Vormetric Application Encryption White Paper
Vormetric Application Encryption is typically employed when compliance or regulatory mandates require encryption of specific data or database fields at the application, before data is stored. Vormetric Application Encryption reduces the complexity and costs associated with meeting this requirement, simplifying the process of adding encryption capabilities to existing applications. Developers can use libraries for Java, .NET, Python, and C to facilitate communication between applications and the Vormetric Application Encryption library. This library encrypts data as either NIST approved AES-CBC or Format Preserving Encryption (FPE) and returns the resulting cipher text to the application. All policy and key management is done through the Data Security Manager (DSM). This architecture paper goes into detail of the security model, best practices, APIs, and offers a sample application encryption library.
