NHS Secures Portable Data with BlockMaster USB Memory Drives

Healthcare

SafeConsole keeps your patients’ information secure

Healthcare organizations handle a great amount of sensitive records and private information, and with that comes big responsibility. Patients rightfully take for granted that their data is kept safe and confidential, but organizations of this sort live under the big risk of data leakage, without even thinking about it. Lost patient trust is even harder to restore than the data itself. Protecting research results produced in labs and other facilities is also important because of that information’s commercial value. With staff always on the go, leaving data unprotected is just a breach waiting to happen.

We recommend these SafeConsole features to help protect your data:


remote kill lost drive

Device State Management

As an extra security precaution when drives are lost, or to protect your organization’s sensitive information from access by former employees, you can remotely ‘kill’ rogue drives and erase them of all data. In the Device Overview in SafeConsole, an authorized administrator can set the device state to ‘killed’, ‘disabled’ and ‘lost’.

Learn more about the Device State Management feature in SafeConsole »

lost password reset remotely

Remote Password Reset

If a user forgets the chosen password needed to access information stored on the secure USB drive, a remote administrator can help the mobile worker. A secure challenge-response procedure brings back the locked-down encrypted data and gets the user back to business in a matter of minutes. The short 8-character recovery codes are easily read over the phone yet maintaining the robust security of a 128-character code using a pre-buffer method. No data is lost and the process is protected against social engineering directed against the helpdesk.

Learn more about the Remote Password Reset feature in SafeConsole »

inactivity lock

Inactivity Lock

Preset (and override the users’ own settings for) the Inactivity Lock to lock down the secure USB drive after a configurable number of minutes. If a user forgets an unlocked drive in a computer, the drive will automatically lock down in accordance with the set policy. The inactivity lock gracefully handles fie operations in progress and avoids interruptions to everyday work.

Learn more about SafeConsole device managment »

autorun protection

Authorized Autorun

To prevent the spreading of autorun malware a SafeConsoleReady device always overwrites the autorun.inf files stored on the encrypted storage volume, which chokes the effect of viruses such as Conficker. To still be able to have authorized applications autorun off the devices, you can specify trusted commands in SafeConsole. That way you can keep the benefits and convenience of autostarting working-tools, but disallow a gateway for malware infection.

Learn more about the Remote Password Reset feature in SafeConsole »

Unbreachable, Managed USB Drives

The key is to manage drive access and prevent unauthorized or malicious usage by managing the entire population of drives.

The focus has to be on sound security policy that’s coupled with robust hardware and granular, centralized management tools.

With the right solution in place, you can:
  • Offer users flexible, agile and secure computing – anywhere, anytime
  • Support remote, secure virtual desktops
  • Immediately kill remote drives
  • Instantaneously deploy updates and data refreshes to remote users
NHS Secures Portable Data with BlockMaster USB Memory Drives

Education

SafeConsole makes sure your work is never lost

Schools, colleges and universities account for up to one-third of all publicly disclosed security breaches. The work hours spent on research and development in education institutes are invaluable, and the amount of student information is immense. Information need to be transported safely without delay or disturbance, in order to make everyday work flow seamlessly. Spy- and malware residing on public computers are a constant threat, as is the simple problem of lost USB drives.

We recommend these SafeConsole features to help protect your data:


device backup

Backup & Content Audit

Make sure that a lost devices can be cloned back and no data is lost. A lost drive or an inadvertently overwritten file would normally make you lose hours of work. In the event of a lost SafeConsoleReady device, an administrator can easily recreate the drive by sending its backup and settings to a new device. The continuous incremental backup is a transparent procedure that does not affect the users’ everyday routines or work. The recreate procedure is handled remotely and involves no end-user actions other than plugging a SafeStick drive into their machine. The versioning of the backup information makes it possible to retrieve a file that was accidentally erased or overwritten.

Learn more about the Backup feature in SafeConsole »

malware protection

File-Restrictor

Protect your networks from day zero malware threats like the Conficker and Stuxnet. By taking a white-list approach to preventing storage of unauthorized file-types the FileRestrictor relieves the users from protecting their device. Rogue files can simply not reside on a SafeConsoleReady Device as it only allows storage of file-types specified by the administrator in the SafeConsole settings. The FileRestrictor complements the Authorized Autorun – the onboard autorun-protection that chokes self-copying viruses – by denying unauthorized autorun files from residing on the drive altogether.

Learn more about the FileRestrictor feature in SafeConsole »

lost password reset remotely

Remote Password Reset

If a user forgets the chosen password needed to access information stored on the secure USB drive, a remote administrator can help the mobile worker. A secure challenge-response procedure brings back the locked-down encrypted data and gets the user back to business in a matter of minutes. The short 8-character recovery codes are easily read over the phone yet maintaining the robust security of a 128-character code using a pre-buffer method. No data is lost and the process is protected against social engineering directed against the helpdesk.

Learn more about the Remote Password Reset feature in SafeConsole »

Unbreachable, Managed USB Drives

The key is to manage drive access and prevent unauthorized or malicious usage by managing the entire population of drives.

The focus has to be on sound security policy that’s coupled with robust hardware and granular, centralized management tools.

With the right solution in place, you can:
  • Offer users flexible, agile and secure computing – anywhere, anytime
  • Support remote, secure virtual desktops
  • Immediately kill remote drives
  • Instantaneously deploy updates and data refreshes to remote users
NHS Secures Portable Data with BlockMaster USB Memory Drives

Government

Every year, 20 million USB drives go missing. Many of those are government flash drives with sensitive information.

The potential for security breach, leaks, violation of citizen rights, public relations scandals and even loss of life follows every one of those lost drives. The result? Loss of public trust, putting citizens at risk and weakening national security across the board. There is a crucial need of protecting flash drive data and preventing unauthorized use.

We recommend these SafeConsole features to help protect your data:


password policy

Password Policy

It is possible to configure multiple complex password policies within SafeConsole and assign them to different groups within the organization. There is also the option to set a limited life-span for the password based on the number of unlocks or days passed since the last password change. Faulty unlock attempts are alerted to the user to make sure that social engineered hacks will not succeed.

Learn more about the Password Policy feature in SafeConsole »

automatic unlock on trusted users

ZoneBuilder

If a security measure is the least bit awkward, no policy can prevent your users to learn how to somehow work around it. When your users have entered a username and password to log on to their workstations, save them the trouble of having to enter yet another password to access their secure USB drive. The administrator can enforce a policy centrally in the SafeConsole that allows users devices to trust users accounts. The administrator can also allow users to trust a machine and user account with ZoneBuilder. The ZoneBuilder uses a unique certificate to unlock the drive on the trusted user account. The certificate can be stored on the trusted user account or on a smartcard device. On any other machine the user will enter the regular device password when prompted for it.

Learn more about the ZoneBuilder feature in SafeConsole »

remote kill lost drive

Device State Management

As an extra security precaution when drives are lost, or to protect your organization’s sensitive information from access by former employees, you can remotely ‘kill’ rogue drives and erase them of all data. In the Device Overview in SafeConsole, an authorized administrator can set the device state to ‘killed’, ‘disabled’ and ‘lost’.

Learn more about the Device State Management feature in SafeConsole »

publisher

Application Publisher & Content Delivery

SafeConsole enables files to be pushed out to remote SafeConsoleReady devices as soon as they are unlocked. All sensitive data is exchanged securely using two way certificate based SSL authentication making Publisher an ideal way of distributing sensitive materials to a remote workforce. This opens the door to a world of opportunities. By distributing files this way you can be sure your work force always has the latest price-lists, the updated PowerPoint templates and the latest version of a customer presentation. When you need to send top-secret documents to a supplier, you can send them an empty stick and then distribute the content when you know the device is in the right hands.

Learn more about the Publisher - Content Delivery feature in SafeConsole »

Unbreachable, Managed USB Drives

The key is to manage drive access and prevent unauthorized or malicious usage by managing the entire population of drives.

The focus has to be on sound security policy that’s coupled with robust hardware and granular, centralized management tools.

With the right solution in place, you can:
  • Offer users flexible, agile and secure computing – anywhere, anytime
  • Support remote, secure virtual desktops
  • Immediately kill remote drives
  • Instantaneously deploy updates and data refreshes to remote users
Professional Services

Professional Services

SafeConsole offers you working flexibility without the risks

In almost no other area is mobility of such significance than in professional services. Offsite working is standard procedure, and confidential client data is shared and carried around at all times. In a business where such delicate information is handed out so continuously, there are high demands on security. Lost data could easily mean a lost deal.

We recommend these SafeConsole features to help protect your data:


lost password reset remotely

Remote Password Reset

If a user forgets the chosen password needed to access information stored on the secure USB drive, a remote administrator can help the mobile worker. A secure challenge-response procedure brings back the locked-down encrypted data and gets the user back to business in a matter of minutes. The short 8-character recovery codes are easily read over the phone yet maintaining the robust security of a 128-character code using a pre-buffer method. No data is lost and the process is protected against social engineering directed against the helpdesk.

Learn more about the Remote Password Reset feature in SafeConsole »

automatic unlock on trusted users

ZoneBuilder

If a security measure is the least bit awkward, no policy can prevent your users to learn how to somehow work around it. When your users have entered a username and password to log on to their workstations, save them the trouble of having to enter yet another password to access their secure USB drive. The administrator can enforce a policy centrally in the SafeConsole that allows users devices to trust users accounts. The administrator can also allow users to trust a machine and user account with ZoneBuilder. The ZoneBuilder uses a unique certificate to unlock the drive on the trusted user account. The certificate can be stored on the trusted user account or on a smartcard device. On any other machine the user will enter the regular device password when prompted for it.

Learn more about the ZoneBuilder feature in SafeConsole »

publisher

Application Publisher & Content Delivery

SafeConsole enables files to be pushed out to remote SafeConsoleReady devices as soon as they are unlocked. All sensitive data is exchanged securely using two way certificate based SSL authentication making Publisher an ideal way of distributing sensitive materials to a remote workforce. This opens the door to a world of opportunities. By distributing files this way you can be sure your work force always has the latest price-lists, the updated PowerPoint templates and the latest version of a customer presentation. When you need to send top-secret documents to a supplier, you can send them an empty stick and then distribute the content when you know the device is in the right hands.

Learn more about the Publisher - Content Delivery feature in SafeConsole »

autorun protection

EasyShare

Share your files - not your password! Studies have shown that users often share passwords when they share data on secure portable devices. To prevent this foolish convenience, EasyShare enables a social-engineering proof solution where the users can share the few intended files by setting them aside and protecting them by a temporary PIN. The rest of the secure files stay protected by the user’s regular strong, exclusive password.

Learn more about the EasyShare feature in SafeConsole »

Unbreachable, Managed USB Drives

The key is to manage drive access and prevent unauthorized or malicious usage by managing the entire population of drives.

The focus has to be on sound security policy that’s coupled with robust hardware and granular, centralized management tools.

With the right solution in place, you can:
  • Offer users flexible, agile and secure computing – anywhere, anytime
  • Support remote, secure virtual desktops
  • Immediately kill remote drives
  • Instantaneously deploy updates and data refreshes to remote users