory stick or dropped into a personal cloud stays unreadable, so exfiltration becomes an irritation rather than a disclosure.

Route limits are the other half. Removable media, personal sync clients and unapproved applications can each be bounded by policy. Nobody is trying to make work impossible. The aim is to narrow the accidental exit until using it has to be a conscious act.

Lines held in this chamber

Records and rates

Billing supplies every figure below while the page loads. An entry holds its place while you go on reading.

Fortify-DLP-ClassifyDeposit record

Sensitive Data Discovery

Actifile, writing the catalogue before anything gets sealed

A catalogue has to exist before a policy can. This line reads the machines you point it at and reports back what confidential material is sitting on them, whereabouts, and in what quantity, which tends to be a less comfortable read than anybody expects.

  • Identity documents, card data and other regulated material are located and counted per machine.
  • That forgotten export nobody has opened since last spring is precisely what this exists to surface.
  • Each device carries a score, so remediation can start at the worst rather than the nearest.
  • It reports and stops there. Sealing belongs to the line immediately after it.
Deposited onWhichever workstations or servers you aim it at, one unit apiece
SealsNothing yet, and deliberately so; this line writes the catalogue
Held atFindings and file locations recorded within the Actifile tenant
Sealed byActifile
Witnessed byFortify 24x7 engineers walking the report through with you line by line
Loading rateper device
renewing every month
UNITS
Fortify-DLP-EnforceDeposit record

Encryption and Channel Control

Actifile, closing the seal once a catalogue exists

Encryption bound to whatever material matters, with limits placed on how it is permitted to travel. A document carried off on a memory stick or dropped into somebody's personal cloud stays unreadable, which turns a theft into an inconvenience.

  • The encryption travels with the document itself, not with whichever folder it started out in.
  • Removable media, personal sync clients and unapproved applications can each be bounded by policy.
  • Profiles are picked against what you genuinely hold instead of being applied across the board.
  • Take the discovery line first; sealing a catalogue nobody has read produces an ugly month.
Deposited onThe same devices, once you know what is genuinely sitting on them
SealsMaterial leaving by an unapproved route, and the legibility of anything taken
Held atKeys and policy within the Actifile tenant, with files staying put
Sealed byActifile
Witnessed byFortify 24x7 engineers shaping policy and handling every exception
Loading rateper device
renewing every month
UNITS
Honest scope

Where the seal room stops

Data protection covers material at rest on machines under your management. It is no general answer to secrecy, and some things it deliberately leaves alone.

  • Seed material is not its job. Key material has no business being a file on a working machine to begin with. Write it out, split it, keep it offline, and do not ask software to make up for a decision that belonged on paper.
  • Nothing on a chain is classified here. Whatever is already public remains public. This reads files on hardware you enrol, and that is the whole of its territory.
  • Discovery reads content. That is how the mechanism functions and it should be said outright. Scope is settled with you in writing before a single machine is scanned.
  • A seal is not a policy. Software can hold a line you have already drawn. It cannot draw the line about what your team is permitted to keep in the first place.
  • Storage nobody declared is outside it. A private drive or an account nobody mentioned falls outside scope and will show up in no report we produce.
SEAL NOTE

Heads up: card statements show FORTIFY 24X7 - Cryptinest is a Fortify 24x7 brand, and your subscription is billed by Fortify 24x7.