Posts Tagged tokenization

Tokenization: A Powerful Weapon Against Cyber Attack

Posted by on Thursday, 19 April, 2012

Tokenization in the data security world is the process of moving sensitive data from a company network to a separate location or sever, and replacing and referencing that data on the company server with a unique token.

If hackers attempt to access sensitive information like credit card numbers from a server, they’ll instead encounter the token which prevents them from finding the original data without a specific encryption key or knowledge of the tokenization system.

Linoma Software GoAnywhere Managed File Transfer SolutionFor example, say a merchant acquires a credit card number by swiping a customer’s card with a card reader.  If the merchant has implemented tokenization, this card number information is immediately replaced in the merchant’s database by a token number while the actual card number is sent and stored (in encrypted form) at a different location, along with the reference from the token.

Because the actual card number is never stored in the merchant’s front-end system, hackers have a much more difficult time stealing it. Customers can therefore be assured that it is safe to let that merchant use their card information because the actual credit card numbers are not stored in an easily accessible location.

All organizations that capture credit card data are required by the PCI DSS government regulations to secure and protect this data.  Originally, this presented a challenge to the payment industry until Shift4 Corporation presented tokenization solutions at an industry Security Summit in 1995.  The adoption of tokenization became a popular solution to meet the PCI DSS compliance regulations.

>>Check out these white papers discussing PCI DSS compliance issues, and data breach threats

Other industries are beginning to adopt tokenization to protect confidential information such as banking transactions, medical records, criminal records, vehicle driver information, loan applications, stock trading and voter registration.

Finding the most efficient way to implement tokenization is challenging, but the growing threat of cyber attack and the expense of data breach have motivated IT shops to research options in earnest.

A variety of third-party software solutions, such as Linoma Software’s Crypto Complete, deliver tokenization tools as well as additional options for managing encryption keys, audit logs, message alerts; storing tokenized data; automatically assigning token identifiers; and providing a central management platform for the entire tokenization process.

When a greedy hacker in anticipation of scoring a cache of customer credit card data finds instead a series of tokens, companies win another battle in the war against cyber thieves.

Daniel Cheney

Daniel has been the IT Director at a healthcare company for the last 12 years and a longtime beneficiary of GoAnywhere Director and the IBM i platform. He is also a freelance writer for various technical and social media projects.

More Posts - Website

Linoma Starts Off the Year with Several Product Releases

Posted by on Friday, 18 June, 2010

When things get hectic and life gets crazy, let’s face it, we could all use a release. All puns aside, Linoma Software has been busy the past 5 months issuing several releases which provide our current and future clients the business edge they need in this ever changing market. Linoma released updates for Surveyor/400, Crypto Complete, GoAnywhere Services and last but not least GoAnywhere Director.

In February, Linoma released Surveyor/400 3.7. Surveyor/400 allows users to easily query and download data from IBM i to their desktops and network servers. Version 3.7 provides support for Excel 2007 with custom formatting options to create professional-looking spreadsheets. Surveyor/400 additionally supports earlier versions of Excel, as well as CSV, fixed width text, HTML and XML documents.  Surveyor/400 conveniently provides over 20 IBM i tools in one application.

In addition to Surveyor/400, Linoma also released Crypto Complete 2.20 in February. The new release of Crypto Complete 2.20 incorporated tokenization. Tokenization should be considered when sensitive data is stored on multiple systems. Tokenization is the process of replacing sensitive data with unique identification numbers (e.g. tokens) and storing the original data on a central server in encrypted form. By centralizing sensitive data, tokenization helps to thwart hackers and minimize the scope of compliance audits such as PCI. Additionally, Crypto Complete 2.20 offers faster encryption for backups while eliminating the need for intermediate save files.

Let’s fast-forward to June; Linoma released GoAnywhere Services 1.3.0. Version 1.3.0 adds enhanced security features with IP Filtering, Syslog feeds and additional Trigger actions, along with other updates and usability options. GoAnywhere Services is a secure file server that provides internal and external trading partners with a secure connection to your system for exchanging files within a fully managed and audited solution.

Also in June, Linoma released a new version of GoAnywhere Director. GoAnywhere Director 3.2.0 provides a connector for sending data using the AS2 version 1.2 standards. This includes support for multiple file attachments within a single AS2 message, synchronous MDN receipts and message integrity verification. AS2 messages can be sent over an SSL tunnel, making it a secure option for the transfer of sensitive data. Version 3.2.0 also includes Syslog server integration, advanced scheduling options, enhanced server certificate handling and FTP checksum validation options. GoAnywhere Director is a managed file transfer solution for the enterprise.

If you need any additional information about any of our product releases or if you need a solution and aren’t sure what is the best product for your circumstance, give us a call. If we don’t have the product your business needs, we can point you in the right direction.

It has been a great start to 2010 and we would like to say thanks to all of our clients for their continued support.

1.800.949.4696  |  sales@linomasoftware.com  |  privacy policy
Copyright ©1994 - 2012 Linoma Software  |  All rights reserved