External Media Data Protection
CREDANT Mobile Guardian External Media Shield (EMS) provides unique policy-based data encryption, centralized administration and reporting for endpoint data protection, both within the network and beyond.
Enterprise users need fast, flexible data access from a variety of remote locations—airports, coffee shops, restaurants and home offices on a variety of endpoint devices:
- Laptops
- USB Sticks
- Smartphones
- External storage devices
- CD/DVD media
With External Media Shield, users can access and update external media from any computer, without compromising data protection.
Endpoint Device Encryption
When endpoint devices connect to a CREDANT-protected desktop, laptop, or smartphones for the first time, CREDANT detects the device and prompts the user to set a password for future access to it. Administrators can centrally define and enforce password strength via security policies. Once the password is set, CREDANT automatically provisions the client with the CREDANT External Media Shield, providing secured data encryption keys and policies to the device.
From this point forward, the device is password protected and all data added to it is automatically scanned and encrypted per policy.
External Media Shield for USB Stick Encryption
External Media Shield provides organizations the following business-critical benefits:
- Data encryption on all portable endpoint devices (i.e. USB Stick)
- Flexible workflows when accessing shielded media from protected enterprise computers, unprotected home computers or even public kiosk computers
- Cost-effective, central administration of policies
- Enhanced reporting to support regulatory compliance
- Quick deployment and easy scalability
Ask for more information about CREDANT External Media Shield and to provide endpoint device data protection.
Key Advantages with CREDANT Shield for External Media
Cost-Effective to Manage and Deploy
- Centralized management
- Quick and easy deployment
- Support for all portable devices without compromising existing operations
- Support for Windows, Pocket PC and Smartphone devices and environments
- Scalability to any number of devices
- Automatic key escrow for easy data recovery from CREDANT Server
- Policy-driven options to block all access, allow read-only access, or allow full read-write access to unshielded media from protected corporate computers
- Flexible workflows when accessing shielded media from protected corporate computers, unprotected home computers or even public key kiosk computers
Helps Meet Regulatory Requirements
- Industry-standard data encryption
- Granular policies to define and enforce password strength
- Reporting of policy updates
- Visibility into new CREDANT External Media Shield events across all CREDANT Windows Shield clients
- All CREDANT Shield for External Media events viewable in the CREDANT Compliance Reporter
- Automatic policy updates
Prevents Data Leakage while Increasing Workforce Productivity
- Roaming security policies that ensures the security of your data even when exchanged among devices and users
- User-transparent data encryption
- Enhanced, easy-to-use dialogs and instructions for end-users
- Flexible security options:
- Allowing read-only access to un-shielded partner media
- Voluntary access option allows some users to choose which media to encrypt
- Allowing access to protected devices from unprotected and protected computers for exceptional portability
- Restricting data access on unprotected computers
- Option to leave personal video or audio files unencrypted
- Fail-safe options to prevent brute force attacks:
- Cool-down periods between access attempts
- Automatic deletion of encryption keys based on specified number of failed authentication attempts (keys can be recovered via the CREDANT Server if the media is reacquired)
- Help desk support for easy password recovery from any location, even without network connectivity
Screenshots
CREDANT Shield for External Media provides a unique policy-based encryption and centralized administration for data protection, both within the network and beyond.
Click to enlarge 



