Software helps manage encryption key lifecycle.

Press Release Summary:



Suited for legacy encryption deployments as well as policy-driven application security, RSA® Key Manager also helps comply with key lifecycle management guidelines of PCI Data Security Standard. Stand-alone application enables businesses to centrally manage keys generated by disparate enterprise applications as well as retire compromised or lost keys and issue new keys. Solution supports POS application integration, separation of duties, and authentication support.



Original Press Release:



RSA Security Announces New Encryption Key Lifecycle Management Software



Accor North America Selects RSA(R) Key Manager to Manage Keys at Over 1,200 Hotel Properties in the U.S., Canada and Mexico; New Solution Helps Companies Address Core Payment Card Industry (PCI) Data Security Standard Requirements

BEDFORD, Mass., Jan. 31 -- RSA Security Inc. (NASDAQ:RSAS) today announced RSA(R) Key Manager software, which enables businesses to effectively manage the lifecycle of encryption keys. RSA Key Manager is a stand-alone key management offering that may be integrated with a range of encryption solutions, including RSA BSAFE(R) Data Security Manager software. The new solution also helps companies comply with the key lifecycle management guidelines of the Payment Card Industry (PCI) Data Security Standard, a global initiative spearheaded by leading payment card companies which strives to protect consumers' transaction data.

Accor North America, which operates more that 1,200 upscale and economy hotel properties including Sofitel, Novotel, Ibis, Red Roof Inn, Studio 6 and Motel 6, implemented RSA Key Manager and RSA ClearTrust(R) access management software to help address PCI requirements.

"As one of the world's leading travel brands, millions of customers each year rely on Accor North America to provide a safe hotel stay, and we're committed to ensuring that our customers' transaction data is just as secure," said Harvey Ewing, senior director of IT security at Accor North America. "RSA Key Manager software enables us to effectively manage encryption keys generated enterprise wide, irrespective of operating system or backend database, providing us with unprecedented flexibility in our integration of encryption to existing applications and infrastructure."

Tackling the Key Management Challenge within New and Legacy Systems Key management is core to an overall encryption strategy; however, most existing encryption solutions lack effective key lifecycle management capabilities. RSA Key Manager software benefits customers with legacy encryption deployments as well as companies deploying RSA BSAFE Data Security Manager software for policy-driven application security. RSA Key Manager software enables businesses to:

Integrate key management with legacy open source and commercial encryption solutions

o Centrally manage keys generated by disparate enterprise applications

o Quickly retire compromised or lost keys, and promptly issue new keys

o Manage both key lifecycle and encryption rules using a common centralized policy through integration with RSA BSAFE Data Security Manager software.

"Burton Group clients have many pockets of encryption across their organizations, and this 'siloing' of encryption keys may hamper efforts to effectively protect sensitive consumer and enterprise data," said Trent Henry, senior analyst at Burton Group. "Large companies realize that a successful response to critical security requirements -- such as the PCI standards -- requires consistent processes for protecting data across the organization. As a result, they are looking for ways to centralize key management functions and create a security clearinghouse for keys, policies, and standards across many applications and encryption silos."

Achieving PCI Data Security Standard Compliance

Though PCI requirements are specific and measurable, research by First Data Corp. reports 85 percent of affected companies have yet to meet PCI standard requirements -- most often because of difficulties associated with implementing the necessary technology solutions. RSA Key Manager software lessens this challenge by providing centralized, secure, simplified key lifecycle management for all applications. In contrast to hardware-based solutions, RSA Key Manager does not require the extensive resources needed to deploy appliances at every single retail location, as often required for full PCI compliance. RSA Key Manager software may also be leveraged alongside RSA BSAFE Data Security Manager software, RSA SecurID(R) two-factor authentication technology and RSA ClearTrust access management software as a comprehensive PCI solution.

RSA Key Manager Solution: Key Features and Benefits

RSA Key Manager is part of RSA Security's enterprise data protection solutions suite, and is rooted in best practices developed by RSA Professional Services. RSA Key Manager software includes a server based on Sun(R) Java(TM) technology, client application programming interface (API) and Web-based administration tool. Key features include:

o Point-of-sale (POS) application integration: RSA Key Manager software may be integrated at the POS application level, enabling retailers to manage keys from the start, mitigating the risk associated with branch location encryption.

o Simple interface: RSA Key Manager offers a browser-based interface, allowing administrators to easily manage keys generated by a wide range of applications.

o Intuitive API: The solution offers a simple API that is ideal for software developers unfamiliar with key management.

o Separation of duties: RSA Key Manager leverages RSA ClearTrust(R) access management software to enforce separation of duties, ensuring that no individual may compromise the key management systems or access plaintext keys.

o Stronger authentication support: Organizations may leverage RSA SecurID two-factor authentication technology to provider stronger protection for the RSA Key Manager solution deployment.

o RSA BSAFE(R) Data Security Manager integration: RSA Key Manager functions out-of-the-box with RSA BSAFE Data Security Manager, a solution that enables developers to easily build data security controls into enterprise applications.

"Companies entrusted with private consumer data, particularly information related to payment card transactions, must do everything possible to keep the information safe and secure," said Rick Welch, vice president, Developer Division at RSA Security. "Effective enterprise data protection requires a multi-pronged approach, and the combination of RSA Security solutions, including RSA Key Manager, will enable organizations worldwide to protect their business and customers."

Availability

RSA Key Manager will be available in February 2006. The software will be demonstrated at the RSA Conference 2006 (February 14-17, 2006 in San Jose, California -- RSA Security booth 523). More information may be found at http://www.rsasecurity.com/products/keymanager/.

About RSA Security Inc.

RSA Security Inc. is the expert in protecting online identities and digital assets. The inventor of core security technologies for the Internet, the Company leads the way in strong authentication and encryption, bringing trust to millions of user identities and the transactions that they perform. RSA Security's portfolio of award-winning identity & access management solutions helps businesses to establish who's who online -- and what they can do.

With a strong reputation built on a 20-year history of ingenuity, leadership and proven technologies, we serve approximately 20,000 customers around the globe and interoperate with more than 1,000 technology and integration partners. For more information, please visit http://www.rsasecurity.com/

About Accor North America

Headquartered in Dallas, Accor North America (http://www.accor-na.com/) is a division of Accor S.A. (http://www.accor.com/), the world's third-largest hospitality company and the European leader in travel, tourism and corporate services. Accor North America owns, operates and franchises more than 1,200 upscale and economy properties, including the upscale Sofitel and Novotel hotel locations in the U.S. and Canada, as well as the nationwide economy leaders Red Roof Inns, Motel 6 and its new extended-stay product, Studio 6. Together, Red Roof Inns (http://www.redroof.com/), Motel 6 (http://www.motel6.com/) and Studio 6 (http://www.staystudio6.com/), comprise more than 10 percent of the entire U.S. budget lodging segment.

RSA, BSAFE, ClearTrust, SecurID and RSA Security are either registered trademarks or trademarks of RSA Security Inc. in the United States and/or other countries. Sun and Java are either registered trademarks or trademarks of Sun Microsystems, Inc. in the United States and/or other countries. All other products and services mentioned are trademarks of their respective companies.

For more information:

Dave Howell
RSA Security Inc.
(781) 515-6303
dhowell@rsasecurity.com

All Topics