How We Help
DAR Protection
Quantum & Advanced Threat Protection
Data Sanitization
Insider Threat Protection
Capabilities
Products
Preboot
Cigent PBA
Prevent Data Attack
Cigent FDE
Prevent Ransomware & All Other Attacks - Cobalt Blue 1(1)
Cigent SSD Clients
Frame 84
Cigent SSD Enterprise
Frame 87(1)
Cigent SSD UxV
Industrial Control Systems
Cigent SSD ICS
Hex Editor
Custom Projects
Resources
Downloadable Assets
Whitepapers, eBooks, Infographics, and More
Blog
Read articles on all things cyber security.
Who we partner with
Handshake
Partners
Cigent Ecosystem of Device and Service Partners
compatible sed devices
Certified Drives
SED Devices Compatible with Cigent
Learn More About Cigent
News from Cigent
4 min read
Discover best practices for protecting sensitive ..
4 min read
Explore how disk cloning and data destruction can ..
Menu Close
Market - Tank-1

Layered Protection for Data at Rest

Ensure data on edge devices is protected and meet CSfC for DAR requirements

Data at rest on edge devices is vulnerable to unauthorized access potentially revealing critical sensitive data. NSA's Commercial Solutions for Classified (CSfC) program sets stringent requirements requiring layered protections. Cigent provides SSDs and software to ensure data at rest is protected and enables organization to meet CSfC DAR requirements.
Preboot

Proven Solution

Cigent provides hardware and software capabilities to protect data at rest and meet CSfC DAR compliance requirements. The joint solution has been rigorously tested and validated by NSA and NIAP and other certifying organizations. Alternatively, you can also utilize SSDs through our strategic partner, Digistor, which has undergone rigorous testing and joint development.

Ecosystem

Enterprise Management

Cigent utilizes a Command Line Interface (CLI) tool that seamlessly integrates within existing management to provide enterprise administration. CLI operates with both Linux and Windows environments.

Compliance-1

Data Sanitization

Cigent utilized and crypto and block erase to sanitize data. In addition, Cigent provides a patented verification that confirms at firmware level that each data block has been erased. This is the only way to ensure all data has been successfully destroyed.

Easy to Aquire

Streamline Acquisition

Cigent SSDs and Software are available directly from leading device manufacturers directly within their configuration process simplifying acquisition process. Device OEM partnerships include Dell, HP, GETAC, and Panasonic.

Layout 1 (1)
Cigent Protection

Understanding CSfC for DAR Protection

Includes Hardware Full Drive Encryption with PBA. This is the outer layer as it provides the initial protection layer. It includes:

AES-256 Hardware Full Drive Encryption

Utilizing NSA-validated cryptography. Encryption keys are not stored in TPM or in aggregate preventing interception or compromise.

Pre-boot Authentication (PBA)

Providing a separate, secure environment to unlock drive encryption. The approach prevents an adversary from compromising the OS-boot to access.

Screenshot 2024-09-05 045448

Encryption is only effective with proper implementation and administration. Cigent provides an enterprise management console available locally and in the cloud and with Command Line Interface (CLI) for local administration for Windows and Linux devices.

Central Management & Visibility.

Inventory and report on all internal and external storage devices.

Secure Encryption Key storage.

Securely store encryption keys in Cigent Management Console database, which requires an approval workflow to download keys.

Automate Hidden Partitions.

Programmatically lock, unlock, and wipe Cigent hidden partitions using your language of choice for both Windows and Linux endpoints. Automate full drive wiping to ensure data has been securely deleted.

Screenshot 2024-09-05 045448
Coverage

Protection for devices operating at the edge.

Personal Computers

M.2 2280 and M.2 2230 SSDs

with Hardware Full Drive Encryption

Pre-boot Authentication software

Software Full Drive Encryption

Linux and Windows O/S

Workstations & Servers

U.2 Enterprise Storage SSDs with Hardware Full Drive Encryption

M.2 2280 SSD Boot Drive

Boot drive is a storage device that contains the files needed to start the operating system.

SATA/NVMe available through Digistor

Pre-boot Authentication software

Linux and Windows O/S

The Cigent Advantage

Cigent solutions were designed and developed with and for US Intelligence and Defense communities. All employees, including Cigent software development, are based in the US. The team includes multiple personnel with TS/SCI clearance with decades of data protection and operational experience to support your requirements.

Cigent solutions have been tested and validated by leading Federal agencies including MITRE, NIST, NSA, NIAP, the Air Force, Cyber Resilience of Weapon Systems (CROWS), and NSSIF (UK) and are deployed across US Intelligence agencies, US Defense services, and the defense industrial base.

iStock-814367282
ebook

Protect Your Data at Rest

Cigent is prepared to support your mission navigating the complex compliance requirements to protect data at the edge. Its solutions were developed for and with US Federal agencies with deep expertise in data protection. Read our extensive eBook to learn more.

Cigent-Secure-Storage-White-Paper-11-15-2024_09_38_AM
Resources / Blog
Introduce resources that can
provide value to the visitor
4 min read

Edge Computing Requires Edge Security: Best Practices for Protecting Sensitive Data at the Edge

Discover best practices for protecting sensitive data at the edge with Cigent's insights ..

4 min read

Prevent Data Security Issues with Disk Cloning & Data Destruction

Explore how disk cloning and data destruction can prevent security issues. Learn how to ..

Blog 4 min read

FIPS 140-2 & FISMA — Understanding Cybersecurity Compliance for Cryptography Modules

Learn about FIPS 140-2 and FISMA compliance for cryptography modules, essential for ..

Frequently Asked Questions

Check out the answers to some of most frequently asked questions about Cigent, what we do, and how we do it. Don’t see your question on the list? Click the BOOK A DEMO button in the top right corner of your screen to learn more about us during a custom demo.

What does Cigent do?

Cigent protects data on devices operating at the edge from unauthorized access. Cigent solutions secures data at rest with layered protection including hardware encryption, pre-boot authentication, and multifactor authentication. Cigent also ensures data integrity when the device is in use preventing wiping and cloning and other data attacks.

How does Cigent work?

To prevent sophisticated adversaries from unauthorized access requires layered protection. The foundation of Cigent solution is 256-AES full drive hardware encryption with pre-boot and multifactor authentication. These capabilities have been validated by agencies including NSA and NIAP. Additionally, Cigent provides capabilities that ensure the integrity of data through its lifecycle including hidden partitions, storage-embedded AI, and verified data erasure.

What is data-at-rest encryption?

Data at rest encryption traditionally refers to the encryption of data when the device is asleep or powered-off. Data at rest encryption seeks to prevent adversaries who gain physical access to the device would seek to extract sensitive data. Cigent uses AES 256 full drive hardware encryption with pre-boot and multifactor authentication. In addition, Cigent uses zero-trust access to control to also protect data when a device is in use. This is with hidden partitions that maintain encryption until it is accessed with step-up authentication.

What is pre-boot authentication?

Pre-boot authentication (PBA), also known as power-on authentication, is a security feature that requires users to authenticate before their device boots up. PBA is a layered approach that protects devices and data from offline attacks and cyberattacks. It's often used with full disk encryption (FDE), where users must authenticate to boot the system and restore data. Cigent PBA has been tested and validated by leading organizations including NSA, DISA, NIST, and NIAP.

What devices does Cigent protect with hard drive encryption?

Cigent provides the widest breadth of secure storage solutions all utilizing hardware encryption. These includes: PCs supporting both M.2 2280 and the emerging M.2 2230 standard, remote servers and NAS devices with U.2 drives, external media with flash drives, encrypted external drives, SD and Micro SD cards, and embedded for SSD BGA.

Does Cigent help with certifications?

Yes, Cigent Secure Storage Solutions can support organizations meeting Commercial Solutions for Classified (CSfC) for data at rest including pre-boot authentication requirements. Cigent solutions can also meet FIPS 140-2 and 140-3 standards. Additionally, Cigent can address requirements from Executive Order 14028 including encryption of data at rest, multi-factor authentication, and the utilization of zero-trust access control. Cigent protections have been thoroughly tested and validated by leading Federal agencies including MITRE, NIST, NSA, NIAP, the Air Force, Cyber Resilience of Weapon Systems (CROWS), and NSSIF (UK).

Still have questions?

Learn more about Cigent and our solutions by downloading our company overview.

Card

Cigent’s Federal Data Protection Solutions are second to none

Learn more about how Cigent can help you achieve your mission and protect data at rest and data on the edge from all forms of attack.