A Fortify 24x7 brand. Security operated for the plant, the depot, and the offices behind both.Sign inRaise a job
Industry LockNetworks
Bay 05 / Data protection

You cannot put a lock on a file nobody has found.

Most companies can name the systems that hold sensitive material and almost none can name the folders. Drawings sit on a share left behind by a project that closed in 2019. Personnel records sit in an export run for one meeting. Customer data sits on a laptop because the report was easier to build there. This bay finds it first and governs it second.

ActifileDiscoveryExposure scoringEncryption
Every tag in this bay carries its own counting unit
Tags in this bay2
Plant on the lineActifile
One unit equalsThe device
SequenceFind first, then enforce

Discovery puts remediation in order

The discovery line reads endpoints and shares, works out what regulated or commercially sensitive material is sitting there, and puts a number against each device. That score is the part that matters, because it turns an unbounded problem into a queue somebody can work down.

It is also the thing that survives contact with a customer audit. When a large purchaser asks where their drawings live and who can open them, a dated report beats an assurance from whoever answered the phone.

Enforcement covers the exits data genuinely uses

The enforcement line encrypts whatever discovery identified, then applies policy to the exits people really use: removable media, uploads, and the personal accounts somebody falls back on when a file will not fit in a message.

Rules alert with the file and the person both named, which turns a policy document nobody has opened since it was written into something with observable behavior behind it.

A drawing pack is worth more to a competitor than anything in your building.
Tags in this bay

Specifications and rates

Every rate on this page comes live off the billing service. Anything locked on stays on the worklist while you read on.

Hasp open, tags below
Fortify-DLP-ClassifyDanger tag

Sensitive Data Discovery

Plant · Actifile, locating the material before anybody governs it

You cannot put a control on a folder nobody has located. This line reads endpoints and shares, works out what regulated or commercially sensitive material is sitting there, and scores the exposure on each device.

  • Sweeps endpoint storage and file shares, hunting regulated or proprietary material.
  • Puts a score on each device, which is what gives the remediation queue an order.
  • Reporting that survives a conversation with an auditor or a customer.
Mounted onActifile, scanning whichever endpoints and shares you nominate
IsolatesNothing yet. This line finds and measures before anything is enforced
Retained forFindings and exposure scores, kept while the subscription is live
Released byNot applicable. There is no control here to lift
Signed off byWhoever owns the data on your side, on the exposure report
Readingper device
settled one month ahead
QTY
Fortify-DLP-EnforceDanger tag

Encryption and Channel Control

Plant · Actifile, encrypting and governing the exit routes

The half that acts. Sensitive files get encrypted in place, and the exits data genuinely uses get governed instead of described in a policy document nobody has opened since it was written.

  • Encryption applied to the material the discovery line identified.
  • Policy over removable media, over uploads, and over the other exits data uses.
  • Alerting when a rule is met, with the file and the person both named.
Mounted onActifile, enforcing on the endpoints already under discovery
IsolatesA sensitive file leaving by a route your policy does not permit
Retained forEnforcement events, kept while the subscription is live
Released byA Fortify 24x7 engineer, on a request from your named approver
Signed off byThe named approver, on the exception record
Readingper device
settled one month ahead
QTY
Honest scope

Where this bay stops

These two lines find and govern material on the devices you enroll. Everything below is outside them.

  • It does not reach process data. Discovery runs against endpoints and file shares. Historian databases, recipe stores, and machine data on the production network are not in scope for either line here.
  • Classification is a judgment, not an oracle. Pattern matching finds most of it and will produce both false positives and misses. Somebody on your side has to look at the report and make the calls.
  • Encryption is not a departure control. Being cleared to open a file has never stopped anyone taking the contents. Encryption protects the file at rest and in transit, and it does not read intent.
  • It is not legal advice about a regime. We can show where regulated material is sitting. Whether your handling of it satisfies any particular regulator is a question for counsel of your own.
  • Coverage follows the device count. Both lines are priced per device and apply to the devices you enroll. A share hanging off an unenrolled machine stays unread.
Money side

Heads up: card statements show FORTIFY 24X7 - Industry Lock Networks is a Fortify 24x7 brand, and your subscription is billed by Fortify 24x7.