High Security Module
Maintain security at the highest levels. The GlobalSCAPE High Security Module (HSM) achieves or exceeds security practices mandated by the most rigorous standards, including PCI-DSS, FIPS 140-2 Validation, HIPAA, and Sarbanes-Oxley. Whether your business is obligated to comply or you simply desire the utmost in security standards, the HSM is your solution for securing data transfer, access, and storage.
Key Benefits
Protection of Data at Rest
The HSM helps organizations meet high security standards with powerful features to protect data in storage. The HSM employs repository encryption and securely sanitizes (wipes) deleted data so that it cannot be reconstituted.
Protection of Data in Transit
With support for multiple secure protocols and a built-in FIPS 140-2 validated cryptographic library, the HSM thoroughly protects data in transit. By enforcing the use of secure protocols, strong ciphers, encryption keys, and password policies, data transfers strictly follow all security guidelines.
Controlled Access to Data
The HSM enforces strong account access policy controls such as the automatic lock out of accounts—users and admins— after a set amount of incorrect login attempts and the removal of inactive accounts after a certain period of inactivity. Additional security controls can be set to automatically expire passwords on certain dates, and notifications such as emails and banners can be configured accordingly.
Ongoing Standards Compliance
Compliance with security standards such as the PCI-DSS is not a "set it and forget it" process. The ultimate goal of securing sensitive company data requires continuous monitoring and validation of security policies and controls. GlobalSCAPE makes it easy for an administrator to create and maintain file-transfer services that meet or exceed these standards with an simple set-up wizard. Once enabled, the HSM is an ever-vigilant security tool that disallows low-security options, captures compensating controls, and generates reports for auditing the system’s compliance status.
