Cigent PBA is specifically designed to meet stringent federal security mandates, ensuring comprehensive protection for classified and sensitive information against unauthorized access and potential breaches.
Schedule a DemoSelf-encrypting drives (SEDs) are often assumed to protect data automatically, but they provide no security on their own. Without enforced authentication, SEDs decrypt as soon as a system powers on, leaving sensitive information exposed. Cigent Pre-Boot Authentication (PBA) closes this gap by requiring authentication before the operating system loads, keeping drives locked until authorized access is granted. As the foundation of the outer protection layer in CSfC Data-at-Rest architectures, Cigent PBA pairs hardware full-drive encryption with a secure, OS-independent environment to ensure stored data remains protected, even if devices are lost, unattended, or in the field.
Cigent Pre-Boot Authentication (PBA) provides a separate, secure authentication environment before the operating system boots, significantly reducing system vulnerabilities and unauthorized access risks.
Cigent Pre-Boot Authentication (PBA) with certified Hardware Full Drive Encryption (HW FDE) provides NSA CSfC-compliant outer-layer encryption required by the NSA’s Data at Rest (DAR) Capability Package.
Supports single and multiple authentication factors, including username/password, smartcards (PIV), and Security Keys, ensuring comprehensive and robust authentication aligned with federal standards.
Operates independently from software encryption solutions, ensuring the cryptographic and functional isolation mandated by CSfC architectural requirements.
Cigent's command-line interface (CLI) utility provides management of PBA with ability to integrate into existing enterprise management.
Supports deployment on various endpoints including Intel/AMD/ARM (NVIDIA Jetson Orin) laptops, desktops, workstations, and servers.
Hardware Full Drive Encryption (HW FDE) combined with PBA. This is the outer layer of the dual-layer encryption approach mandated by the Commercial Solutions for Classified (CSfC) Data-at-Rest (DAR) program and provides the first layer of defense. It includes:
Software Full Drive Encryption (SW FDE) with Multi-Factor Authentication (MFA). This is the inner layer of the dual-layer encryption approach mandated by the Commercial Solutions for Classified (CSfC) Data-at-Rest (DAR) program. It provides independent protection after the outer layer has been unlocked. It includes:
Cigent PBA safeguards sensitive data through robust hardware-based encryption, enforcing pre-boot authentication requirements as mandated by the NSA CSfC DAR Capability Package. This ensures compliance and protection of mission-critical data at rest.
Cigent solutions were designed and developed with and for US Intelligence and Defense communities. All employees, including Cigent software development, are based in the US. The team includes multiple personnel with TS/SCI clearance with decades of data protection and operational experience to support your requirements.
Cigent solutions have been tested and validated by leading Federal agencies including MITRE, NIST, NSA, NIAP, the Air Force, Cyber Resilience of Weapon Systems (CROWS), and NSSIF (UK) and are deployed across US Intelligence agencies, US Defense services, and the defense industrial base.
Cigent is prepared to support your mission, navigating the complex compliance requirements to protect data at the edge. Its solutions were developed for and with US Federal agencies with deep expertise in data protection. Read our extensive eBook to learn more.
Learn how to secure mission-critical and classified data across the battlespace.
Download eBookLearn more about how Cigent can help you achieve your mission and protect data at rest and data on the edge from all forms of attack.
Schedule a Demo