• Ask a Question

    Ask us a question

  • Newsletter

Compliance Solutions

Stay ahead of data security regulations with Thales solutions

Constant scrambling to achieve and maintain compliance with data security regulations can drain resources away from core business processes. Financial services organizations need reliable, scalable data protection to efficiently comply with regulations—now and into the future

Thales solutions enable organizations to quickly deploy and manage encryption without disrupting existing processes. Here’s how Thales solutions address several major regulations and standards:

Regulation or StandardWhat the Regulation MeansThales Solutions
Payment Card Industry Data Security Standard (PCI DSS) PCI DSS defines strict security requirements for the processing, storage, and transmission of cardholder data. Compliance must be validated periodically, and failure to comply can result in fines or even the termination of the ability to process credit cards. Easily integrated for fast deployment, Thales encryption solutions enable compliance by protecting stored cardholder data, encrypting it for transfer, and restricting access. You gain the ability to secure data in even the most transaction-intensive environments.

Learn more about database encryption, data center connectivity, and storage key management.

Gramm-Leach-Bliley Act (GLBA) Enforced by eight federal agencies, GLBA requires financial institutions to meet standards for protecting accountholders’ financial data. Institutions and personnel that fail to comply face severe civil and criminal penalties. By protecting accountholder data wherever it is stored or transferred, Thales solutions help institutions achieve and maintain GLBA compliance. Key management enables quick deployment and access to data.

Learn more about public key infrastructure (PKI)database encryption, data center connectivityand identity management solutions for GLBA compliance.

California SB 1386 and other data breach notification laws Almost all U.S. states now require organizations to notify customers when their personal information has been lost or stolen. In addition to legal liability, businesses face potentially massive brand damage through negative media coverage. Thales delivers a fast, effective way to encrypt data within databases and tape-based backup systems. If data is encrypted, California and many other states provide safe harbor and do not require customer notification.

Learn more about database encryption, identity managementstorage key management, and tape backup encryption solutions for preventing data breaches.

European Union Data Protection Directive EU Directive 95/46/EC requires EU member states to establish standards related to the use of personal data. Failure to meet these requirements can bring swift and disruptive action from a country’s regulators. U.S. companies operating in Europe must follow the directive’s safe harbor rules. Thales provides the centralized management, encryption, and auditing capabilities needed for global data protection deployments in which multiple regulatory compliance laws apply.

Learn more about PKIdatabase encryption, identity managementstorage key management, and tape backup encryption solutions for EU Data Protection Directive compliance.

Related Resources

White Papers


  • 2008 Encryption & Key Management Benchmark
    Thales and Trust Catalyst conducted an in-depth survey on encryption and key management trends to better understand how global businesses and government organizations are securing data using encryption, and more importantly, how these organizations are protecting their encryption keys.


  • Secure Data Center Connectivity
    This paper describes how to protect data in transit from interception and compromise. It gives a detailed look at comprehensive network security while addressing secure data center connectivity amd the Thales Datacryptor line of encryption platforms.