Fortanix Data Security Manager logo

Fortanix Data Security Manager

by Fortanix · Since 2016
No reviews yet
ActiveAvailable globallyCloudOn-premise
Quick facts
VendorFortanix
Year launched2016
StatusActive
Location3910 Freedom Circle, Suite 104, Santa Clara CA 95054
Countries servedGlobal
Languages2
Integrations1+
Free tier
Free trial
Contact salesYES

About Fortanix Data Security Manager

Fortanix Data Security Manager is a Runtime Encryption software from Fortanix that protects sensitive applications and data in use, allowing organizations to manage data security in untrusted public cloud environments. It combines Armet AI, Key Insight, and Confidential Computing Manager to support data protection without requiring modifications to existing applications. This platform ensures that sensitive workloads remain encrypted even during processing, providing an additional layer of security against unauthorized access. With features that cater to a range of use cases, including securing data in cloud environments and enabling confidential computing, Fortanix Data Security Manager is designed for enterprises that need reliable data protection solutions. Key capabilities: Armet AI Key Insight Confidential Computing Manager Success Stories Confidential Computing Best for: organizations that need to secure sensitive data in public cloud services.

Fortanix Data Security Manager (DSM) is a powerful and unified platform for data security that provides a comprehensive solution for managing cryptographic assets and protecting sensitive data. Its core strength lies in its innovative use of confidential computing with Intel SGX, which provides strong security guarantees even in potentially compromised environments. By combining key management, HSM functionality, and advanced features like tokenization and transparent database encryption into a single platform, DSM simplifies complex data security tasks for large enterprises and regulated industries.

Pros & Cons

What users like
  • +Uses a zero-trust approach with Intel SGX to protect cryptographic keys and data in untrusted environments.
  • +Combines multiple data security functions (key management, HSM, tokenization) into a single, unified platform.
  • +Designed for scalability and global multi-tenant SaaS deployment, supporting data sovereignty requirements.
  • +Provides robust protection against malicious insiders, cloud provider compromises, and other attack vectors.
  • +Includes advanced features like tokenization, file system encryption, and transparent database encryption.
  • +Simplifies regulatory compliance with pre-built templates for regulations like GDPR, HIPAA, and PCI-DSS.
  • +API-first architecture for easy integration and automation.
  • +Can be deployed in hybrid, multi-cloud, and on-premises environments.
What users flag
  • Can be a complex platform to set up and manage, especially for organizations with limited technical expertise.
  • The reliance on Intel SGX for its security model might be a concern for some organizations, although it offers strong security guarantees.
  • Some advanced features or custom configurations may require specialized professional services.
  • Pricing details are not publicly available and require contacting the company.
  • Documentation and support for on-premises deployment on platforms like VMware may require careful management of backup keys.

Features

Key features

Unified Key Management
Provides a single platform for managing the entire lifecycle of cryptographic keys and secrets across hybrid and multi-cloud environments, simplifying administration and ensuring consistency.
Confidential Computing with Intel SGX
Leverages Intel Software Guard Extensions (SGX) to create a trusted execution environment, ensuring that keys and sensitive data are never exposed, even to the cloud provider or malicious insiders.
Data Tokenization (Format-Preserving Encryption)
Replaces sensitive data with surrogate values (tokens) that retain the same format, protecting data privacy and simplifying compliance without disrupting applications.
Transparent Database Encryption (TDE) Key Management
Manages cryptographic keys for databases like Oracle, SQL Server, and MongoDB, storing them securely on FIPS-validated HSMs integrated within DSM.
File System Encryption
Extends encryption beyond full-disk encryption to protect individual file systems on designated hosts, providing granular control over data security.

Additional features

Certificate Management
Manages the lifecycle of digital certificates.
Code Signing
Secures the code signing process to ensure the integrity of applications and software.
Secure Data Sharing
Enables secure sharing of de-identified data sets for analytics or other purposes.
Data Masking
Dynamically masks sensitive data based on user or group roles.
API-First Architecture
Provides REST APIs for easy integration and automation.
Role-Based Access Control (RBAC)
Controls access to applications and data based on user roles.
FIPS 140-2 Level 3 Compliance
Integrates natively with FIPS-validated HSMs for securing encryption keys.
Integration Ecosystem
Integrates with platforms like AppviewX, AWS, Google Cloud Platform, BigID, and Saviynt.
Cloud-Scale Architecture
Provides a scalable architecture for cloud environments.
Compliance Templates
Includes templates for simplifying compliance with global regulations like GDPR, HIPAA, and PCI-DSS.
Professional Services
Offers professional services for deployment, integration, and training.
Developer Support
Provides extensive documentation and support for developers using the REST API.
Backup and Restore
Supports backup and restore capabilities, including secure handling of deployment keys.
Securely Store Any Data
Can securely store any kind of sensitive data, including API keys and passwords.

Pricing

Free trial
Free version
Request a quote
Promo Offer

Countries & Languages

Global
Countries served
2
Interface languages
1
Billing currencies

Interface languages

EnglishJapanese

Billing currencies

🇺🇸USD

No reviews yet

Be the first to drop a review

Alternatives to Fortanix Data Security Manager

SimpleumSafe logo

SimpleumSafe

SimpleumSafe is an encryption software from Simpleum Media GmbH designed for macOS and iOS (iPhone…

Z

ZipOne

ZipOne is a file compression software from NetMasterSoft that provides efficient data management. It includes…

ZENworks Full Disk Encryption logo

ZENworks Full Disk Encryption

ZENworks Full Disk Encryption is a data-at-rest encryption software from OpenText that improves endpoint security…

ProtectFile logo

ProtectFile

ProtectFile is a data security platform from Thales Group designed to safeguard sensitive information. It…

M

MailZen

MailZen is a communication software from Inventikon Corporation that focuses on email management. It includes…

MacWinZipper logo

MacWinZipper

MacWinZipper is a file compression software from Tida that is designed to create clean Zip…

Often compared with Fortanix Data Security Manager

Compare any two tools →
SimpleumSafe logo
SimpleumSafe
Encryption
0.0
Z
ZipOne
Encryption
0.0
ZENworks Full Disk Encryption logo
ZENworks Full Disk Encryption
Encryption
0.0
ProtectFile logo
ProtectFile
Encryption
0.0