Stay ahead of data security regulations with Thales solutions
Constant scrambling to achieve and maintain compliance with data security regulations can drain resources away from core business processes. Financial services organizations need reliable, scalable data protection to efficiently comply with regulations—now and into the future
Thales solutions enable organizations to quickly deploy and manage encryption without disrupting existing processes. Here’s how Thales solutions address several major regulations and standards:
| Regulation or Standard | What the Regulation Means | Thales Solutions |
| Payment Card Industry Data Security Standard (PCI DSS) |
PCI DSS defines strict security requirements for the processing, storage, and transmission of cardholder data. Compliance must be validated periodically, and failure to comply can result in fines or even the termination of the ability to process credit cards. |
Easily integrated for fast deployment, Thales encryption solutions enable compliance by protecting stored cardholder data, encrypting it for transfer, and restricting access. You gain the ability to secure data in even the most transaction-intensive environments. Learn more about database encryption, data center connectivity, and storage key management.
|
| Gramm-Leach-Bliley Act (GLBA) |
Enforced by eight federal agencies, GLBA requires financial institutions to meet standards for protecting accountholders’ financial data. Institutions and personnel that fail to comply face severe civil and criminal penalties. |
By protecting accountholder data wherever it is stored or transferred, Thales solutions help institutions achieve and maintain GLBA compliance. Key management enables quick deployment and access to data. Learn more about public key infrastructure (PKI), database encryption, data center connectivity, and identity management solutions for GLBA compliance.
|
| California SB 1386 and other data breach notification laws |
Almost all U.S. states now require organizations to notify customers when their personal information has been lost or stolen. In addition to legal liability, businesses face potentially massive brand damage through negative media coverage. |
Thales delivers a fast, effective way to encrypt data within databases and tape-based backup systems. If data is encrypted, California and many other states provide safe harbor and do not require customer notification. Learn more about database encryption, identity management, storage key management, and tape backup encryption solutions for preventing data breaches.
|
| European Union Data Protection Directive |
EU Directive 95/46/EC requires EU member states to establish standards related to the use of personal data. Failure to meet these requirements can bring swift and disruptive action from a country’s regulators. U.S. companies operating in Europe must follow the directive’s safe harbor rules. |
Thales provides the centralized management, encryption, and auditing capabilities needed for global data protection deployments in which multiple regulatory compliance laws apply. Learn more about PKI, database encryption, identity management, storage key management, and tape backup encryption solutions for EU Data Protection Directive compliance. |