Protect Classified Data at Rest

Protecting classified information across mission systems requires layered, high-assurance data-at-rest protection. Cigent provides CSfC-listed encryption and authentication components that support layered DAR architectures across endpoints, servers, tactical systems, and mission platforms.

Schedule a Demo
Built for High-Assurance Data Protection

Classified Data Requires a Layered Architecture

Classified data increasingly resides on systems operating beyond fixed facilities, from laptops and rugged endpoints to servers, tactical systems, and mission platforms. When those systems are powered off, unauthenticated, or outside authorized control, the data still requires protection.

NSA’s CSfC Data-at-Rest Capability Package establishes a layered approach using two independent encryption layers to protect classified data while at rest. Cigent provides CSfC-listed secure storage, Pre-Boot Authentication, and Software Full Drive Encryption to support that architecture with encryption and authentication at each layer.

BUILT FOR THE MISSION

LAYERED DATA PROTECTION
SIMPLIFIED DEPLOYMENT
NSA CSfC LISTED
PLATFORM AGNOSTIC
HARDWARE + SOFTWARE
Meet CSfC Requirements

CSfC-listed hardware and software components support the independent encryption and authentication layers required to protect classified data at rest.

Protect Mission Systems

Apply layered protection across client, enterprise, and embedded environments spanning endpoints, servers, tactical compute, and mission platforms.

Deploy & Manage at Scale

Configure, update, monitor, and enforce DAR protections through repeatable workflows across distributed systems and fleets.

Authenticate Before Access

Independent pre-boot and pre-OS authentication controls access before protected data becomes available to the operating environment.

Control Data Lifecycle

Maintain control from initial deployment to verified sanitization and secure decommissioning.

Streamline Acquisition

Cigent SSDs and software are available directly from leading device manufacturers within their configuration flows, simplifying acquisition.

Cigent Protection

Understanding CSfC for DAR Protection

Includes Hardware Full Drive Encryption with PBA. This is the outer layer as it provides the initial protection layer. It includes:

  • AES-256 Hardware Full Drive Encryption
    Utilizing NSA-validated cryptography. Encryption keys are not stored in TPM or in aggregate, preventing interception or compromise.
  • Pre-boot Authentication (PBA)
    Providing a separate, secure environment to unlock drive encryption. The approach prevents an adversary from compromising the OS boot to access data.
CSfC DAR Readiness Assessment

Do CSfC Data-at-Rest Requirements Apply to Your Environment?

Not every mission environment has the same data-at-rest requirements. The Cigent CSfC DAR Readiness Assessment walks you through a short series of questions about the data you protect, the systems that store it, and how those systems are used to help determine whether CSfC DAR protections should be considered for your environment.

As classified data moves onto endpoints, tactical systems, servers, and mission platforms outside traditional secure facilities, understanding the required level of protection becomes increasingly important. Use the assessment to identify potential CSfC DAR requirements and better understand when a layered encryption and authentication architecture may be appropriate.

eBook

Protect Your Data at Rest

Cigent is prepared to support your mission, navigating the complex compliance requirements to protect data at the edge. Its solutions were developed for and with US Federal agencies with deep expertise in data protection. Read our extensive eBook to learn more.

The Cigent Advantage

Cigent solutions were designed and developed with and for US Intelligence and Defense communities. All employees, including Cigent software development, are based in the US. The team includes multiple personnel with TS/SCI clearance with decades of data protection and operational experience to support your requirements.

Cigent solutions have been tested and validated by leading Federal agencies including MITRE, NIST, NSA, NIAP, the Air Force, Cyber Resilience of Weapon Systems (CROWS), and NSSIF (UK) and are deployed across US Intelligence agencies, US Defense services, and the defense industrial base.

The Latest from Cigent

View All

Frequently Asked Questions

Still have Questions?

Learn how to secure mission-critical and classified data across the battlespace.

Download eBook

Cigent’s Federal Data Protection Solutions are second to none

Learn more about how Cigent can help you achieve your mission and protect data at rest and data on the edge from all forms of attack.

Schedule a Demo