Thales and SOA Software secure high-value applications as the world goes digital
SOA integrates Thales HSMs to provide the highest level of protection and manage risk in a service oriented architecture
Thales, a world leader in Critical Information Systems and Cybersecurity and SOA Software, an API Management and SOA Governance leader, announce the integration of the Thales nShield family of hardware security modules (HSMs) with SOA Software’s API Gateway, providing enhanced data protection and threat prevention for mobile, cloud and web applications.
Digital initiatives are impacting every aspect of life. Businesses and governments are under pressure to deliver a richer and more consistent experience to their users across an ever wider range of channels that span in-store, at home and mobile. Furthermore, the opportunity to monetize digital content through marketing partnerships and commercial ecosystems creates a race to interconnect applications and simplify the adoption and control of integrated data-based services. This creates the need to manage a multitude of service interfaces (APIs) that span legacy as well as leading-edge application technologies, cloud and on-premise based delivery platforms and a range of compliance imperatives. A common thread is the need for an end-to-end, comprehensive data protection strategy that includes strong authentication to control access for users, devices and services coupled with encryption of data in motion and at rest to ensure confidentiality.
As with any encryption based security system, the attention of attackers and regulators alike turns to key management and the confidence that these processes are physically and logically protected. To achieve a higher level of assurance, SOA Software integrated Thales nShield hardware security modules (HSMs) with the SOA Software API Gateway. The nShield HSM is used to generate keys, authenticate service requests, encrypt sensitive application payload such as credit card numbers and personal information and digitally sign message exchanges to guard against interception and modification.
Thales nShield HSMs are certified to FIPS 140-2 Level 3 and Common Criteria EAL4+, delivering the highest levels of cryptographic security and best-in-class performance for cryptographic operations, including accelerated SSL termination and high-speed digital signing of messages. By integrating with Thales nShield HSMs, SOA Software’s API Gateway can satisfy customers who need to demonstrate FIPS-compliance and that have the most demanding performance requirements.
Alastair Farquharson, Chief Technology Officer, SOA Software, says:
“Increasingly enterprises are opening their applications to partners, developers, mobile apps and cloud services, but by exposing those apps they also become a perfect target for hackers. Thales is the leader in data encryption and cyber security and provides the added assurance of FIPS-compliance to our security conscious customers helping them to safely and securely embrace our API technology.”
Richard Moulds, Vice President Strategy, Thales eSecurity, says:
“Exposing applications to cloud and mobile based environments is a business imperative but it dramatically expands the available attack surface and therefore risk. SOA Software helps organizations protect the flow of sensitive data and control access to it. We are excited that SOA Software has embraced Thales HSMs as the most widely accepted best practice to deliver the necessary level of assurance give their customers the most convenient and easily deployed solution.”
SOA Software’s API Management solution has been positioned by Gartner, Inc. in the Leaders Quadrant of the 2013 Gartner Magic Quadrant for Application Services Governance.
About SOA Software
SOA Software is a leading provider of API Management and SOA Governance products that equip business to deliver APIs and SOA together to drive their company to meet its business strategy quickly and effectively. SOA Software’s technology helps businesses to accelerate their digital channels with APIs, drive partner adoption, monetize their assets, and achieve agility and operational excellence across their applications and datacenters. Some of the world’s largest companies including Bank of America, Pfizer, and Verizon use SOA Software products. SOA Software is also recognized as a “Leader” by Gartner in Application Services Governance MQ and as a leader by other analyst firms. For more information on SOA Software’s API Platform, see http://www.soa.com