Pre-Boot Authentication

Cigent PBA is specifically designed to meet stringent federal security mandates, ensuring comprehensive protection for classified and sensitive information against unauthorized access and potential breaches.

Schedule a Demo

Outer Layer CSfC for DAR Solution

Self-encrypting drives (SEDs) are often assumed to protect data automatically, but they provide no security on their own. Without enforced authentication, SEDs decrypt as soon as a system powers on, leaving sensitive information exposed. Cigent Pre-Boot Authentication (PBA) closes this gap by requiring authentication before the operating system loads, keeping drives locked until authorized access is granted. As the foundation of the outer protection layer in CSfC Data-at-Rest architectures, Cigent PBA pairs hardware full-drive encryption with a secure, OS-independent environment to ensure stored data remains protected, even if devices are lost, unattended, or in the field.

Required Protection

Cigent Pre-Boot Authentication (PBA) provides a separate, secure authentication environment before the operating system boots, significantly reducing system vulnerabilities and unauthorized access risks.

Meet CSfC DAR Requirements

Cigent Pre-Boot Authentication (PBA) with certified Hardware Full Drive Encryption (HW FDE) provides NSA CSfC-compliant outer-layer encryption required by the NSA’s Data at Rest (DAR) Capability Package.

Multi-Factor Authentication Ready

Supports single and multiple authentication factors, including username/password, smartcards (PIV), and Security Keys, ensuring comprehensive and robust authentication aligned with federal standards.

Independent Layered Protection

Operates independently from software encryption solutions, ensuring the cryptographic and functional isolation mandated by CSfC architectural requirements.

Administration at Scale

Cigent's command-line interface (CLI) utility provides management of PBA with ability to integrate into existing enterprise management.

Wide Device Compatibility

Supports deployment on various endpoints including Intel/AMD/ARM (NVIDIA Jetson Orin) laptops, desktops, workstations, and servers.

Advanced Data Protection

Comprehensive Encryption and Authentication Solutions

Hardware Full Drive Encryption (HW FDE) combined with PBA. This is the outer layer of the dual-layer encryption approach mandated by the Commercial Solutions for Classified (CSfC) Data-at-Rest (DAR) program and provides the first layer of defense. It includes:

  • AES-256 Hardware EncryptionProvides robust encryption, safeguarding keys from interception.
  • Pre-Boot Authentication (PBA)Secure login before the operating system loads, defending against boot-level threats.

How Cigent PBA Protects your Data

Cigent PBA safeguards sensitive data through robust hardware-based encryption, enforcing pre-boot authentication requirements as mandated by the NSA CSfC DAR Capability Package. This ensures compliance and protection of mission-critical data at rest.

  • Device Powered Off
    All data remains encrypted, unreadable, and inaccessible.
  • Pre-boot Authentication
    Upon powering on the device, authentication via supported methods, including username/password, smartcards (PIV), or Security Keys, is required before the operating system boot sequence, establishing secure access controls before any data is decrypted.
  • Authentication Boot
    Once authentication is successful, the operating system boots, and the drive’s encrypted data becomes accessible to the authorized user.

The Cigent Advantage

Cigent solutions were designed and developed with and for US Intelligence and Defense communities. All employees, including Cigent software development, are based in the US. The team includes multiple personnel with TS/SCI clearance with decades of data protection and operational experience to support your requirements.

Cigent solutions have been tested and validated by leading Federal agencies including MITRE, NIST, NSA, NIAP, the Air Force, Cyber Resilience of Weapon Systems (CROWS), and NSSIF (UK) and are deployed across US Intelligence agencies, US Defense services, and the defense industrial base.

eBook

Protect Your Data at Rest

Cigent is prepared to support your mission, navigating the complex compliance requirements to protect data at the edge. Its solutions were developed for and with US Federal agencies with deep expertise in data protection. Read our extensive eBook to learn more.

The Latest from Cigent

View All

Frequently Asked Questions

Still have Questions?

Learn how to secure mission-critical and classified data across the battlespace.

Download eBook

Cigent’s Federal Data Protection Solutions are second to none

Learn more about how Cigent can help you achieve your mission and protect data at rest and data on the edge from all forms of attack.

Schedule a Demo