Data (Re)covery                  Data Protection                   Intrusion Analysis                    Incident Handling                    Forensics 

Data Encryption
Can people read or steal your data?

What is encryption?
It's simply the process of taking some or all of the data, applying an algorithm, and producing output that cannot be read or understood without proper authorization.  Unlike encoding or obfuscating data, encrypting data is much harder to break and decipher.  Let's take an example; hree is a setnecne taht is srcabmeld.  This is just obfuscating the data and is very easy to understand and break.  But let's take that same data and apply encryption; Av$f73GbidsN&Iq267WPir84BN#14dF8z$ (Can you now understand that?). Remember, the goal of encryption is to protect the confidentiality of your data, so that only authorized users can access or manipulate the data; ciphered text, the encrypted output of your data like seen above, CAN be intercepted and stolen.  However, the theory and strength of encryption is within its algorithm and key management; if both are strong, data that is stolen cannot be reliably or feasibly understood or (re)created into its original form.   

Why should you encrypt your data?
Mobile computers and removable storage devices have become the standard for maximizing our production, communications, and efficiency.  But the convenience and portable capabilities that make them so valuable also increase the risk of theft or loss; sensitive data that is not protected is at  serious risk, resulting in identity theft, financial loss, embarrassment, or legal issues!  By properly encrypting your data, you can continuously be safeguarded from unauthorized access and theft to your information. 

What can be encrypted, and how?

Encryption security solutions that use strong authentication and algorithms can be used for pretty much anything that stores data; PCs, laptops, (re)movable media and devices, PDA's, portable devices, archiving media, email, and more.  Different software and hardware methods exist to ensure the confidentiality of your information, from full-disk encryptions and virtual drives, to centralized security management and digital certifications. (Re)surge will help to understand your data, environment, and practices to determine the best solutions for protecting your information.  With on-site assessments and interviews, we will help provide and train you on an encryption solution that best suits your needs. Our next step would be to take a full clone of your data before we implement the encryption, test to make sure the data is valid, then securely store that offsite (please reference our data protection page for more information). Our last step would be to help you define, and store, your encryption keys and certificates; providing strong security and disaster recovery in case of lost or forgotten keys.

Full disk encryption: Whole disk encryption, or full disk encryption, protects the entire operating system and all data contents of your PC, removable and mobile devices, and laptops.  By encrypting the entire drive, this solution produces data that is entirely unreadable to unauthorized users.
Virtual hard disk drives: This solution is especially useful for protecting all types of (re)movable media and for ensuring specific, sensitive data is secured.  Virtual disks use the same strong authentication and encryption but in a more compact file security solution by creating a separate, yet secure drive partition.  Additionally, virtual disks are easily deployed and can be created on any media including CDs, DVDs, or media cards.  Utilizing these devices as virtual disks can help ensure a strong level of security when sharing or transporting sensitive and personal data.
Email Encryption: Encrypting email content and attachments provide protection for private, sensitive, and valuable information in transit across insecure mediums.   This type of security can easily interoperate with your most popular email software solutions.  A similar strategy that can be employed for protecting authenticity, integrity, and confidentiality for emails is to detect if a message has been altered since it was sent - AND - detect if it was actually sent by the person claiming to be the sender.  Such techniques use technologies like digital signatures and certificates, that can work independently or in conjunction with encryption.
Configuration Management:  Configuration protection is an overall approach to monitor, lock, and validate key configurations for your system such as registry entries, network settings, host lists, security software, and start-up programs.  Let us help you to tighten-down these areas to protect you from malware, inappropriate software, spyware, or configuration altering code used to bypass existing security measures and perform unauthorized changes.


Data Encryption

[dat-uh en-kript-shuhn]

The process of transforming original information using a cipher algorithm to make the output unreadable to anyone except those possessing the required key.  The result of this process is producing encrypted information called ciphertext.  Its ultimate goal is to provide information confidentiality and protection of the data stored on a computer disk, mobile device, or information in transit.
Methods of Encryption:
  • (Re)surge will help implement and coordinate the best encryption schemes for your environment and data; ensuring a secure solution that continuously safeguards your personal, financial, business, or every-day data from unauthorized access.
  • Don't just store your data, store it securely! Let us help you incorporate a proactive approach to protecting your data stored on USB & flash devices, laptops, PCs, databases, ROMS, PDAs, media cards, memory sticks, and many other mobile and (re)movable media.
  • Before we implement an encryption solution for you, we would provide a full clone of your data, test to make sure the data is valid, then securely store it offsite in our safe.  Additionally, we will help generate strong encryption keys and certificates, and also store copies of those offsite in case they are lost or forgotten.
  • Learn and incorporate security techniques such as full disk encryption, virtual encryption storage, on-the-fly file encryption, and digital certificates and signing for data in transit such as email.
  • Generate digital certificates and signatures to authenticate the integrity of emails, ensuring your emails are not manipulated once sent and verifying the identity of emails you receive.
  • Rest easy knowing your email content and attachments are encrypted and validated, only accessible to key contacts you list for delivery.
  • Implementation and monitoring for your operating system configurations; by locking-down key configuration areas that govern your registry, network settings, running programs, and security controls we can prevent unauthorized modifications to these by malware, spyware, or otherwise inappropriate software.



*Let us help you to protect, secure, and encrypt your data!


Back To Top